AVP, Lead Detection and Incident Responder
1 week ago
Job ID:
Job Description:
Role Title: AVP, Lead Detection and Incident Responder (L11)
Company Overview:
Synchrony (NYSE: SYF) is a premier consumer financial services company delivering one of the industry's most complete digitally enabled product suites. Our experience, expertise and scale encompass a broad spectrum of industries including digital, health and wellness, retail, telecommunications, home, auto, outdoors, pet and more.
-
We have recently been ranked #2 among India's Best Companies to Work for by Great Place to Work. We were among the Top 50 India's Best Workplaces in Building a Culture of Innovation by All by GPTW and Top 25 among Best Workplaces in BFSI by GPTW. We have also been recognized by AmbitionBox Employee Choice Awards among the Top 20 Mid-Sized Companies, ranked #3 among Top Rated Companies for Women, and Top-Rated Financial Services Companies.
-
Synchrony celebrates ~51% women diversity, 105+ people with disabilities, and ~50 veterans and veteran family members.
-
We offer Flexibility and Choice for all employees and provide best-in-class employee benefits and programs that cater to work-life integration and overall well-being.
-
We provide career advancement and upskilling opportunities, focusing on Advancing Diverse Talent to take up leadership roles
Organizational Overview:
The core functionality of JSOC team within Synchrony is to provide continuous monitoring and response to cyber threats against Synchrony, its employees, its customers and partners. We do this by developing best in class detection, response and containment capabilities through automation, orchestrations and machine learning.
Role Summary/Purpose:
The AVP, Lead Detection and Incident Responder is part of the Synchrony Joint Security Operations Center (JSOC) and is responsible leading cyber detection of information security alerts and investigating/reporting of major information security incidents supporting all business units. The candidate would have a both technical and people leadership position focused on the detection and response program operation consisting of detection, response, mitigation, reporting of cyber security incidents and conducting assignments for escalated incidents. The candidate is expected to have a strong understanding of both traditional on-premise security and cloud management plane (also known as cloud control plane) security. As a people leader candidate will be handling the day-to-day shift operations, documenting, and implementing the rotation schedule, mentoring junior analyst in the team, and providing feedback and tracking their technical competency.
Key Responsibilities:
The JSOC coordinates with IT, Legal, Human Resources, and other appropriate business units to gather incident details, assess impact, and coordinate response. This role requires experience in all phases of Cyber Detection and Incident Response including preparation, notification, response, recovery, analysis, and post-mortem. The candidate must be familiar with communication technologies, communications protocols and emerging cloud security practices. The candidate that fulfills this role will be expected to have process documentation experience and excellent intra-business relationship experience. This role interacts with all levels of the organization, particularly within the IT organization and is viewed as a subject matter expert. Specific responsibilities include:
-
Respond to security incidents across a wide array of technologies, mitigate and contain impacts, coordinate remediation efforts, summarize and make recommendations to Sr. Management for improvements. Security technologies utilized by the JSOC team includes: Security Incident and Event Management (SIEM), Security Orchestration Automation and Response (SOAR), Endpoint Detection and Response (EDR), Web Application Firewall (WAF), network perimeter firewall, enterprise email security, User and Entity Behavioral Analytics (UEBA), and Cloud Access Security Broker (CASB) toolsets.
-
Provide technical leadership and expertise to enable proactive detection of potential security threats and recommendations for improvements in overall security posture.
-
Work with members of the Cyber Intelligence team to develop and implement threat detection logic to counter emerging cybersecurity threats.
-
Develop and enhance Detection and Incident Response processes and procedures leveraging relationships with front line operations teams and exploiting tools and systems.
-
Document findings and create detailed reports for constituency both in written and verbal formats.
-
Enumerate risks and prioritize mitigation efforts based on clear business priorities.
-
Coordinates IT resources to effectively perform incident response tasks.
-
Supervises formal incident response tasks and takes responsibility for successful execution of incident response plan.
-
Performs incident response tasks to contain exposures from an incident.
-
Authors incident response reports and lessons learned to include root cause analysis.
-
Identify and recommend process improvements.
Required Skills/Knowledge:
-
Bachelor's degree and a minimum 6 years of work experience or Computer Science or a related discipline OR in in lieu of a degree, a High School Diploma/GED and minimum 8 years equivalent work experience. Additional requirements include:
-
Minimum of 5 years of years of experience in information security or related technology experience required.
-
Minimum 5 years of cyber security and incident response or security operations related to the detection, analysis, containment, eradication and recovery from cyber security incidents.
-
Experience managing SOC team in the past.
Desired Skills/Knowledge:
-
Strong verbal and written communication skills.
-
Ability to perform logical problem solving.
-
Experience of working in high performing teams and understand the dynamics of teamwork in a SOC environment
-
Experience in the securities or financial services industry is a plus.
-
Industry certifications such as CISSP, GCIH, AWS Certified Cloud Practitioner, AWS Certified Security – Specialty, and other cybersecurity certifications are a plus.
Eligibility Criteria:
Bachelor's degree and a minimum 6 years of work experience or Computer Science or a related discipline OR in in lieu of a degree, a High School Diploma/GED and minimum 8 years equivalent work experience.
WORK TIMINGS:
Morning – 7:30AM to 4:30PM IST
Afternoon – 3:30PM to 12:30AM IST
(This role qualifies for Enhanced Flexibility and Choice offered in Synchrony India and will require the incumbent to be available between 06:00 AM Eastern Time – 11:30 AM Eastern Time (timings are anchored to US Eastern hours and will adjust twice a year locally). This window is for meetings with India and US teams. The remaining hours will be flexible for the employee to choose. Exceptions may apply periodically due to business needs. Please discuss this with the hiring manager for more details).
For Internal Applicants:
-
Understand the criteria or mandatory skills required for the role, before applying
-
Inform your manager and HRM before applying for any role on Workday
-
Ensure that your professional profile is updated (fields such as education, prior experience, other skills) and it is mandatory to upload your updated resume (Word or PDF format)
-
Must not be any corrective action plan (First Formal/Final Formal, PIP)
-
L9+ Employees who have completed 18 months in the organization and 12 months in current role and level are only eligible.
-
L09+ Employees can apply
Grade/Level: 11
Job Family Group:
Information Technology
-
Avp, Detection And Incident Responder
7 days ago
Hyderabad, Telangana, India Synchrony Full timeRole Title AVP Detection and Incident Responder L10 Company Overview COMPANY OVERVIEW Synchrony NYSE SYF is a premier consumer financial services company delivering one of the industrys most complete digitally enabled product suites Our experience expertise and scale encompass a broad spectrum of industries including digital health and wellness ...
-
AVP, Detection and Incident Responder(L10)
3 days ago
Hyderabad, Telangana, India Synchrony Full time ₹ 20,00,000 - ₹ 25,00,000 per yearJob ID: Job Description: Role Title: AVP, Detection and Incident Responder (L10) COMPANY OVERVIEW: Synchrony (NYSE: SYF) is a premier consumer financial services company delivering one of the industry's most complete digitally enabled product suites. Our experience, expertise and scale encompass a broad spectrum of industries including digital, health...
-
Security Incident responder
7 days ago
Hyderabad, Telangana, India Redpin Full time US$ 90,000 - US$ 1,20,000 per yearAbout the RoleWe are seeking a highly skilled Security Incident Responder with strong Purple Team capabilities, who can operate at the intersection of detection engineering, incident response, threat hunting, and adversary simulation. The ideal candidate brings deep knowledge of security operations (Blue Team), offensive tactics (Red Team), and can act as a...
-
Cyber Incident Responder L3
1 week ago
Hyderabad, Telangana, India TP Full time ₹ 9,00,000 - ₹ 12,00,000 per yearPositionCyber Incident Responder L3Experience 5+ YearsLocation Hyderabad (Work from office)Notice period Immediate 30 days Candidate should be available in Hyderabad for face to face interview The cyber incident responder will use a variety of tools to triage and investigate events to identify potential security incidents. The candidate should...
-
Cybersecurity Incident Response Specialist
7 days ago
Hyderabad, Telangana, India beBeeIncident Full time US$ 20,00,000 - US$ 25,00,000As a critical member of our Joint Security Operations Center, the Detection and Incident Responder will lead cyber detection efforts and investigate major information security incidents.Key ResponsibilitiesRespond to security incidents across diverse technologiesMitigate and contain impactsCoordinate remediation initiativesProvide recommendations for...
-
Cybersecurity Incident Response Lead
1 week ago
Hyderabad, Telangana, India beBeeIncidentResponse Full time ₹ 18,00,000 - ₹ 21,00,000Job DescriptionThe Cybersecurity Incident Response Lead Analyst is accountable for several key responsibilities. This role requires technical and forensic investigation skills to identify cyberthreats in a timely manner, minimize risk to information assets and services, and provide informed advice and guidance to business functions and IT.The position...
-
Manager, Detection and Response-4
3 days ago
Hyderabad, Telangana, India Synchrony Full time ₹ 15,00,000 - ₹ 20,00,000 per yearJOB_POSTING Job DescriptionRole Title:Manager, Detection and Response (L09)Company OverviewSynchrony (NYSE: SYF) is a premier consumer financial services company delivering one of the industry's most complete digitally enabled product suites. Our experience, expertise and scale encompass a broad spectrum of industries including digital, health and wellness,...
-
Incident Response Analyst
4 days ago
Hyderabad, Telangana, India UST Full time US$ 90,000 - US$ 1,20,000 per yearRole & responsibilitiesThe Cybersecurity Incident Management and Response Team is responsible for effectively and efficiently managing all information and cybersecurity incidents across the Group on a 24x7 basis. This function is structured into two primary missions:Incident Management: Coordinating and orchestrating the global technical response to...
-
Lead Cyber Threat Responder
5 days ago
Hyderabad, Telangana, India beBeeCybersecurity Full time ₹ 6,00,000 - ₹ 7,00,000Cyber Threat Response LeadWe are seeking a seasoned cybersecurity professional to spearhead our threat response efforts. The successful candidate will be responsible for:Conducting comprehensive investigations into cybercrime cases, utilizing advanced analytical tools and techniques.Collaborating with cross-functional teams to identify and mitigate potential...
-
Manager, Detection and Response-4
6 days ago
Hyderabad, Telangana, India Synchrony Full time US$ 1,20,000 - US$ 2,00,000 per yearJob Description:Role Title: Manager, Detection and Response (L09)Company Overview: Synchrony (NYSE: SYF) is a premier consumer financial services company delivering one of the industry's most complete digitally enabled product suites. Our experience, expertise and scale encompass a broad spectrum of industries including digital, health and wellness, retail,...