We use cookies. Find out more about it here. By continuing to browse this site you are agreeing to our use of cookies.

Job posting has expired

#alert
Back to search results
Remote

Incident Response Manager (REMOTE)

GEICO
United States, Maryland, Chevy Chase
July 14, 2022

At GEICO, it's not just a job, it's growth and opportunity.

GEICO Technology Solutions Cybersecurity Threat Management and Fusion Center organization is seeking a highly motivated, process-oriented leader for our Cybersecurity Operations Center. This individual will be responsible for leading the successful identification and defense against cybercriminals and protecting GEICO's $30billion brand and reputation. Overall Cybersecurity Threat Management team's responsibilities include responding to, investigating, analyzing, and mitigating cyber threats.

The ideal candidate has a broad understanding of technology, attack and defensive techniques, and incident command. The position requires creative, intuitive, and rapid (but accurate) decision making. Qualified candidates should demonstrate strong leadership characteristics and have driven success as a formal or informal leader. The ideal candidate will have experience in this setting for a minimum of two years, with a track record of continual improvement.

Qualified candidates are enthusiasts for data and functional security metrics to measure health and progress of in-scope security responsibilities. The qualified candidate has a track record of successfully coaching and developing others and him/herself. The role demands a reputation of on time delivery coupled with excellent proactive communication skills and ability to collaborate with others for delivery. Successful candidates must display excellent written and oral communication skills with an ability to successfully communicate technical concepts in business terms and in technical terms as needed. A successful candidate must possess the ability to multitask and lead the team, under an ever changing list of incident and situational priorities.

The major functions of this role are:

  • Partnering with the Fusion Center Cyber Intelligence team and the Threat Hunting team to detect, investigate and mitigate the very latest Cyber Threats
  • Managing and responding to cybersecurity events and incidents across all levels of level 1 initial triage to final level 3 closure
  • Communicating with all levels of management, including executives, accurately and appropriately
  • Development of services for measurable continuous improvement leveraging metrics focused on improving quality, and reducing delivery time for services
  • Coaching and mentoring of associates for continued development and results
  • Establishing goals and developing plans to continually improve security services leveraging service delivery and management methodologies
  • Manage team performance reviews and development plans
  • Building strong partnerships with other teams both inside and outside of the Fusion Center
  • Coordinating activities with other stakeholders to ensure overall quality & timeliness of deliverables
  • Ensuring the on-time delivery of organizational plan items

Required Skills:

  • Experience with incident response and forensics, preferably with experience in intelligence and hunting
  • Ability to lead an incident team throughout the incident lifecycle to closure and after action review
  • Ability to coach and mentor engineers and analysts for improved performance and team dynamics
  • Ability to establish and leverage metrics to improve quality and customer experience
  • Strong critical thinking, decision making, troubleshooting and problem-solving skills
  • Ability to quickly digest and leverage new technologies to improve security services
  • Knowledge of cloud computing technologies and concepts (Saas, Paas, IaaS, etc)
  • Knowledge of platform areas, including DevOps, DBA and Middleware functions
  • Knowledge of infrastructure function including network, distributed compute, storage, and server infrastructure, etc.
  • Knowledge of business continuity, disaster recovery, and resiliency
  • Knowledge of IT service management and service delivery practices
  • This is a critical support position and requires 24x7 on call availability
  • Possess or obtain CISSP within 6 months of accepting the position

Benefits:

At GEICO, we make sure you have the support and resources to leverage and develop your skills, secure your financial future, and take care of your health and well-being. GEICO continually seeks to provide a workplace where everyone can be their authentic self. To help achieve this goal, we support associate-led Employee Resource Groups that foster a true sense of community. Through GEICO's competitive benefits offerings and various training and development opportunities, we have you covered with our * that includes:

  • Premier Medical, Dental and Vision Insurance with no waiting period**
  • Paid Vacation, Sick and Parental Leave
  • 401(k) Profit Sharing Plan
  • Tuition Assistance including Direct Billing and Reimbursement payment plan options
  • Paid Training, Licensures, and Certificates

*Benefits may be different by location. Benefit eligibility requirements vary and may include length of service.

**Coverage begins with the pay period after hire date. Must enroll in New Hire Benefits within 30 days of the date of hire for coverage to take effect.

GEICO is proud to be an equal opportunity employer. We are committed to cultivating an environment where equal employment opportunities are available to all associates and job applicants regardless of race, color, religious creed, national origin, ancestry, age, gender, pregnancy, sexual orientation, gender identity, marital status, familial status, disability or genetic information, in compliance with applicable federal, state and local law. GEICO celebrates diversity and believes it is critical to our success. As such, we are committed to recruit, develop and retain the most talented individuals to join our team.

#LI-KL2

(web-54f47976f8-vn8xb)