Important note: This role is a remote opportunity tied to our legal entity in Poland, Spain and Czech Republic.
Candidates must be physically located in Poland, Spain or Czech Republic and legally authorized to work there to be considered. We are unable to consider applicants based outside the country of hire.
Innovation starts from the heart. At Edwards Lifesciences,we’rededicated to developing ground-breaking technologies with a genuine impact on patients’ lives. At the core of this commitment is our investment incutting-edgeinformation technology. This supports our innovation and collaboration on a global scale, enabling our diverse teams tooptimizeboth efficiency and success. As part of ourITteam, yourexpertiseand commitment will helpfacilitateour patient-focused mission by developing and enhancing technological solutions.
As an Edwards Sr. Analyst, Incident Response for Information Security, you will contribute with protecting Edwards organization, applications, and products by responding to security threats, designing, and implementing detection use cases and threat hunts and managing log sources onboarding. Ideal candidates posses knowledge in information security incident response and threat hunting, experienced with developing and writing detection engineering use cases and with the ability to drive results. This role is a vital part of our 24x7 Incident Detection and Response team to help protect Edwards.
How will you make an impact:
1. Serve as key escalation tier (level 2 analyst) for on-call incident response resources
2. Perform complexed investigations as a part of Edwards active security monitoring and threat hunting operations within SLAs
3. Drive and design response and remediation actions to protect against security threats in Edwards environments and products
4. Lead data ingestion efforts from identifying gaps, onboarding data sources, tuning and correlating them
5. Lead the design, testing and implementation of detection use cases to production
6. Help drive threat hunting program
7. Responsible for operations and maintenance of key cyber security capabilities and services in Detection Response area – SIEM (Google SecOps, Splunk, Qradar etc), Log Collectors (WEF, Cribl, NXLog etc)
8. Design automation workflows to streamline detection and response efforts
9. As needed, participate in CIRT team efforts
10. Provide coaching, mentoring, and knowledge transfer to other team members
11. Document and maintain incident response technical playbooks and incident timelines
12. Staying informed on the evolving cybersecurity threat landscape to drive innovative detections, threat hunts, and automations to drive Edwards’ security posture
What you'll need (Required):
13. Bachelor's Degree in related field
14. At least 4 years of experience in Information Security SOC, CIRT or SIEM teams
What else we look for (Preferred):
15. Participation and leading information security incident handling efforts
16. Provide and build detailed investigation timelines including documentation, improvements, and recommended action items
17. Expert with Google SecOps or other SIEM solutions (Splunk, Qradar etc)
18. Expert with log collectors' management (WEF, Cribl, NXLog etc), parsing experience
19. Experience with SOAR platforms operations (Torq, PaloAlto XSOAR etc)
20. Experience with threat hunting operations and/or design
21. Certifications in related discipline preferred (e.g., CEH, CISM, CISSP)
22. Expert of IR concepts, data tuning, SIEM, forensics, cloud monitoring
23. Knowledge of common attack vectors and methods, MITRE framework
24. Scripting experience preferred
25. Proficient analytical and problem-solving abilities to identify and mitigate potential security risks
26. Strict attention to detail
27. Ability to partner with other information security and IT experts for escalation of security alerts and onboarding log sources
28. Substantial understanding of troubleshooting techniques with the ability to adapt and learn new technologies
29. Ability to provide guidance to assigned teams on implementing information security standards and designs
30. Excellent organization and time management skills
31. Excellent verbal and written communication skills
Aligning our overall business objectives with performance, we offer competitive salaries, performance-based incentives, and a wide variety of benefits programs to address the diverse individual needs of our employees and their families.
For Poland, the base pay range for this position is 150 000 zł - 213 000 zł (highly experienced). The pay for the successful candidate will depend on various factors (e.g., qualifications, education, prior experience).
#LI-Remote