Job Requisition ID #22WD59833Position Overview The Senior Security Incident Response Engineer is responsible for monitoring, identifying, assessing, containing, and responding to various information security events in a large and complex environment, as well as analyze, triage, and report on these incidents and investigations. The candidate must have knowledge of system security design, network/cloud security best practices and in-depth knowledge of systems security operations, threat actors frequently used attack vectors, and general user behavior analytics. This position will work closely with the threat hunting and intelligence team to execute strategic vision for the department and assist in maturing our overall IR plans and policies.ResponsibilitiesResponsible for handling day-to day operations to monitor, identity, triage and investigate security events from various Endpoint (EDR), Network and Cloud security tools and detect anomalies, and report remediation actionsResponsible for detecting and responding to security incidents, coordinating cross-functional teams to mitigate and eradicate threatsResponsible for triaging security incidents and conducting response actions to detect, contain and remediate identified security incidentsAnalyze firewall logs, server, and application logs to investigate events and incidents for anomalous activity and produce reports of findingsConduct reviews and analysis of proxy logs, Microsoft Windows and Active Directory logs, and malicious code to identify, contain, eradicate, and ensure recovery from incidents Responsible for handling security incidents reported by third parties or external security researchersDetermine root cause analysis and create post-mortem report for security incidentsTrack security events and incidents in SOAR toolDevelop and document threat driven response playbooks to support security incidentsProvide knowledge sharing, mentoring, and support of team membersMaintain current knowledge and understanding of the threat landscape and emerging security threatsAssist in the creation and maintain Autodesk Security Response Centre's process and tools documentationProvide support as on-call personal during security incidentResponsible for working in a 24/7 environment including night shifts and the shifts are decided based on the business requirement.Maintain a high level of confidentiality and IntegrityMinimum QualificationsBS in Computer Science, Information Security, or equivalent professional experience4+ years of cyber security experience in incident responseTechnical depth in one or more specialties including: Malware analysis, Host analysis and Digital forensicsStrong understanding of Security Operations and Incident Response process and practices Experience performing security monitoring, response capabilities, log analysis and forensic toolsStrong understanding of operating systems including Windows, Linux and OSXExperience with SIEM, SOAR, EDR, Network, AWS, and Azure security tools Experience with IR and Forensic investigations within Cloud environments such as AWS and AzureExperience with one or more scripting languages (PowerShell, Python, Bash, etc.)Excellent critical thinking and analytical skills, organizational skills, and the ability to work as part of a teamExcellent verbal and written communication skillsAbility to design playbooks for responding to security incidentsAbility to support off-hours, weekends, and holidays if needed in support of incident responsePreferred QualificationsAdvanced interpersonal skills to effectively promote ideas and collaboration at various levels of the organizationOne or more security-related certifications from any of the following organizations: SANS - [GCIH, GCFE, GCFA], AWS, Azure Cloud security Certifications or equivalent are desired#LI-POSTAt Autodesk, we're building a diverse workplace and an inclusive culture to give more people the chance to imagine, design, and make a better world. Autodesk is proud to be an equal opportunity employer and considers all qualified applicants for employment without regard to race, color, religion, age, sex, sexual orientation, gender, gender identity, national origin, disability, veteran status or any other legally protected characteristic. We also consider for employment all qualified applicants regardless of criminal histories, consistent with applicable law.Are you an existing contractor or consultant with Autodesk? Please search for open jobs and apply internally (not on this external site). If you have any questions or require support, contact Autodesk Careers.
View Original Job Posting