Staff Security Incident Commander
Uber
This job is no longer accepting applications
See open jobs at Uber.See open jobs similar to "Staff Security Incident Commander" SpaceTalent.Sunnyvale, CA, USA
Posted 6+ months ago
The security organization at Uber is dedicated to enabling safe and secure innovation while protecting the communities we serve both online and in the physical world. Our teams are responsible for protecting both people and their data across intersections of the digital and physical world. The primary objective for Uber Engineering Security team is to enable the technical ambitions of the company while maintaining the highest standards of security and privacy for our customers and partners. As cybersecurity threats evolve, so do we.
About The RoleAs a Staff Security Incident Commander, you will be leading incident response strategy and communication for critical-severity and large-scale incidents, and will be leading projects/initiatives to help mature the incident response program. Part Fire Captain, part Air Traffic Controller, and part NTSB investigator, you will be a master at controlling chaos, seeing through the fog and charting a path forward no matter how ambiguous the situation is. What you find and record during incidents will become the building blocks of an even more secure Uber. You will also be a leader in Engineering Security; championing incident response best practices around the company, pioneering new technologies and methodologies, and continually driving the art and science of incident response forward.
What You''ll Do
- Join an on-call rotation to lead security incident response teams for highest criticality cyber security incidents for Uber and Uber’s subsidiaries.
- You’ll remain composed and effective under pressure, demonstrating the ability to navigate challenging situations without becoming flustered.
- Serve as point of contact throughout the incident lifecycle, interacting directly with executives.
- Partner and build relationships with the teams across multiple regions to drive response and investigations globally.
- Support and mentor analysts conducting investigations and other incident commanders leading incidents.
- Root cause all incidents you work to the deepest level possible and create actionable plans to ensure they do not happen again.
- Lead projects/initiatives to help mature the incident response program and reduce cybersecurity risk at Uber and Uber’s subsidiaries. These projects/initiatives include but are not limited to IR tabletop exercises, real-time incident simulations, threat hunting, and compromise assessments.
- 8+ years of experience in blue team functions such as SOC, IR, detection at a global company.
- Experience driving extremely complex and ambiguous security incidents through the entire response lifecycle.
- Strong working knowledge of common threat actor attack patterns and TTPs.
- Experience presenting incident strategy to an executive audience.
- Willingness and experience leading and mentoring others.
- Skills to read logs, comfortably work on the command line, and the aptitude to get hands on to solve technical challenges when necessary.
- Ability to juggle multiple priorities at once.
- Experience planning and running incident simulation programs such as tabletop exercises, purple teaming, etc.
- Strong sense of urgency and drive - a desire to always be moving forward and improving the craft of incident response
- Experience writing and managing automations.
- Experience in incident response at a large tech company.
- General understanding of broader cybersecurity domains such as infrastructure security, endpoint security, product security, data security, etc.
This job is no longer accepting applications
See open jobs at Uber.See open jobs similar to "Staff Security Incident Commander" SpaceTalent.