Incident Response Engineer

Remote, USA Full-time
As a member of the ETMSA team at Crypto.com, you will be integral to responding to and managing cybersecurity threats and incidents throughout their lifecycle – from Preparation to Identification, Containment, Eradication, Recovery, and Lessons Learned – collaborating with a global team of incident responders. You will apply your comprehensive skills in cyber defense, digital forensics, log analysis, and intrusion analysis to address security incidents across our endpoints, network, and cloud infrastructure. In this role, you will be responsible for prevention, detection, response, and remediation activities, ensuring that information assets and technologies are adequately protected by leveraging various technologies such as Next-Generation Firewalls (NGFW), Endpoint Detection and Response (EDR), Intrusion Detection/Prevention Systems (IDS/IPS), Data Loss Prevention (DLP), and more. You will also leverage your collaboration and communication skills to work effectively with all relevant stakeholders in multicultural and global environments. Responsibilities- Report to Director to facilitate all phases in the incident response lifecycle- Be involved in various incident prevention projects to improve Security posturePreparation:- Understand different regulatory and compliance requirements like critical time to report, escalation flows, etc.- Take part in self-assessment exercises like Tabletop Exercises, Attack Simulations, Red/Purple Team exercises to make sure the incident response process is working smoothlyDevelop incident response runbooks, playbooks and SOPs with reference to different regulatory requirements- Evaluate the incident response readiness of different layers - people, process, technologyDetection & Analysis:- Respond to the cyber security incidents escalated from various channels including the 24/7 SOC team.- Respond to cyber security incidents in compliance with the local authority / regulatory requirements.- Assess the risk, impact and scope of the identified security threats- Perform deep-dive incident analysis of various data sources by analysing and investigating security related logs against medium-term threats and IOCsContainment, Eradication and Recovery:- Communicate with the stakeholders and provide guidance, recommendations to contain and eradicate the security incident- Participate in root cause analysis using forensic and other custom tools to identify any sources of compromise and/or malicious activities taking place.- Document and present investigative findings for high profile events and other incidents of interest. Post incident activities:- Provide lessons learnt meeting to the stakeholders- Lead and keep track on the follow-up activities- Document the incident in the case management system and provide incident reportsAlways ready to jump in, in the event of security incidents. Requirements At least 5 years experience in the Cyber Security industryStrong technical and analytical skillsFamiliar with the cyber security incident response processFamiliarity with AI tools and their application in automating security tasks and processes. Hands-on experience on performing incident response activitiesHave scripting experience like Bash, PowerShell, Python, Go, etc, and the ability to use these skills to aid in responding to incidents involving Windows, Linux, macOS, as well as cloud environmentHave knowledge of cybersecurity tools and software like NGFW, EDR, IDS/IPS, EDR, DLP, SIEM, other log management platforms, etc. Be familiar with the MITRE ATT&CK Framework and/or Cyber Kill ChainBe passionate on exploring new technologies and having creative initiative to boost the team capabilitiesHolders of security related certifications is a plus (e.g. Azure, AWS, CISSP, GCIH, GCIA, GCFA, GNFA, GREM, or other equivalent)Awareness of regulatory and compliance requirements like GDPR, MAS, PSD2 etc is a plus. Preferably Fast learner with can do attitude and ready to get the hands dirtyA strong team player who can collaborate with compassionPassionate to learn and willing to put in the extra effortUnderstand the concept of ownership and accountability coupled with sense of urgency and prioritisationConfidence in handling incidents and managing relevant senior and technical stakeholdersPossess business acumen/mindset (not only technical) when making critical decisions Apply to this Job

Apply Now

Similar Jobs

Senior Designer

Remote, USA Full-time

Talent Acquisition Partner

Remote, USA Full-time

Associate Product Launch Manager (2025 Graduates)

Remote, USA Full-time

Staff Product Designer - AI

Remote, USA Full-time

Developer, AI

Remote, USA Full-time

Senior Collections Advisor

Remote, USA Full-time

Patient Care Assistant-Overnight – Amazon Store

Remote, USA Full-time

Senior Full Stack Engineer

Remote, USA Full-time

Work from Home: Customer Service Representative (Healthcare)

Remote, USA Full-time

Senior Software Engineer- Backend

Remote, USA Full-time

Division 8 (DFH) Estimator - Remote

Remote, USA Full-time

Data Entry (Entry-Level, Remote, Full-time) WFH in Nigeria

Remote, USA Full-time

Apple At Home Advisor Job In UAE

Remote, USA Full-time

**Experienced Part-Time Housekeeping Room Attendant - Disney Careers at $25/Hour with Comprehensive Benefits and Growth Opportunities**

Remote, USA Full-time

Manager, Finance and Strategy - Global Affairs ID-2090 – Amazon Store

Remote, USA Full-time

Data Entry Specialist (Remote) – Amazon Store

Remote, USA Full-time

Experienced Customer Service Representative - Work From Home - Delivering Exceptional Travel Experiences with blithequark

Remote, USA Full-time

Experienced Entry-Level Data Entry Specialist for Remote Work Opportunities – Utilizing Technical Skills for Innovative Data Management at blithequark

Remote, USA Full-time

Apple Headquarters Job Opportunities

Remote, USA Full-time

Registered Nurse (RN) - Women & Infant Services – Amazon Store

Remote, USA Full-time
Back to Home