UL Solutions Logo

UL Solutions

Senior Global Cybersecurity Incident Response Analyst

Posted 7 Hours Ago
Be an Early Applicant
Hybrid
Northbrook, IL
Mid level
Hybrid
Northbrook, IL
Mid level
The Senior Global Cybersecurity Incident Response Analyst will investigate and triage cybersecurity incidents, perform digital forensics, and create IR playbooks while collaborating with various stakeholders and generating performance metrics reports.
The summary above was generated by AI

JOB DESCRIPTION
The Senior Global Cybersecurity Incident Response Analyst will support UL Solutions with investigating cybersecurity incidents. They will Perform Digital Forensics with any incidents, create IR playbooks, and assist with monthly reporting for cybersecurity performance metrics.
RESPONSIBILITIES

  • Investigate and triage cybersecurity incidents as assigned in ServiceNow platform according documented the Cybersecurity Incident Response process.
  • Communicate with UL associates across the organization to gather information and evidence required to investigate cybersecurity incidents.
  • Document cybersecurity incident details and incident timeline in accordance with documented Cybersecurity Incident Response Team standards.
  • Collaborate with Cybersecurity Incident stakeholders to identify opportunities for process improvement and/or implementation of controls to prevent the recurrence of incidents.
  • Identify and communicate cybersecurity risks during the incident response process to the Cyber Risk Team and the Business.
  • Perform Digital Forensics Incident Response triage on Windows, Linux, and macOS hosts as required to investigate incidents using EDR and forensic tooling.
  • Create IR playbooks and technical documentation as needed to drive process improvement and knowledge management.
  • Assist the Cybersecurity Team with the capture of cybersecurity incident performance metrics using data analytics with ServiceNow and PowerBI.
  • Assist team with monthly status reporting of deliverables, milestones, and notable achievements for greater Cybersecurity Team all-hands meetings.
  • Assist Compliance and Audit teams with information requests to support regulatory and compliance audits.


Technical Skills Required:
The preferred candidate will have:

  • Possess 3-5 years of working as a SOC analyst or Incident Responder, possessing a strong technical background to respond to compromised accounts, malware, data exfiltration, and data exposure incidents.
  • Have experience with Digital Forensics Incident Response tools such as Encase, Magnet Axiom, Autopsy, KAPE Tools. Zimmerman Tools
  • Have experience working in a large enterprise company across various geographic regions and timezones.
  • Strong written and verbal skills, and ability to present technical topics to a non-technical audience.
  • Have experience creating IR playbooks and technical documentation as needed to drive process improvement and knowledge management.
  • Ability to create and lead the delivery of cybersecurity table-top exercises to stakeholders. Knowledge of Backdoors & Breaches a plus.
  • Must be able to work independently or with minimal supervision, with ability to be a technical lead and mentor to junior analysts.
  • Must have experience with project management, with ability to manage multiple tasks required for incident resolution and project work.
  • Must have experience using an EDR tool (Crowdstrike, Carbon Black, Microsoft Defender)
  • Must have experience using a Security Information Event Manager (SIEM) Solution (Splunk, SumoLogic, Sentinel, ELK)
  • Must have experience using the ServiceNow CRM platform.
  • Must be proficient with Windows PowerShell scripting language, Python experience is a plus.
  • Must have experience with Active Directory security and administrative fundamentals.
  • Must have experience with Microsoft EntraID and M365 security and administrative fundamentals.


Preferred Certifications:
The preferred candidate will have a CompTIA Security+ or CompTIA Network+ certification
SANS Certificate is preferred (GCIH, GCFA, GSEC, GCIA, GPEN)
Specialized Skills Required:

  • Working cybersecurity incidents and supporting the team with tasking on incidents of larger scope
  • Proficiency with Digital Forensics Incident Response tools and techniques
  • Creating and documenting IR playbooks to support the IR program
  • Assisting with monthly reporting for team meetings and performance metrics


QUALIFICATIONS
Educational Requirements:
Bachelor's degree in computer science, electrical engineering, or communication arts preferred or commensurate experience
(Military service working with cyber, or demonstrated experience working in the cybersecurity field within job description requirements)

  • Total Rewards: We understand compensation is an important factor as you consider the next step in your career. The estimated salary range for this position is $120,000 to $140,000 and is based on multiple factors, including job-related knowledge/skills, experience, geographical location, as well as other factors. This position is eligible for annual bonus compensation with a target payout of 10% of the base salary. This position also provides health benefits such as medical, dental and vision; wellness benefits such as mental and financial health; and retirement savings (401K) commensurate with the standard rewards offered in each individual location or country. We also provide full-time employees with paid time off including vacation (15 days), holiday including floating holidays (12 days) and sick time off (72 hours).


#LI-SG2
#LI-Hybrid

Top Skills

Powershell
Python

Similar Jobs at UL Solutions

6 Hours Ago
Hybrid
Northbrook, IL, USA
Senior level
Senior level
Automotive • Professional Services • Software • Consulting • Energy • Chemical • Renewable Energy
The Senior Security Analyst drives upgrades to cybersecurity services and collaborates on technical requirements and processes. They conduct advanced penetration tests, assess vulnerabilities, create security documentation, and support the security team in customer projects and assurance programs.
Top Skills: AwkCC++CshJavaPerlPythonRubySh
6 Hours Ago
Hybrid
Northbrook, IL, USA
Senior level
Senior level
Automotive • Professional Services • Software • Consulting • Energy • Chemical • Renewable Energy
The Information Architect will design data models, collaborate with teams to define core data domains, document data flows, and maintain business information models. They will also focus on data governance, quality, and integration across IT and business functions within UL Solutions' Global Data Strategy.
Top Skills: Data ArchitectureData Modeling
6 Hours Ago
Hybrid
Northbrook, IL, USA
Senior level
Senior level
Automotive • Professional Services • Software • Consulting • Energy • Chemical • Renewable Energy
The Senior Total Rewards Analyst manages and executes compensation strategies, ensures alignment with policies and market trends, analyzes data, and provides recommendations to enhance compensation structures for recruitment and retention. This role includes project management and compliance with regulations.
Top Skills: PythonRSQL

What you need to know about the Toronto Tech Scene

Although home to some of the biggest names in tech, including Google, Microsoft and Amazon, Toronto has established itself as one of the largest startup ecosystems in the world. And with over 2,000 startups — more than 30 percent of the country's total startups — Toronto continues to attract new businesses. Be it helping entrepreneurs manage their finances, simplifying business operations by automating payroll or assisting pharmaceutical companies in launching new drugs, the city's tech scene is just getting started.

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account