Senior Cloud Cyber Incident Responder

3 weeks ago


CONCORD, United States PG&E Corporation Full time

Requisition ID # 159198 

Job Category: Information Technology 

Job Level: Individual Contributor

Business Unit: Information Technology

Work Type: Hybrid

Job Location: Concord

 

 

Department Overview

The Cybersecurity function is led by PG&E’s Senior VP and Chief Information Officer and is responsible for cybersecurity and risk management across the organization.

 

The Security Intelligence and Operations Center (SIOC) is responsible for ensuring that PG&E proactively identifies and assesses threats to its user and operational network and data, monitors its network for malicious activity, investigates intrusions and other relevant events, and has a sophisticated and detailed understanding of the evolving threat landscape. 

 

Position Summary

The ideal candidate for this position will be knowledgeable regarding cyber security standards and technologies, specifically focused on infrastructure within cloud environments. This position will provide the opportunity to work in an environment with a focus on threat identification, incident response, and cyber threat intelligence fusion. Candidate will be a part of a highly collaborative, dynamic, responsive, and agile team providing incident response and cyber defense services to on-prem and cloud infrastructure. Additionally, this position will help organize and plan cyber incident response exercises and workshops, collaborating and building relationships with different functional areas of the business, and writing after-action reports.

 

This role is primarily responsible for system-based defense to support forensic analysis of compromised devices, endpoint log analysis, development, delivery, and enforcement of response and remediation activities across the organization. Candidate will also be responsible for development of advanced mitigations to ensure defensive resiliency. Daily activities will include collection and analysis of potentially compromised systems, malware analysis, root cause analysis, and remediation efforts. In this role, the candidate will work cross-functionally in a diverse teaming environment with various internal points of contacts and handoffs.

 

The role is hybrid and is expected to be in-person at least three days per week in the SIOC in Concord, CA.

 

 

PG&E is providing the salary range that the company in good faith believes it might pay for this position at the time of the job posting. This compensation range is specific to the locality of the job. The actual salary paid to an individual will be based on multiple factors, including, but not limited to, specific skills, education, licenses or certifications, experience, market value, geographic location, and internal equity. Although we estimate the successful candidate hired into this role will be placed between the entry point and the middle of the range, the decision will be made on a case-by-case basis related to these factors.​ This job is also eligible to participate in PG&E’s discretionary incentive compensation programs.  

 

A reasonable salary range is:​

 

Bay Area Minimum:      $122,000

Bay Area Maximum:     $194,000

 

Job Responsibilities

  • Maintain knowledge of adversary activities, including intrusion tactics, attack techniques and operational procedures.
  • Investigate and respond to escalated potential cybersecurity incidents
  • Forensic analysis of potential evidence
  • Analysis of potentially malicious files
  • Analysis of security event logs from a variety of sources
  • Network packet capture analysis
  • Lead incident response efforts, coordinating resources as needed
  • Work alongside other cyber teams to recommend and facilitate security control improvements, refine security operations workflows
  • Plan and organize incident response exercises and workshops
  • Documentation of after-action reports including summarization for executive review
  • Provide guidance to junior analysts
  • Share on-call responsibility outside of business hours, onsite and remote

 

Qualifications

Minimum:

  • High School or GED-General Educational Development Diploma
  • 4 years experience in IT-Information Technology security, including working in Security Operations Centers


Desired:

  • Bachelor’s Degree in Computer Science or job-related discipline or equivalent experience
  • Previous experience supporting cyber defense analysis of cloud networks in AWS, Azure, or GCP.
  • Formal IT Security/Network Certification, such as WCNA, CompTIA Security +, Cisco CCNA, SANS GCIH, GMON, GCFA, GCFE, GREM, GICSP, GCFR, GCTD, or other relevant certifications
  • Utility Industry experience
  • Previous experience working with various SIEM technologies.
  • Experience with scripting in Python/PowerShell
  • Malware reverse engineering skills

 

#featuredjob



  • CONCORD, United States PG&E Corporation Full time

    Requisition ID # 159198 Job Category: Information Technology Job Level: Individual ContributorBusiness Unit: Information TechnologyWork Type: HybridJob Location: Concord  Department OverviewThe Cybersecurity function is led by PG&E’s Senior VP and Chief Information Officer and is responsible for cybersecurity and risk management across the...


  • Concord, California, United States PG&E Corporation Full time

    Requisition ID: Not specifiedJob Category: Information TechnologyJob Level: Individual ContributorBusiness Unit: Information TechnologyWork Type: HybridLocation: Not specified Department OverviewThe Cybersecurity division is overseen by PG&E's Senior Vice President and Chief Information Officer, tasked with safeguarding the organization through effective...


  • Concord, California, United States PG&E Corporation Full time

    Requisition ID: Not specifiedJob Category: Information TechnologyJob Level: Individual ContributorBusiness Unit: Information TechnologyWork Type: HybridLocation: Not specifiedDepartment OverviewThe Cybersecurity division is overseen by PG&E's Senior Vice President and Chief Information Officer, tasked with managing cybersecurity and risk across the...


  • Concord, California, United States PG&E Corporation Full time

    Requisition ID: Not SpecifiedJob Category: Information TechnologyJob Level: Individual ContributorBusiness Unit: Information TechnologyWork Type: HybridLocation: Not Specified Department OverviewThe Cybersecurity division is overseen by PG&E's Senior Vice President and Chief Information Officer, focusing on cybersecurity and risk management throughout the...


  • Concord, California, United States PG&E Corporation Full time

    Requisition ID: Not SpecifiedJob Category: Information TechnologyJob Level: Individual ContributorBusiness Unit: Information TechnologyWork Type: HybridLocation: Not SpecifiedDepartment OverviewThe Cybersecurity division is overseen by PG&E's Senior Vice President and Chief Information Officer, focusing on safeguarding the organization through effective...


  • Concord, California, United States PG&E Corporation Full time

    Requisition ID: Not specifiedJob Category: Information TechnologyJob Level: Individual ContributorBusiness Unit: Information TechnologyWork Type: HybridLocation: Not specifiedDepartment OverviewThe Cybersecurity division is overseen by PG&E's Senior Vice President and Chief Information Officer, tasked with safeguarding the organization against cyber threats...


  • Concord, New Hampshire, United States Oracle Full time

    OracleSenior Principal Cloud Solutions ArchitectAre you passionate about establishing a trusted advisory relationship with Oracle's premier clients and assisting them in harnessing innovative ideas and technological advancements delivered through cloud solutions to revolutionize their operations? Do you possess experience in guiding enterprise organizations...


  • Concord, New Hampshire, United States Oracle Full time

    Overview:As a pivotal figure in Oracle's North America Cloud Engineering team, the Senior Cloud Solutions Architect is essential in fostering robust partnerships with our esteemed clients. This role is designed for individuals who possess a wealth of experience in guiding large enterprises through their digital transformation journeys by harnessing the power...


  • Concord, New Hampshire, United States iCoreConnect Full time

    iCoreConnect is seeking a highly motivated and experienced Senior Systems Engineer to join our growing team. In this role, you will play a vital part in designing, implementing, and maintaining cutting-edge IT solutions for our diverse clientele.As a key member of our technical support team, you will be responsible for providing expert-level troubleshooting,...


  • Concord, California, United States Techlink Systems Full time

    Job OverviewPosition Title: Senior Liability Claims Specialist (Medical Malpractice) - W2, no C2CWork Arrangement: Remote within CA, with flexibility for PST statesEmployment Type: PermanentCompany: TechLink SystemsRole Summary:The Senior Liability Claims Specialist is responsible for evaluating intricate and technically challenging claims related to...


  • Concord, California, United States OASYS, INC. Full time

    Job OverviewOASYS, INC. is seeking a qualified candidate for the position of Local Defender SOC Analyst. This role is essential in providing comprehensive support for our Army client, focusing on system monitoring and cyber incident analysis.Key Responsibilities:Facilitate the submission and tracking of service tickets related to Operational Technology (OT)...

  • Sr. Cloud Architect

    1 month ago


    Concord, United States Welch's Full time

    Job DescriptionJob DescriptionGrow with Welch's!Welch's is on a journey towards our bold ambition of being the global-leader of convenient, good for you fruit-based food and beverages. To turn this goal into a reality we need you and other exceptionally talented, agile, and innovative individuals who are eager to contribute to something...


  • Concord, California, United States OASYS, INC. Full time

    Job OverviewPosition: Local Defender SOC AnalystOASYS, INC., a premier government contractor, is looking for qualified candidates for the role of Local Defender SOC Analyst. This position is dedicated to providing support for our Army clientele.Key Responsibilities:The successful candidate will be responsible for:Monitoring and analyzing systems to detect...


  • Concord, California, United States OASYS, INC. Full time

    Job OverviewPosition: Local Defender SOC AnalystCompany: OASYS, INC.OASYS, INC., a premier government contractor, is in search of qualified candidates for the role of Local Defender SOC Analyst. This position is integral to supporting our Army clientele at a designated military terminal.Key Responsibilities:Provide system monitoring and analytical support to...


  • Concord, California, United States E-Solutions INC Full time

    Job OverviewPosition: Cloud Infrastructure Engineer with Terraform and GCPLocation: RemoteType: Onsite OnlyKey Responsibilities: - Spearhead intricate technology Cloud projects that have a significant organizational impact. - Serve as a pivotal contributor in the automation of Cloud Infrastructure provisioning utilizing Infrastructure as Code (IaC)...


  • Concord, California, United States OASYS, INC. Full time

    Job OverviewPosition: Local Defender SOC AnalystCompany: OASYS, INC.OASYS, INC., a premier government contractor, is looking for qualified candidates for the role of Local Defender SOC Analyst. This position is dedicated to providing critical support to our Army client at a military terminal.Key Responsibilities:Assist the Army client by delivering system...


  • Concord, Massachusetts, United States Welch's Full time

    Job OverviewJoin the Welch's TeamAt Welch's, we are on an ambitious journey to become the leading provider of fruit-based food and beverages globally. To achieve this vision, we seek talented, agile, and innovative professionals who are ready to contribute to something remarkable.We offer more than just a job; we invite you to be part of a vibrant,...


  • Concord, United States Capital One Full time

    Locations: VA - McLean, United States of America, McLean, VirginiaSenior Platform Engineer (Azure AD Connect, Active Directory)Capital One is on a mission to help our customers succeed by bringing ingenuity, simplicity, and humanity to banking. We measure our efforts by the success our customers enjoy and the advocacy they exhibit. We are succeeding because...


  • Concord, California, United States Mount Indie Full time

    General Overview: The role involves overseeing system monitoring and providing analytical support to detect cyber incidents, along with offering strategic recommendations for remediation. Position necessitates on-site engagement.Key Responsibilities (*Essential Functions): Manages and tracks all service requests submitted for Operational Technology (OT)...


  • Concord, California, United States OASYS, INC. Full time

    Job OverviewOASYS, INC., a premier government contractor, is looking for a dedicated Cybersecurity Operations Analyst to enhance our support for military operations.Key Responsibilities:The selected candidate will be responsible for:Monitoring and analyzing systems to detect cyber threats and providing actionable insights for remediation.Managing and...