SonicJobs Logo
Left arrow iconBack to search

Incident Response Lead

B&H Photo Recruiting Department
Posted a day ago, valid for 14 days
Location

New York, NY, US

Salary

$134,800 - $168,500 per year

Contract type

Full Time

Employee Discounts

By applying, a Sonicjobs account will be created for you. Sonicjobs's Privacy Policy and Terms & Conditions will apply.

SonicJobs' Terms & Conditions and Privacy Policy also apply.

Sonic Summary

info
  • B&H is seeking an Incident Response (IR) Analyst L3 with a minimum of 5 years of IT/Cyber experience, including at least 3 years in Incident Response.
  • The role involves managing daily operations of IR alerts, investigating security incidents, and supporting the overall IR program.
  • Candidates should possess extensive knowledge of IT networking, security tooling, and incident response frameworks, along with strong analytical and communication skills.
  • B&H offers competitive salaries, medical benefits, a 401K plan, and employee discounts in a supportive work environment.
  • Join B&H, a trusted resource for photography and videography enthusiasts, and contribute to protecting its systems and assets from cyberthreats.

At over 50 years old and counting, B&H has built a reputation as the trusted resource for photography and videography enthusiasts via its NYC SuperStore and its award-winning website. Long known as "The Professional’s Source", B&H is recognized by savvy consumers worldwide for its honest, knowledgeable guidance, expert tips and articles… and always-great prices.

B&H offers competitive salaries, medical benefits, a 401K plan, employee discounts and opportunities to grow within a high-energy, low-attitude environment. Make your move to B&H today!

Job Overview: An IR analyst L3 is responsible for the daily operations of IR alerts/tickets, triaging, investigating, and escalating security alerts and incidents, managing IR tools and services, and supporting the overall IR program. These responsibilities are designed to support the identification of and response to cyberthreats affecting B&H systems and assets in a timely manner.

Essential Responsibilities:

 

  • Monitor and respond to security events and incidents using established processes and tools
  • Investigate the root cause, scope, impact, and remediation of security incidents
  • Manage daily operations of reviewing and responding to IR alerts including but not limited to SIEM, EDR, DLP, FW, and WAF alerts.
  • Provide direction and guidance to incident responders and analysts
  • Manage daily operations responsibilities for the operations and support of IR tools and services.
  • Act as the Incident Lead during significant security events.
  • Conduct and participate in incident response training and exercises
  • Upkeep and development of IR documentation
  • Support the overall B&H IR program.
  • Provide monthly reporting for the IR function.

Additional Responsibilities:

 

  • Assisting with security projects, tasks, and other initiatives
  • Support overall IS Security initiatives.

 

Specific Knowledge, Skills, and Abilities:

 

  • Extensive knowledge of IT networking (TCP/IP, firewalls, IDS/IPS, routing, etc.), logging (syslog, auditd, window’s event log, etc.), security tooling (A/V, EDR, email security, vulnerability scanners, etc.), ticketing systems (JIRA, HP Service Now, remedy, etc.) and security principles (CIS top 18, NIST, incident response frameworks, etc.)
  • Experience with threat hunting and operating system malware analysis.
  • Ability to lead a collaborative team while building inter-departments support.
  • Excellent communication and writing skills.
  • Strong analytical and troubleshooting skills.
  • Attention to detail and curiosity to learn new skills.
  • Self starter and able to manage multiple competing priorities.
  • Experience preparing and presenting incident reports

Preferred Education, Experience and Licenses:

 

  • Minimum of 5 years of experience in IT/Cyber with at least 3 in Incident Response.
  • Experience leading major incident response operations and 24/7 security monitoring.
  • Relevant certifications, such as CompTIA Security+, CySe+, GCIH, GSOC, GMON, CEH, SSCP, or CISSP are a plus.

 

We are an Equal Opportunity Employer.  All persons shall have the opportunity to be considered for employment without regard to their race, color, religion, national origin, ancestry, alienage or citizenship status, age, disability or handicap, sex or gender, marital status, veteran status, sexual orientation, arrest record, or any other characteristic protected by applicable federal, state or local laws.

We will endeavor to make a reasonable accommodation to the known physical or mental limitations of a qualified applicant with a disability unless the accommodation would impose an undue hardship on the operation of our business.   If you believe you require such assistance to complete this form or to participate in an interview, please let us know.




Learn more about this Employer on their Career Site

Apply now in a few quick clicks

By applying, a Sonicjobs account will be created for you. Sonicjobs's Privacy Policy and Terms & Conditions will apply.

SonicJobs' Terms & Conditions and Privacy Policy also apply.