At a Glance
- Tasks: Lead security incidents and investigations, ensuring swift resolution and communication with stakeholders.
- Company: Join Databricks, a leading data and AI company trusted by over 10,000 organisations globally.
- Benefits: Enjoy comprehensive benefits, remote work options, and a commitment to diversity and inclusion.
- Why this job: Make a real impact in security while collaborating with diverse teams in a dynamic environment.
- Qualifications: 5+ years in Incident Management with strong communication skills and relevant certifications.
- Other info: Opportunity to work with cutting-edge technology and contribute to a culture of continuous improvement.
The predicted salary is between 43200 - 72000 £ per year.
We are looking for experienced Incident Handlers with cross functional skills, domain expertise and communication skills. Our mission is to respond to security threats, incidents and investigations to protect our customers, employees and enterprise data in a fast, efficient and standardized manner. You will report to the Head of Incident Response in the Security Org. You will be responsible for leading incidents, investigations and security initiatives from postmortems in the EMEA or APAC timezone. You will be a security multiplier and help the team improve security incident handling at Databricks.
The impact you will have:
- You will run Security & Privacy Investigations which will require you to engage with different stakeholders and communicate investigations to Security leadership and work towards incident resolution.
- Respond to new incidents as part of a distributed daytime operations and on-call schedule.
- Handle SEV-1s and SEV-0s independently, potentially with leadership support for SEV-0s.
- You can guide investigations with multiple teams across multiple organizations, to gain traction and tradeoff to resolve issues.
- You can handle incomplete incident context, and choose best solutions with limited or incomplete information.
- Partner and build relationships with Engineering and Security teams to contain and mitigate risks during incidents.
- Lead blameless incident postmortems and identify root causes, including systemic issues.
- Identify, get commitment for, and follow up on projects identified in the postmortem process.
What we look for:
- Strong oral and written communication skills, customer centric attitude and ability to work in a culturally diverse environment.
- 5+ years of experience in Incident Management Systems or certifications like CISM, GSEC, CISSP or PMP.
- Program management skills, including prioritization and dealing with ambiguous requirements.
- You have experience to balance short term/ tactical follow ups and track long term improvements across multiple teams.
- Experience with technical concepts of cloud security, data ecosystem and the Incident Response process lifecycle.
- Understand industry wide security terms and models: NIST, ISO/IEC 27001, OWASP, MITRE ATT&CK for Cloud Enterprise.
- Proven ability to build relationships and propel momentum with clients and stakeholders.
Sr. Security Incident Handler London, United Kingdom employer: Databricks Inc.
Contact Detail:
Databricks Inc. Recruiting Team
StudySmarter Expert Advice 🤫
We think this is how you could land Sr. Security Incident Handler London, United Kingdom
✨Tip Number 1
Familiarise yourself with the specific security frameworks mentioned in the job description, such as NIST and OWASP. Being able to discuss these frameworks in detail during your conversations will demonstrate your expertise and understanding of industry standards.
✨Tip Number 2
Network with current or former employees of Databricks on platforms like LinkedIn. Engaging with them can provide you with insider knowledge about the company culture and expectations, which can be invaluable during interviews.
✨Tip Number 3
Prepare to discuss your experience with incident management systems and how you've handled SEV-1s and SEV-0s in the past. Be ready to share specific examples that highlight your problem-solving skills and ability to work under pressure.
✨Tip Number 4
Showcase your communication skills by preparing to explain complex technical concepts in simple terms. This is crucial for the role, as you'll need to engage with various stakeholders and ensure everyone is on the same page during incidents.
We think you need these skills to ace Sr. Security Incident Handler London, United Kingdom
Some tips for your application 🫡
Tailor Your CV: Make sure your CV highlights relevant experience in incident management and security. Emphasise your communication skills and any certifications like CISM, GSEC, or CISSP that align with the job requirements.
Craft a Strong Cover Letter: Write a cover letter that showcases your understanding of the role and the company. Mention specific experiences where you've successfully handled incidents or led investigations, and how you can contribute to Databricks' mission.
Highlight Technical Skills: In your application, clearly outline your technical knowledge related to cloud security and the Incident Response process lifecycle. Reference industry standards such as NIST, ISO/IEC 27001, and MITRE ATT&CK to demonstrate your expertise.
Showcase Soft Skills: Since strong communication and relationship-building skills are crucial for this role, provide examples in your application of how you've effectively collaborated with diverse teams and stakeholders in previous positions.
How to prepare for a job interview at Databricks Inc.
✨Showcase Your Communication Skills
As a Senior Security Incident Handler, strong communication is key. Be prepared to discuss how you've effectively communicated complex security issues to diverse stakeholders in the past. Use specific examples to illustrate your ability to convey technical information clearly and concisely.
✨Demonstrate Your Incident Management Experience
Highlight your experience with incident management systems and any relevant certifications like CISM or CISSP. Be ready to discuss specific incidents you've handled, focusing on your role, the challenges faced, and the outcomes achieved. This will show your practical knowledge and expertise in the field.
✨Prepare for Technical Questions
Expect questions related to cloud security concepts and the Incident Response process lifecycle. Brush up on industry standards such as NIST and OWASP. Being able to discuss these topics confidently will demonstrate your technical proficiency and understanding of the security landscape.
✨Emphasise Your Relationship-Building Skills
The role requires collaboration with various teams. Share examples of how you've successfully built relationships with engineering and security teams in previous roles. Highlight your ability to work in a culturally diverse environment and how this has contributed to successful incident resolution.