Manager, Incident Response & SOC

| Hybrid
Sorry, this job was removed at 8:17 a.m. (PST) on Wednesday, March 24, 2021
Find out who's hiring in San Francisco.
See all Cybersecurity + IT jobs in San Francisco
Easy Apply
By clicking Apply Now you agree to share your profile information with the hiring company.

We are looking for a manager to build and lead a team of security engineers and analysts investigating security events and incidents. Can you think like an attacker to stay one step ahead of them, or understand the operational security controls needed to detect, remediate, and prevent compromises?  TripActions is looking for our Manager, Incident Response & SOC who has a combination of hands-on technical skills, strong leadership abilities, and an eagerness to build a world-class team. Our Managers must be comfortable leading teams on challenging projects, communicating with different stakeholders, providing hands-on assistance with incident response activities, and creating and presenting high-quality deliverables.

Responsible for security operations center engineering activities that monitor, detect and alert on potential security threats and vulnerabilities to user centric threats (e.g., phishing attacks, endpoint protection events, authentication/syslog events, etc.). Works closely with other groups as security threats and vulnerabilities are detected and coordinates the response to contain and mitigate the threat to our network and assets. Coordinates the incident response process for security operations center and communicates event status to leadership.


Responsibilities:

  • Manage the team and activities to focus on incident response and forensics. Provide both subject matter expertise and leadership to serve as the SME security events and incident investigations
  • Recommend and document specific countermeasures and mitigating controls
  • Develop comprehensive and accurate reports and presentations for both technical and executive audiences
  • Build Incident Response program including training and tabletop exercises
  • Establish policies and processes to have a 24/7 incident response and SOC capability
  • Utilize cutting edge technology to conduct large-scale investigations and examine host and network-based sources of evidence.
  • Monitors, analyzes, and investigates the SIEM solution and Endpoint Detection and Response events for Tier 1 (triage), Tier 2 (responder), and Tier 3 (hunting) support
  • Monitors security dashboard alerts to identify and respond to security events.
  • Monitors and communicates threat intelligence from various resources that is relevant to TripActions’ systems.
  • Participates in the response to cyber incidents by gathering data and artifacts relevant to the event.
  • Supervise staff, provide feedback and coaching, and grow their technical and analytics skills
  • Improve TripActions business processes and incident response methodologies.

Qualifications

  • Bachelor's Degree in Computer Science or Information Systems or related field or equivalent work experience
  • Minimum 8-10 years of information security experience
  • Minimum 3 years of management experience
  • Technical expertise in at least three of the following areas:
    • Windows disk and memory forensics
    • Network Security Monitoring (NSM), network traffic analysis, and log analysis
    • Unix or Linux disk and memory forensics
    • Static and dynamic malware analysis
    • Applied knowledge in at least one scripting or development language (such as Python)
    • Thorough understanding of enterprise security controls in cloud and MacOS environments
  • Must be eligible to work in the US without sponsorship

Additional Qualifications:

  • Ability to leverage project management skills to effectively budget, scope, and execute program
  • Ability to manage multiple activities and investigations and manage towards SLAs
  • Ability to lead a team of highly technical security professionals
  • Botnet and Denial of Service detection and remediation
  • Ethical hacking and penetration testing
  • Security Information and Event Management (SIEM)
  • Endpoint Detection and Response (EDR)
  • One or more security certifications (CISSP, GIAC, CISM, CEH, etc.)
Read Full Job Description
Easy Apply
By clicking Apply Now you agree to share your profile information with the hiring company.

Technology we use

  • Engineering
  • Product
  • Sales & Marketing
  • People Operations
    • JavaLanguages
    • JavascriptLanguages
    • KotlinLanguages
    • SqlLanguages
    • SwiftLanguages
    • TypeScriptLanguages
    • Google AnalyticsAnalytics
    • TableauAnalytics
    • FigmaDesign
    • PhotoshopDesign
    • AsanaManagement
    • Google DriveManagement
    • Google DocsManagement
    • Google SlidesManagement
    • JIRAManagement
    • Chorus.AICRM
    • DocuSignCRM
    • LinkedIn SalesNavigatorCRM
    • OutreachCRM
    • SalesforceCRM
    • MailChimpEmail
    • SlackCollaboration
    • ZoomCollaboration
    • AsanaProject Management

Location

181 Fremont St. 23rd Floor , San Francisco, CA 94105

An Insider's view of Navan

What are some social events your company does?

It’s may sound cliche, but Navan’s sales culture is ‘work hard, play hard’. Navan knows how to have fun and build an awesome culture. It's beyond your usual happy hours; I’m talking about incredible trips, gourmet handrolls, and lots of dogs! It’s safe to say I’ve met my best friends at Navan.

Nathaniel

Mid-Market Account Executive

How do you collaborate with other teams in the company?

The culture here promotes direct communication and mutual trust, fostering cross-functional collaboration among talented and driven coworkers. Our clear business goals empower us to work together and constantly challenge each other to raise the bar and deliver the best platform, experience, and partnership for our customers.

Jordan

Regional Director, Mid-Market Expense Sales

How has your career grown since starting at the company?

I've had the pleasure of sitting in 8+ roles here at Navan over the last 5 years (SDR to Regional Director). Being at a business with lofty goals and a "failure isn't an option" mentality opens the door to expedite career progression, constant new opportunities and projects, and the ability to learn from a one-of-a-kind leadership team.

Anna

Regional Director, Enterprise Expense Sales

What are Navan Perks + Benefits

Navan Benefits Overview

Our Benefits

We realize benefits are important as they support keeping you at your best at all times. Our benefits are here for you if you get sick or hurt, help you save for now and later, encourage you to take time off work and travel, and provide perks specific to being a Navan employee both in and out of the office.

Culture
Volunteer in local community
Partners with nonprofits
Open door policy
OKR operational model
Team based strategic planning
Pair programming
Open office floor plan
Employee resource groups
Employee-led culture committees
Hybrid work model
In-person all-hands meetings
President's club
Employee awards
Diversity
Diversity employee resource groups
Hiring practices that promote diversity
Health Insurance & Wellness Benefits
Flexible Spending Account (FSA)
Disability insurance
Dental insurance
Vision insurance
Health insurance
Life insurance
Pet insurance
Wellness programs
Mental health benefits
Financial & Retirement
401(K)
Company equity
Child Care & Parental Leave Benefits
Generous parental leave
Family medical leave
Company sponsored family events
Vacation & Time Off Benefits
Unlimited vacation policy
Generous PTO
Paid holidays
Paid sick days
Flexible time off
Floating holidays
Bereavement leave benefits
Company-wide vacation
Office Perks
Commuter benefits
Company-sponsored outings
Free daily meals
Free snacks and drinks
Some meals provided
Company-sponsored happy hours
Onsite office parking
Pet friendly
Relocation assistance
Home-office stipend for remote employees
Mother's room
Professional Development Benefits
Job training & conferences
Lunch and learns
Promote from within
Mentorship program
Continuing education available during work hours
Online course subscriptions available
Customized development tracks
Personal development training

More Jobs at Navan

Easy Apply
By clicking Apply Now you agree to share your profile information with the hiring company.
Learn more about NavanFind similar jobs like this