Cyber Incident Response Engineer
- 📁
- Information Security
- 💼
- Enterprise Technology Operations
- 📅
- 066144 Requisition #
Zions Bancorporation’s Enterprise Technology and Operations (ETO) team is transforming what it means to work for a financial institution. With a commitment to technology and innovation, we have been providing our community, clients and colleagues the best experience possible for over 150 years. Help us transform our workforce of the future, today.
We are currently seeking a Cyber Incident Response Engineer as part of our Enterprise Information Security department. Enterprise Information Security (EIS) is integrated within the Enterprise Technology and Operations division (1100+ technical people) at Zions Bancorporation. EIS is responsible for enabling secure innovation and business growth for 10,000+ employees across 11 states. EIS is undergoing rapid growth and we are focused on creating a relevant program that will enable our organization’s long-term success. What is great about our department is that we laugh with each other, have Executive and Board level visibility and support for our work, and are driving highly visible, enterprise-wide initiatives. We are focused on creating business value and are seeking like-minded professionals to join our team!
The Cyber Incident Response Engineer will join our CSOC Team. The Cybersecurity Operations Center (CSOC) team is the cyber front line at Zions Bancorporation. If you want to work on a team where your input matters, you get to collaborate with sharp colleagues with whom you will grow, where your work is truly valued and you make a real difference, then you will be in good company.
As a Cyber Incident Response Engineer you will play a key role in defending the enterprise from malicious actors. The work you do has real impact customer-wide and enterprise-wide and it is truly valued by both.
The Cyber Incident Response Engineer will:
· Function as key contributor in the CSOC’s growth and evolution, actively improving our cyber incident response capabilities
· Respond to cybersecurity incidents
· Knowledge in multiple cybersecurity tools and processes such as SIEM, IDS, EDR, DLP, WAF and similar
· Develop and implement monitoring use cases, cyber incident response procedures, playbooks and other technical documentation
· Collaborate with Enterprise Cybersecurity Architecture and technology teams in monitoring and alerting infrastructure, processes, and tools
· Participate in the on-call rotation so we can maintain 24/7 coverage in responding to alerts and possible threats
· Other duties as assigned
Requirements:
· Hands-on technical experience with one or more commercial SIEM products such as Splunk (preferred), IBM QRadar, LogRhythm, ArcSight, NetWitness, etc., which should include familiarity with defining and writing alert conditions/use cases in addition to daily use for investigating incidents
· Experience producing technical documentation, standard operating procedures, and incident response playbooks
· Technical knowledge in networking, Windows administration, Linux administration, common attack techniques and preventions
· Working knowledge of common attack vectors, different classes of attacks (e.g., passive, active, insider, close-in, distributed, etc.) and general attack stages (e.g., foot printing and scanning, enumeration, gaining access, escalation or privileges, maintaining access, network exploitation, covering tracks, etc.)
· Knowledge of system administration concepts for UNIX/Linux and Windows operating systems
· Development experience with scripting languages such as R, HIVE, Python, JavaScript, etc., is a plus
· Experience with any Endpoint Detection and Response platform is a plus
· Relevant technical certifications are a plus (ex: SANS, ISC2)
· Requires a Bachelor’s in Information Technology, Computer Science, Information Systems or a related technical field
· 4+ years experience in Security Operations, Incident Response, Security Architecture, supporting Information Security infrastructure or a combination of the two or other directly related experience
· A combination of education and experience may meet qualifications
Location:
This position has a hybrid work from home schedule with a minimum of three days per week in the office at the new Zions Technology Center in Midvale, UT.
The Zions Technology Center is a 400,000-square-foot technology campus in Midvale, Utah. Located on the former Sharon Steel Mill superfund site, the sustainably built campus will be the company’s primary technology and operations center. This modern and environmentally friendly technology center will enable Zions to continue to compete for the best technology talent in the state while providing team members with an exceptional work environment with features such as:
· Electric vehicle charging stations and close proximity to Historic Gardner Village UTA TRAX station.
· At least 75% of the building is powered by on-site renewable solar energy.
· Access to outdoor recreation, parks, trails, shareable bikes and locker rooms.
· Large modern cafe with a healthy and diverse menu.
· Healthy indoor environment with ample natural light and fresh air.
· LEED-certified sustainable building that features include the use of low VOC-emitting construction materials.
Benefits:
· Medical, Dental and Vision Insurance - START DAY ONE!
· Life and Disability Insurance, Paid Parental Leave and Adoption Assistance
· Health Savings (HSA), Flexible Spending (FSA) and dependent care accounts
· Paid Training, 20 days of Paid Time Off (PTO) and 11 Paid Federal Holidays
· 401(k) plan with company match, Profit Sharing, competitive compensation in line with work experience
· Mental health benefits including coaching and therapy sessions
· Tuition Reimbursement for qualifying employees
· Employee Ambassador preferred banking products
· Employees may, at the company’s discretion, be eligible to receive a cash bonus award
Apply now if you have a passion for impactful outcomes, enjoy working collaboratively with co-workers, and want to make a difference for the clients and communities we serve.
This position will be open until filled.
To review our Benefits Summary click here.
All candidates, including those with criminal histories will be considered for employment. However, a background check adjudicated consistently with the FDIC Section 19 regulation will be completed on any candidate who accepts a conditional job offer from the Company. Because the Company is a financial institution, the FDIC guidelines apply to all positions within the company and as such any and all job duties have a direct relationship to a candidate’s criminal history and that criminal history would need to align with the FDIC Section 19 regulations.
Zions Bancorporation, National Association prohibits illegal discrimination and reaffirms its policy of providing Equal Employment Opportunity (EEO), by extending equal employment and advancement opportunities to all employees and applicants for employment, without regard to race, color, religion, age (40 and over), sex, pregnancy, gender, disability, national origin, ethnic background, citizenship, protected veteran status, military service, sexual orientation, gender identity, genetic information or any other characteristic protected by applicable federal, state or local law.
It is the Company’s policy not to discriminate because of a person’s relationship or association with a protected veteran. This includes spouses and other family members. Also, Zions will safeguard the fair and equitable treatment of protected veteran spouses and family members with regard to all employment actions and prohibit harassment of applicants and employees because of their relationship or association with a protected veteran.
Applicants Requesting Accommodations: If you are a qualified individual with a disability or a disabled veteran, you may request a reasonable accommodation if you are unable or limited in your ability to use or access our career site. You can request reasonable accommodations by contacting us at careers@zionsbancorp.com or 801/844-7618. Please email your resume/cover letter, indicate what position you are interested in and include "Accommodation needed" in the subject line to ensure your information is routed to the appropriate contact.
Click here to view our EEO Statement.
Click here to view applicable Federal, State and/or local employment law posters.
Click here to view our Pay Transparency Notice.