At EMC, you'll put your skills to good use as an important member of our team. You can count on gaining valuable experience while contributing to the company's success. EMC strives to hire and retain the best people by engaging, developing and rewarding employees.
Plans, designs, implements, and matures cybersecurity tooling and processes. Evaluates information systems and collaborates with security architecture and engineering on complex security-related projects. Performs research and development involving advanced topics, threats, and techniques. Serve as cybersecurity operations center escalation point for SOC team members and peer team. Performs advanced cybersecurity activities such as threat hunting, threat intelligence, purple teaming, attacker emulation, controls testing, and leading incident response tasks and readiness.
ESSENTIAL FUNCTIONS
Researches and resolves alerts and incidents utilizing cybersecurity tools including but not limited to SIEM, SOAR, EDR, phishing, web proxy, networking, DLP, CASB, vulnerability scanning, etc.
Plans, coordinates, and executes regular incident response preparedness, including tabletop exercises.
Manages vulnerabilities through the whole lifecycle - identification, reporting, remediating, exceptions, and closure.
Able to research, select, design, implement, and maintain security tooling in collaboration with EMC's security engineers following EMC's IT Security Policies as well as industry best practices.
Must possess excellent communication skills, both verbal and written, so that security and other complex topics can be understood by all levels of team members, including non-technical staff.
Maintains documentation lifecycle for cybersecurity. Documents cybersecurity systems policies, procedures, standards, and guidelines. Reviews, evaluates and implements documentation recommendations from cybersecurity analysts.
Five plus years of SOC experience – investigating alerts, managing vulnerabilities, remediating security incidents, and running a SOC.
EDUCATION & EXPERIENCE
The education and experience below are required for the job unless labelled as preferred:
Bachelor’s degree in a computer related field or equivalent relevant experience
Five years of experience in information security or related experience
Security certifications (CySA+, CISSP, Security+, CEH) preferred
KNOWLEDGE, SKILLS & ABILITIES
The knowledge, skills, and abilities below are required for the job unless labelled as preferred:
Excellent knowledge of commonly used concepts, practices, and procedures within the field of information security
Excellent knowledge of SIEM and SOAR technologies
Strong knowledge IPS/IDS rules and policies
Strong knowledge in one or more scripting languages, preferably Python
Strong knowledge of protecting endpoints both cloud and on-premises
Strong knowledge of vulnerability management and remediation and related security tools
Strong knowledge of threat detection and response solutions
Strong knowledge of enterprise system administration
Excellent analytical and problem-solving abilities
Excellent incident response skills including leading large group of various levels of the organization
Excellent verbal and written communication skills
Strong human relations and customer service skills
Strong organizational and multi-tasking skills
Per the Colorado Equal Pay for Equal Work Act, the hiring range for this position for Colorado-based team members is $97,416.51-$125,099.76 The hiring range for other locations may vary.
Our employment practices are in accordance with the laws that prohibit discrimination due to race, color, creed, sex, sexual orientation, gender identity, genetic information, religion, age, national origin or ancestry, physical or mental disability, medical condition, veteran status, active military status, citizenship status, marital status or any other consideration made unlawful by federal, state, or local laws.
All of our locations are tobacco free including in company vehicles.