About the role:eBay is searching for a
CSIRT Operations Engineer to join our highly visible Cyber Security Incident Response Team that provides Security Operations Center (SOC) support, cyber analysis, scripting/automation, and a 24x7x365 support staff.
Within CSIRT you will build solutions to identify and mitigate security threats and work collaboratively to solve complex problems in a heterogeneous environment. Your contributions will help defend eBay's critical information assets.
In this role you will work with various security methodologies and processes, so advanced knowledge of TCP/IP protocols, AI tooling and analysis, and experience providing analysis and trending of security log data from a large number of heterogeneous security devices will help you succeed in this role.
As a Security Operations Engineer you will work with the following and demonstrate expert knowledge in at least two (2) or more of the following areas:
Vulnerability Assessment and Pen Testing, Intrusion Prevention and Detection, Access Control and Authorization, Policy Enforcement, Application Security, Protocol Analysis, cloud monitoring,Firewall Management, Encryption, Web-filtering, Advanced Threat Protection, Email Security, Digital Forensics, Monitoring and Detection, Cyber Intelligence Analysis.
Core Job Functions Include:- Investigations - Investigating computer and information security incidents to determine extent of compromise to information and automated information systems
- Escalations - Responding to escalated notable events from security tooling to develop/execute security controls, Defense/countermeasures to prevent internal or external attacks or attempts to infiltrate company email, data, e-commerce and web-based systems.
- Research - Researching attempted or successful efforts to compromise systems security and designs countermeasures.
- Education - maintaining proficiency in tools, techniques, countermeasures, and trends in computer network vulnerabilities, data hiding and network security and encryption.
- Communications - Provides information and updates to shift leads, creates pass-downs for next shift, work closely with supporting teams, provide feedback for new security policy and standards, engage with other teams and adjacencies through email and conference calls.
- Digital Forensics - As it relates to information systems, performs HR investigations and legal holds in a forensically sound manner. Consults with HR and legal subject matter experts to adhere to local country law
- Coverage - Perform shift work, weekends, and holidays as well as participate in a rotating shift consisting of four (4) 10 hour shifts with four days on, three (3) days off and possible rotations across Day and Swing shifts as needed
Qualifications:- Bachelor's degree in Computer Science, Engineering, Information Technology, Cybersecurity, or related field
- 4 or more years of professional experience in incident detection and response, malware analysis, or digital forensics
- Must have at least one (1) of the following certifications:
- SANS GIAC: GCED, GCIA, GPEN, GWAPT, GSNA, GPPA, GAWN, GWEB, GNFA, GREM, GXPN, GMON, GCIH
- ISC2: CCFP, CCSP, CISSP
- Cisco: CCNA, CCNP
- CERT: CSIH
- EC Council: CEH, ENSA, CNDA, ECSS, ECSP, ECES, CHFI, LPT, ECSA, or ECIH
- Offensive Security: OSCP, OSCE, OSWP and OSEE
Digital Forensics: EnCE, CB, MiCFE, ACE, GCFA, GCFE
- 1 or more years of specialized experience in one of the following areas:
- Security Assessment or Offensive Security
- Application Security
- Security Operations Center/Security Incident Response
- Cyber intelligence Analysis
- Must have experience with: Offensive Techniques, Logs, System Forensics, Networking Fundamentals, Scripting, Risk Analysis
- Must be available for shift work, weekends, and holidays as well as participate in a rotating shift consisting of four (4) 10 hour shifts with four days on, three (3) days off and possible rotations across Day and Swing shifts as needed
Additional DetailsThe base pay range for this position is expected in the range below:
$80,800 - $143,600
Base pay offered may vary depending on multiple individualized factors, including location, skills, and experience. The total compensation package for this position may also include other elements, including a target bonus and restricted stock units (as applicable) in addition to a full range of medical, financial, and/or other benefits (including 401(k) eligibility and various paid time off benefits, such as PTO and parental leave). Details of participation in these benefit plans will be provided if an employee receives an offer of employment.
If hired, employees will be in an "at-will position" and the Company reserves the right to modify base salary (as well as any other discretionary payment or compensation program) at any time, including for reasons related to individual performance, Company or individual department/team performance, and market factors.
Remote roles are not eligible for U.S. visa sponsorship.