Senior Cybersecurity Incident Response Analyst
This role has been designed as 'Hybrid' with a requirement that you will work on average 2 days per week from an HPE office.
Who We Are
Hewlett Packard Enterprise is the global edge-to-cloud company advancing the way people live and work. We help companies connect, protect, analyze, and act on their data and applications wherever they live, from edge to cloud, so they can turn insights into outcomes at the speed required to thrive in today’s complex world.
Our culture thrives on finding new and better ways to accelerate what’s next. We know varied backgrounds are valued and succeed here. We have the flexibility to manage our work and personal needs. We make bold moves, together, and are a force for good.
If you are looking to stretch and grow your career our culture will embrace you.
Open up opportunities with HPE.
Job Description
Within HPE, our Operations, Legal and Admin teams work across the business, providing visible accountability and measurable outcomes.
With a variety of roles and responsibilities these teams really connect the dots, giving us the essential insights, support and capability to accelerate our transformation to be the world’s edge to cloud company.
Join us redefine what’s next for you.
About our Cybersecurity team
Are you ready to make an impact at one of the world’s leading tech companies? HPE’s Cybersecurity team is where you can do just that! We’re looking for a dynamic and experienced Senior Advanced Threat Analyst to join our Cybersecurity team. If you’re passionate about shaping the future of cybersecurity and ready for your next challenge, we’d love to hear from you.
About the role
You will work as a Principal Cybersecurity Incident Response Analyst as part of our Cyber Defense Center team helping to identify, analyze, and respond to security threats. This is a highly technical role that requires a strong understanding of cyber security principles and a passion for protecting our users' data.
About You
- Demonstrates exceptional proficiency in performing log analysis across common environments (Windows, Linux, AWS, Azure, GCP).
- Your in-depth knowledge of common security threats, vulnerabilities, and attack methodologies will enhance our ability to effectively triage and contain incidents, conduct root cause analysis, and expand appropriately.
- You will work independently and on high-impact projects in fast-paced environments, leveraging advanced expertise across cyber and IT security.
- Your extensive experience with performing in-depth incident investigation, documenting findings, and developing actionable remediation plans will be critical.
- Strong communication skills are essential, enabling you to clearly and concisely explain complex technical issues to both technical and non-technical audiences, and to effectively collaborate with cross-functional teams to improve our overall security posture.
What You’ll Do
- Conduct incident response to severe and complex cybersecurity incidents through containment, eradication, and recovery.
- Help ensure effective communication with stakeholders and minimizing organizational impact.
- Combine deep industry expertise with a thorough understanding of information and security technology to effectively analyze associated logs and respond to high severity incidents.
- Contribute to the company's security response methods, suggesting automation/agentic opportunities which can enhance IR.
- Mentor and provide technical guidance to less experienced cybersecurity professionals.
- Stay at the forefront of cybersecurity trends, threats, and technologies, driving innovation within the organization’s threat detection and response capabilities.
- Foster a culture of continuous improvement and innovation, encouraging the adoption of new technologies and methodologies within the team.
- Provide insight and guidance through after-action reviews working with stakeholders.
What You Need To Bring
- Bachelor’s degree (or equivalent work experience) required, preferably in computer science, engineering or related area of study.
- Typically 6+ years of relevant experience SOC team/Incident response/Advanced threat analyst experience is preferred.
- Proven track record of leading complex cybersecurity initiatives and managing ambiguous incidents.
- Extensive understanding of adversary tactics, techniques, and procedures (TTPs).
Knowledge And Skills
- In depth Cyber and IT security knowledge.
- In depth understanding of Cyber and IT security risks, best practices, threats and prevention measures as well as containment and remediation actions.
- In depth understanding of SQL and relevant scripting languages.
- In depth data security system analysis skills.
- In depth risk assessment and management skills.
- In depth understanding of networking and network security.
- In depth data understanding of network monitoring and protocols.
- In depth knowledge of relevant .NET development, programming and scripting languages.
- Be a dependable team player with strong business insight, enthusiasm, and a positive attitude.
- Be an excellent communicator, whether writing, speaking, or presenting.
- Ability to make rapid informed decisions, while working in an agile environment.
- Demonstrated understanding of large enterprise computing environments, applications, and TCP/IP networks and protocols.
- Advanced knowledge of operating systems including Windows, Linux and macOS as well as cloud environments (AWS, Azure, GCP).
What We Can Offer You
- Health & Wellbeing We strive to provide our team members and their loved ones with a comprehensive suite of benefits that supports their physical, financial and emotional wellbeing.
- Personal & Professional Development We also invest in your career because the better you are, the better we all are. We have specific programs catered to helping you reach any career goals you have — whether you want to become a knowledge expert in your field or apply your skills to another division.
- Unconditional Inclusion We are unconditionally inclusive in the way we work and celebrate individual uniqueness. We know varied backgrounds are valued and succeed here. We have the flexibility to manage our work and personal needs. We make bold moves, together, and are a force for good.
- Let’s Stay Connected: Follow @HPECareers on Instagram to see the latest on people, culture and tech at HPE.
- #india #cybersecurity #dfir #ir #incidentresponse
Job: Information Technology Job Level: TCP_04
HPE is an Equal Employment Opportunity/ Veterans/Disabled/LGBT employer. We do not discriminate on the basis of race, gender, or any other protected category, and all decisions we make are made on the basis of qualifications, merit, and business need.
Equal Employment Opportunity is the Law Equal Employment Opportunity is the Law - Supplement E-Verify (US & PR only) HPE is an E-Verify employer.
Accessibility HPE is committed to creating an inclusive and accessible workplace and encourages applications from all qualified individuals, including those with disabilities.
Disclosure of Sensitive Personal Data Please ensure the resume you submit to us does not include any sensitive personal data. Sensitive personal data includes data revealing information about your racial or ethnic origin, political opinions, religious or philosophical beliefs, trade union membership, health, sex life or sexual orientation. To the extent the resume you submit does contain this type of personal data, you consent to the storing and processing of this data by HPE for the purpose of reviewing and managing your application.