Blue Shield Of California

Cyber Defense Specialist, Senior

Blue Shield Of California$110K — $130K *
Information Technology
5 - 7 years of experience
Job Overview by Ladders

Qualifications

  • Advanced knowledge of security operations gained from education and experience
  • Minimum 5 years of relevant experience required
  • GCIH certification preferred
  • CISSP certification preferred
  • Experience with intrusion detection and network tools such as Wireshark and Nmap
  • Skilled in security event monitoring and incident response
  • Familiarity with Security Information Event Management (SIEM) systems.

Responsibilities

  • Provide advanced network intrusion monitoring and response
  • Perform expert-level endpoint detection and response (EDR)
  • Analyze application and web security events
  • Interpret logs for threat hunting to identify indicators of compromise
  • Perform incident response containment
  • Utilize Security Orchestration, Automation, and Response (SOAR) for incident management
  • Lead tier-3 incident management and mobilize security incident response teams
  • Formulate operational procedures for security incident response.

Benefits

  • Hybrid work model allowing flexibility
  • Collaboration-focused office environment
  • Opportunity to work with advanced security technologies
  • Engagement in a diverse and inclusive team culture
Full Job Description
Job Description

Your Role

The Information Security team is looking for a certified security professional to join our fast paced, highly collaborative, and diverse team of talent. Our mission is to provide operationally excellent next-generation information security event monitoring, threat hunting, and incident response services that protect our customers from adverse cyber events. The Cyber Defense Specialist, Senior will report to the Senior Manager of Information Security Operations. In this role you will utilize industry leading technology to detect, respond, and recover from advanced attacks and apply root cause analysis and lessons learned to proactively protect against known adversary tactics, techniques, and procedures, prevent impact of our customer's assets, and control recurrence of incidents.

Responsibilities

Your Work

In this role, you will:
  • Provide advanced network intrusion monitoring of and response including performing security incident risk assessment and severity declaration
  • Perform expert level endpoint detection and response (EDR)
  • Analyze application and web security events
  • Interpret logs for expert level threat hunting to identify and respond to indicators of compromise (IOCs) and threats including User and Event Behavioral Analytics (UEBA) using a security information and event management (SIEM) environment
  • Perform incident response containment
  • Utilize Security Orchestration, Automation, and Response (SOAR) of information security incidents
  • Respond and facilitate tier-3 incident management; mobilize security incident response team (SIRT) of key stakeholders; communicate and notify at all levels of the organization; perform post-incident activity involving root cause analysis (RCA) and lesson learned assessments and identify owners of correction action plans (CAP)
  • Formulation of security operation incident response plan, operational procedures, desk level procedures, and operational level agreements
  • Yield security compliance evidence of NIST 800-53 controls


Qualifications

Qualifications

Your Knowledge and Experience
  • Typically, requires advanced knowledge of job area typically obtained through advanced education combined with experience. May have practical knowledge of project management.
  • Typically, requires a college degree or equivalent experience and minimum 5 years of prior relevant experience.
  • GCIH certification preferred
  • CISSP certification preferred
  • Security event monitoring and incident response.
  • Security Information Event Management (SIEM) searching.
  • Intrusion detection and network tools; Wireshark, Nmap.
  • Anti-virus and malware detection.
  • Social engineering and phishing detection.
  • Identity & Access Management.
  • Incident Response
  • Managed Defense


Hybrid

This role requires employees to be in - office based on our hybrid workplace model, balancing purposeful in - person collaboration with flexibility. For most teams, this means coming into the office two days each week.

Employees living more than 50 miles from an office location will work with their manager to determine in-office time based on business need.

#LI-CP4

Physical Requirements:

Office Environment - roles involving part to full time schedule in Office Environment. Based in our physical offices and work from home office/deskwork - Activity level: Sedentary, frequency most of work day.

Please click here for further physical requirement detail.

About Blue Shield Of California

Blue Shield of California is a not-for-profit health plan provider that has been providing Californians with access to high-quality healthcare for over 80 years. The company offers a range of health insurance products and services to individuals, families, and employers. Blue Shield of California is committed to improving the health and wellbeing of its members and the communities it serves. The company is also committed to sustainability and has implemented a number of initiatives to reduce its environmental impact.
Learn more about Blue Shield Of California
Size
7,000 employees
Industry
Founded
1981

Similar Jobs

More Jobs at Blue Shield Of California

More Information Technology Jobs

Find similar Cyber Defense Specialist, Senior jobs: