VetJobs - The Leading Military Job Board

Job Information

Bank of America Cyber Incident Management Sr. Specialist in Charlotte, North Carolina

Cyber Incident Management Sr. Specialist

Charlotte, North Carolina;Addison, Texas

Job Description:

Cyber Incident Response and Management is part of the Cyber Response & Recovery Team who provide a globally coordinated and managed response capability for information security events and incidents that may impact the confidentiality, integrity, and/or availability of the Bank’s information and information systems or has privacy implications.

The role of the Senior Incident Management Specialist is to coordinate the response and recovery activities from information security incidents. This includes collaboration with appropriate response, assist with determining the root cause of incidents and work with stakeholders and responsible parties to remediate any identified control gaps or failures; Escalate issues to management in a timely manner with appropriate information regarding severity, exposure, and action items; this role requires critical thinking and investigative mindset coupled effective written, and verbal communication skills.

This is a senior role with high visibility at the global level including interacting with and providing direct updates to executives and senior leadership stakeholders. A Senior Incident Manager provides their knowledge and expertise in incident response to lead, mentor, and challenge associates on the team. The team conducts 24/7 follow-the-sun (FTS) operations which you will work closely with AMRS and EMEA regions.

What you will do

• Establish oversight of information security events and cyber incidents and communicate analysis, containment and remediation efforts to all business partners.

• Lead more junior incident managers to evaluate, communicate, and contain cyber security incidents while collaborating with other security teams, technology organizations, and line of business partners.

• Cyber incident response and recovery plans will be available to use and should be maintained by the team. Any issues that require management escalation will be expected to be completed in a timely manner including all appropriate information in relation to risk and action times.

• The Cyber Incident Manager will provide status updates and post-incident findings for executives and stakeholders in non-technical terms encompassing risk, impact, likelihood, containment and remediation activities and threat actors.

• Risk management including briefing and recommending actions to executive leadership within Global Information Security and other business partners on events and incidents

• The incident manager is part of a global 24/7/365 follow-the-sun rotation and there is a requirement to work 3-5 weekends per year in an on-call basis as a primary contact. There will also be a requirement to cover holidays for APAC and EMEA regions.

Required Skills

· Proven experience handling Information Security related events and incidents

· Experience in an operations focused role with an emphasis on cyber incident response

· Demonstrable experience in the coordination of containment activities related to cyber security incidents

· Familiarity with security vulnerabilities exploits and APT tools, techniques, and procedures

· Familiarity with network security vulnerabilities, exploits, malware, and digital forensics desirable

· An excellent verbal and written communicator who can adapt to their audience

· Decisive and can make difficult decisions in what can be a high-pressure environment

· Exercise independent judgment in methods, techniques, and evaluation criteria for obtaining results

· Able to handle multiple competing priorities in a fast-paced environment and act without causing an undue delay

· Supportive and can work well as part of a team as well as independently

· Ability to remain calm under pressure

· Ability to work in a strong team-orientated environment with a sense of urgency and resilience

· Must be able to think outside the box and develop solutions to accomplish seemingly impossible tasks whilst remaining risk and objective focused, with an investigative mindset

· Ability to quickly understand and navigate a large organization

· Security+ or equivalent certification

· GCIH or equivalent certification required within six months of employment.

Shift:

1st shift (United States of America)

Hours Per Week:

40

Bank of America and its affiliates consider for employment and hire qualified candidates without regard to race, religious creed, religion, color, sex, sexual orientation, genetic information, gender, gender identity, gender expression, age, national origin, ancestry, citizenship, protected veteran or disability status or any factor prohibited by law, and as such affirms in policy and practice to support and promote the concept of equal employment opportunity and affirmative action, in accordance with all applicable federal, state, provincial and municipal laws. The company also prohibits discrimination on other bases such as medical condition, marital status or any other factor that is irrelevant to the performance of our teammates.

To view the "EEO is the Law" poster, CLICK HERE (https://www.dol.gov/ofccp/regs/compliance/posters/pdf/eeopost.pdf) .

To view the "EEO is the Law" Supplement, CLICK HERE (https://www.dol.gov/ofccp/regs/compliance/posters/pdf/OFCCP_EEO_Supplement_Final_JRF_QA_508c.pdf) .

Bank of America aims to create a workplace free from the dangers and resulting consequences of illegal and illicit drug use and alcohol abuse. Our Drug-Free Workplace and Alcohol Policy (“Policy”) establishes requirements to prevent the presence or use of illegal or illicit drugs or unauthorized alcohol on Bank of America premises and to provide a safe work environment.

To view Bank of America’s Drug-free workplace and alcohol policy, CLICK HERE .

DirectEmployers