Saatchi & Saatchi

Senior Associate, Information Security

Saatchi & Saatchi$100K — $120K *
Information Technology
Less than 5 years of experience
Job Overview by Ladders

Qualifications

  • 5-7 years of experience in cyber security incident response or forensic analysis.
  • Proficiency with EDR tools, specifically CrowdStrike or SentinelOne.
  • Experience with cloud platforms like Azure, AWS, GCP and log analysis from their security tools.
  • Familiarity with MITRE ATT&CK framework for threat analysis.
  • Understanding of network and web application security concepts and challenges.
  • Ability to develop and manage incident response programs with a focus on efficiency and automation through AI.
  • Strong verbal and written communication skills, capable of delivering clear reports to executive staff.

Responsibilities

  • Lead cyber security incident investigations as Incident Commander.
  • Analyze compromised systems to ensure thorough containment and remediation.
  • Coordinate data gathering and document detailed incident reports.
  • Present concise reports on security incidents to management and stakeholders.
  • Stay updated on advanced persistent threats and incident response best practices.
  • Conduct complex forensic investigations for system breaches and vulnerabilities.
  • Provide technical expertise and guidance on various security monitoring and response activities.

Benefits

  • Flexible work hours, with potential for non-standard hours as needed.
  • Availability for support role during VIP incidents via cell phone.
  • Opportunities for local travel between sites and occasional travel outside the local area.
Full Job Description
Overview

The Senior Associate, Information Security is part of a global team and is responsible for incident response of cyber security incidents that are associated with our businesses, clients, and vendors; is technically skilled and ensures incident containment, remediation, and closure. This individual will be expected to work closely with the legal, data privacy, business, and client teams. They should be comfortable with interacting with senior executives, including C-level staff.

Responsibilities

  • Incident Commander to lead investigation and response of cyber security incidents.
  • Analyze compromised/potentially compromised systems.
  • Coordinate evidence/data gathering and document security incident reports.
  • Manage, review, and present written and oral reports in a pertinent, concise, and accurate manner for distribution to management.
  • Maintain current knowledge of tools and best practices in advanced persistent threats, tools, techniques, procedures of attackers, forensics, and incident response.
  • Perform complex forensic investigations into system breaches, data leaks, and system weaknesses.
  • Provide technical expertise to staff on security incident monitoring, triage, response, threat & vulnerability management, and security analysis.
  • Provide strategic direction on types of Incident Management activities that will drive efficiencies across company, including automation with AI tools.

Qualifications

  • EDR Experience- CrowdStrike and/or SentinelOne with experience investigating and analyzing malware and other malicious activity.
  • 4 or more years of experience in an analytical role of either forensics analyst (Linux, Windows, or MacOS), threat analyst, incident response, SOC analyst, or security engineer/ consultant.
  • Experience with cloud environments such as: Azure, AWS, GCP - knowing how to collect and analyze logs from Guard Duty/ Defender and CloudTrail, etc.
  • Experience with system and application log and artifact collection and analysis (Windows, Linux, Mac, etc.).
  • Familiarity with the MITRE ATT&CK or related frameworks.
  • Experience developing and managing incident response programs with focus on efficiency through AI development.
  • Strong communication skills with confidence leading Incident Response calls with different stakeholders; followed by producing detailed incident reports.
  • Proficient in social engineering, phishing, and related fraud schemes.
  • Strong general knowledge of security concepts and expertise in network and web application security issues.
  • Experience with a scripting language such as Python, Bash, PowerShell, or other scripting language in an incident handling environment.

Additional information

Work Schedule
  • Core work hours are Monday through Friday, 9:00 AM-5:00 PM. Must also be flexible and be available to work non-standard business hours upon request or as needed
  • Must be available via cell phone for VIP support

Travel
  • Local travel between sites may be required
  • Occasional travel to sites outside the local area may be required


Salary Range
Transparency matters to us. The salary range for this position is $100,000-$120,000 per year. Actual compensation within this range will be based on a variety of factors, including relevant experience, knowledge, skills, and applicable certifications. This range reflects what we reasonably expect to offer based on current market data.

Job description only reflects management's assignment of essential functions. Management reserves the right to assign or reassign duties and responsibilities to this job at any time. This job description in no way states or implies that these are the only duties to be performed by the employee(s) currently in this position. Employee(s) will be required to follow any other job related instructions and to perform any other job-related duties requested by any person authorized to give instructions or assignments.

A review of this position has excluded the marginal functions of the position that are incidental to the performance of fundamental job duties. All duties and responsibilities are essential job functions and requirements and are subject to possible modification to reasonably accommodate individuals with disabilities. To perform this job successfully, the incumbent(s) will possess the skills, aptitudes, and abilities to perform each duty proficiently. Some requirements may exclude individuals who pose a direct threat or significant risk to the health or safety of themselves or others. The requirements listed in this document are the minimum levels of knowledge, skills, or abilities. This document does not create an employment contract, implied or otherwise, other than an "at-will" relationship.

About Saatchi & Saatchi

Saatchi & Saatchi is a global advertising agency headquartered in New York City. The company was founded in London in 1970 by brothers Maurice and Charles Saatchi and is now part of the Publicis Groupe, a French multinational advertising and public relations company. Saatchi & Saatchi has over 6,000 employees in 114 countries and provides a range of advertising and marketing services to clients in various industries, including automotive, consumer goods, financial services, and telecommunications. The company is known for its creative and innovative advertising campaigns, including the iconic 'Nothing is Impossible' campaign for Toyota. Saatchi & Saatchi has won numerous awards for its work, including Cannes Lions, Clios, and Effies.
Learn more about Saatchi & Saatchi
Size
6,000 employees
Industry

Similar Jobs

More Jobs at Saatchi & Saatchi

More Information Technology Jobs

Find similar Senior Associate, Information Security jobs: