At a Glance
- Tasks: Lead incident response and manage post-incident activities for critical cybersecurity incidents.
- Company: Join Global Payments, a leader in payment technology serving millions worldwide.
- Benefits: Enjoy a dynamic work environment with opportunities for growth and learning.
- Why this job: Make a real impact on cybersecurity while collaborating with top professionals in the field.
- Qualifications: Bachelor's degree in Computer Science or related field; 2+ years in Incident Management.
- Other info: Flexible work options and a commitment to diversity and inclusion.
The predicted salary is between 48000 - 72000 £ per year.
Every day, Global Payments makes it possible for millions of people to move money between buyers and sellers using our payments solutions for credit, debit, prepaid and merchant services. Our worldwide team helps over 3 million companies, more than 1,300 financial institutions and over 600 million cardholders grow with confidence and achieve amazing results. We are driven by our passion for success and we are proud to deliver best-in-class payment technology and software solutions. Join our dynamic team and make your mark on the payments technology landscape of tomorrow.
As part of the Global Cybersecurity Incident Management (GCIM) team you will coordinate containment, eradication and post-incident activities for critical cyber security incidents. You will play a key role in the Incident Response Team (IRT) overseeing, validating and documenting containment acting as a point of escalation for our Global Security Operations Center (GSOC). Following security incident containment & recovery you will be responsible for engaging with key stakeholders for any Root Cause Analysis (RCA) and post-incident activity, ensuring we have reduced the chances of incident recurrence and assessed the efficiency of our incident response techniques and procedures.
What Part Will You Play?
-
Coordinate incident response in line with the corporate security incident response plan.
-
Manage post-incident activity to include scheduling and chairing Post Incident Reviews (PIR), the documentation of Root Cause Analysis and the tracking of actions to prevent incident recurrence.
-
Provides 24×7 on-call incident management support on rotation for critical security incidents.
-
Stays up to date with new and emerging threats that can affect the organisation\’s information assets, third party software/solutions, IT configuration changes, and network/system.
-
Provides executive level written communication during incident response for inquiries related to security incidents or assigned cases.
-
Coordinate the remediation of findings from the organisation’s Bug Bounty Program working directly with whitehat researchers.
-
Works closely with Risk Management teams to document identified risks and issues highlighted through post-incident or root cause analysis activities.
-
Maintains a working knowledge of key data security frameworks and regulations such as PCI (Payment Card Industry)/Logical Security guidelines and models, HIPPA (Health Insurance Portability and Accountability Act), (GDPR) General Data Protection Regulation, PII (Personally Identifiable Information), NIST CSF (Cyber Security Framework).
-
Collaborates with Legal and Privacy Offices throughout the company on critical data protection/security incidents.
-
Participates in reviews and assessments to provide recommendations to enhance or improve the security posture of environments as part of post incident activities and lessons learned.
-
Maintain and follow runbooks for day-to-day incident response activities in line with the corporate security incident response plan.
What Are We Looking For in This Role?
Minimum Qualifications
-
Relevant Experience or Degree in: Bachelor\’s degree in Computer Science, Info Security, or related field. Or relevant work experience in a related field.
-
Typically Minimum 2 Years Relevant Experience with Incident Management or Incident Response
-
Knowledge of network operations or engineering or system administration on Unix, Linux, MAC (Message Authentication Code), or Windows; common security operations, intrusion detection systems, Security Incident Event Management systems, Penetration Testing, Web Application assessment, Secure Coding practices, Cloud Technologies.
Preferred Qualifications
-
ITIL V4
-
Professional security certifications such as CompTIA Security+/ Cybersecurity Analyst+, or Systems Security Certified Practitioner (SSCP), or CISM(Certified Information Security Manager), or CISA(Certified-Information-Systems-Auditor), or GSEC (GIAC Security Essentials), or GCIH (GIAC Certified Incident Handler)
-
Knowledge of industry standard security compliance programs PCI (Payment Card Industry), GDPR (General Data Protection Regulation), NIST Cyber Security Framework etc.)
-
Cloud Knowledge or certifications such as Google Cloud Fundamental or AWS Foundations
-
Experience working in Google Workspace and JIRA
What Are Our Desired Skills and Capabilities?
-
Strong verbal and written communication skills.
-
Demonstrated ability to effectively communicate ideas and persuade others to accomplish challenging goals and objectives.
-
Ability to facilitate meetings and enable discussions that lead to resolution and communicate results.
-
Skills / Knowledge – Developing professional expertise, applies company policies and procedures to resolve a variety of issues.
-
Job Complexity – Works on problems of moderate scope where analysis of situations or data requires a review of a variety of factors. Exercises judgement within defined procedures and practices to determine appropriate action. Builds productive internal/external working relationships.
-
Supervision – Normally receives general instructions on routine work, detailed instructions on new projects or assignments.
-
Industry Knowledge – Continued self-education of new and emerging threats and relevant processes, controls, or technologies to mitigate them.
-
Incident Response – Knowledge and skills to contribute to all phases of Incident Response.
Global Payments Inc. is an equal opportunity employer. Global Payments provides equal employment opportunities to all employees and applicants for employment without regard to race, color, religion, sex (including pregnancy), national origin, ancestry, age, marital status, sexual orientation, gender identity or expression, disability, veteran status, genetic information or any other basis protected by law. If you wish to request reasonable accommodations related to applying for employment or provide feedback about the accessibility of this website, please contact .
#J-18808-Ljbffr
Security Incident Manager employer: Global Payments
Contact Detail:
Global Payments Recruiting Team
StudySmarter Expert Advice 🤫
We think this is how you could land Security Incident Manager
✨Tip Number 1
Familiarize yourself with the latest cybersecurity threats and trends. Being knowledgeable about current issues will not only help you in interviews but also demonstrate your commitment to staying updated in this fast-paced field.
✨Tip Number 2
Network with professionals in the cybersecurity field, especially those who work in incident management. Attend industry conferences or webinars to make connections that could lead to job opportunities at Global Payments.
✨Tip Number 3
Prepare for situational interview questions by practicing how you would handle specific incident response scenarios. This will showcase your problem-solving skills and ability to think on your feet during critical situations.
✨Tip Number 4
Highlight any relevant certifications you have, such as CompTIA Security+ or CISM, during your discussions. These credentials can set you apart from other candidates and show your dedication to professional development.
We think you need these skills to ace Security Incident Manager
Some tips for your application 🫡
Tailor Your Resume: Make sure your resume highlights relevant experience in incident management and cybersecurity. Use keywords from the job description, such as 'incident response', 'Root Cause Analysis', and 'security compliance programs' to catch the hiring manager's attention.
Craft a Strong Cover Letter: In your cover letter, express your passion for cybersecurity and your understanding of the role. Mention specific experiences that demonstrate your ability to coordinate incident responses and manage post-incident activities effectively.
Showcase Communication Skills: Since strong verbal and written communication skills are crucial for this role, provide examples in your application that illustrate your ability to communicate complex ideas clearly and persuasively, especially in high-pressure situations.
Highlight Relevant Certifications: If you have any professional security certifications like CompTIA Security+ or CISM, make sure to include them prominently in your application. This will show your commitment to the field and enhance your qualifications for the position.
How to prepare for a job interview at Global Payments
✨Understand the Incident Response Process
Make sure you have a solid grasp of the incident response process, including containment, eradication, and recovery. Be prepared to discuss your experience with these phases and how you've applied them in past roles.
✨Familiarize Yourself with Security Frameworks
Brush up on key data security frameworks and regulations such as PCI, GDPR, and NIST CSF. Being able to reference these during your interview will demonstrate your knowledge and commitment to compliance.
✨Prepare for Technical Questions
Expect technical questions related to network operations, intrusion detection systems, and incident management tools. Review your technical skills and be ready to provide examples of how you've used them in real-world scenarios.
✨Showcase Your Communication Skills
Since strong verbal and written communication skills are crucial for this role, practice articulating your thoughts clearly. Be ready to discuss how you've effectively communicated during past incidents or team meetings.