Columbia Consulting Group · 17 hours ago
Incident Response Analyst
Maximize your interview chances
ConsultingDocument Management
Insider Connection @Columbia Consulting Group
Get 3x more responses when you reach out via email instead of LinkedIn.
Responsibilities
Conducts data security incident analysis in support of Marriott’s Insider Threat Management Program, working to help develop and maintain 'playbooks' to ensure effective and efficient response processes and procedures.
Handle escalations from internal and external sources to quickly triage and respond to potential insider threat incidents, as needed.
Develop and present comprehensive reports for both technical, executive, and non-security stakeholder audiences.
Provide technical subject matter expertise related to projects and initiatives that advance the maturity and capability of Marriott’s security program.
Qualification
Find out how your skills align with this job's requirements. If anything seems off, you can easily click on the tags to select or unselect skills to reflect your actual expertise.
Required
5+ years of experience in Information Security
3+ years of experience in cybersecurity and/or insider threat incident response that must include experience in:
Experience with data loss/information protection solutions (Splunk, Netskope, Microsoft O365, etc.)
Identification of potential insider threat tools, tactics, and procedures (TTPs)
Security data analysis from a variety of sources and tools, including contributing to DLP policy/alert creation and maintenance.
<1 year of experience with
Windows log analysis and memory forensics
Network traffic analysis
Knowledge of payment card data, personally identifiable information (PII), and other sensitive data types
Preferred
Development of incident response assessments and other similar reporting (demonstrated writing & comms skills).
Experience in a similarly sized organization with significant complexity.
Strong time management skills to balance multiple activities.
Security Certification (i.e., GCIH, GCFA, CCSP, OSCP, etc.)
Experience with DLP tools and/or methodologies to enhance insider threat incident response procedures.
Experience responding to cyber events in public cloud environments such as AWS, Azure, Google Cloud, etc.
Benefits
401(k)
Company
Columbia Consulting Group
Columbia Consulting Group is a consulting company located in Columbia.
Funding
Current Stage
Early StageCompany data provided by crunchbase