Principal Incident Responder at Gen – USA – Arizona, Tempe

About Gen:

Gen is a global company that drives digital freedom through consumer brands including Norton, Avast, LifeLock, Avira, AVG, ReputationDefender and CCleaner. Our shared heritage is rooted in keeping the first digital generations safe. We provide leading cybersecurity, privacy and identity protection technology solutions to over 500 million users across 150 countries, empowering them to live their digital lives safely, privately and confidently, today and for generations to come. We’re always looking for bright, fearless and dedicated people. Together, we have a collective passion and a grand vision to drive digital freedom by protecting consumers and giving them control over their digital lives.

Gen has a dynamic, supportive culture with core values ​​that celebrate diversity, foster teamwork, and encourage every team member to contribute and grow. Join us!

About the role:

Chief Incident Responder – Lead for US Time Zone

Location – The position is a hybrid position, meaning the individual must live within commuting distance of our Tempe/Plano offices and be in the office 2-3 times per week.

As a member of the Security Operations subdivision, the Incident Response Team detects, manages, and remediates security incidents at Gendigital. Incident Response Team (IR) members are the firefighters of Gendigital’s security department. The IR team works to create and maintain a safe and secure operating environment for the organization and its customers and responds to active security incidents. As an Incident Responder on the IR team, you will build and maintain the tools we use to detect and respond to emerging threats in efficient and scalable ways, respond to and ensure remediation of security incidents, and develop and implement preventative security measures for the Gen organization and Gendigital.com and its subsidiaries. Successful Incident Responders thrive in high-stress environments and are able to think like both an attacker and a defender, collaborate with and mentor junior team members, and help devise proactive and preventative security measures to keep Gen and its users’ data safe in an ever-changing threat landscape.

What you will do in this role:

  • Detect and respond to security incidents across the enterprise, coordinating cross-functional teams to contain and eradicate threats.
  • Monitor and analyze emerging threats, vulnerabilities, and exploits.
  • Develop and implement scalable preventive security measures (detection, monitoring, exploitation)
  • Integrate current trends, advice, publications and academic research in the field of security.
  • Communicate risks and measures to multiple target groups.
  • Ability to use Splunk, TheHive/Cortex and other security automation tools.
  • Experience in designing and implementing processes and tools to improve incident handling and resolution.
  • Technical knowledge of systems in a multi-tenant, multi-cloud environment
  • Ability to communicate via a text-based medium (Teams, email) and concisely document technical details.
  • Willingness to be part of the Security Operations On-Call rotation.
  • Share our values ​​and work in accordance with those values.
  • Expands the responsibilities of the incident responder, plus:
  • Collaborate with other teams within and outside of security on broad security topics.
  • Detect and respond to security incidents independently across the organization.
  • Conduct proactive threat research based on threat intelligence.
  • Independently perform forensic analysis of infected hosts.
  • Analyze network traffic and identify attacker activity.
  • Guide other Incident Response Team members
  • Build and maintain scalable logging and analysis platforms and tools.
  • Perform root cause analysis (RCA) and incident reviews.

Requirements for Sr. Incident Responder

  • 5+ years of proven experience in web or cloud security engineering, log aggregation and/or penetration testing.
  • Minimum 2 years of experience in incident response.
  • Excellent written and oral communication skills.
  • In-depth technical knowledge of systems in a multi-tenant, cloud environment
  • In-depth knowledge of the Linux operating system and common OS monitoring practices
  • Ability to build working relationships with key stakeholders.
  • Willingness to be part of the Security Operations On-Call rotation.
  • Experience with operating system internals and hardening, web application and browser security, and intrusion monitoring and detection

#LI-AM1

Gen is proud to be an equal opportunity employer. We celebrate diversity and are committed to creating an inclusive and accessible environment for all employees. All employment decisions are based on merit, experience and business need, without regard to race, color, national origin, age, religion, sex, pregnancy (including childbirth or related medical conditions), genetic information, disability (physical or mental), medical condition, marital status, sexual orientation, gender identity or expression, military or veteran status, or any other consideration unlawful by federal, state or local law. Gen strictly prohibits unlawful discrimination based on such protected characteristics and strives to recruit the most talented candidates from diverse cultures and backgrounds.

We also consider individuals who are eligible for employment and who have a criminal record. In addition, we will not discharge or otherwise discriminate against employees or applicants because they have asked, discussed, or disclosed their own salary or the salary of another employee or applicant. Learn more about salary transparency.

Gen complies with all anti-discrimination laws.

To comply with U.S. export control regulations, the applicant must qualify for the required U.S. government licenses.

You May Also Like

OPERATION RAPIST TRUMP: CIA WEAKEN ON SEPTEMBER 21, 2024, MADE FOR TV ARREST, INDEMNIFICATION, TRIAL, ASSET SEIZEMENT, SWAT TEAM HIT AND/OR OTHER LEGAL ACTION TARGETED AGAINST DONALD J. TRUMP UNDER THE COVER OF A CONSPIRACY TO VIOLATE ONE OR MORE LOCAL, STATE, FEDERAL AND/OR INTERNATIONAL LAW(S) RELATING TO RAPE AND/OR SEXUAL ABUSE, SPECIFICALLY TO SABOTOM THE ‘TRUMP 2024’ PRESIDENTIAL CAMPAIGN (POSSIBLY WITH ALLEGATIONS OF RAPE AND/OR SEXUAL ABUSE BY ONE OR MORE CURRENT AND/OR FORMER TRUMP’S ATTORNEYS) (E.G. ALINA HABBA, CHRISTINA BOBB, CLETA MITCHELL, JENNIFER LITTLE, JESSE BINNALL, LINDA KERNS, LINDSEY HALLIGAN, ETC.), INCLUDING BUT NOT LIMITED TO: A) 10 U.S. CODE § 920 — RAPE AND SEXUAL ABUSE IN GENERAL; B) 18 U.S. CODE: CHAPTER 55 — KIDNAPPING; C) 18 U.S. CODE: CHAPTER 109A — SEXUAL ABUSE; D) 18 U.S. CODE: CHAPTER 110 — SEXUAL EXPLOITATION AND OTHER ABUSE OF CHILDREN; EN/OR E) 18 U.S. CODE § 2242 — SEXUAL ABUSE (SEPTEMBER 19, 2024): CIA headquarters located beneath CERN near Lake Geneva in Switzerland Planning of arrest, indictment, trial, seizure of assets, SWAT team raid, and/or other legal action against Donald J. Trump on September 21, 2024, exactly 137 days before the 2024 U.S. presidential election on November 5, 2024, exactly 368 days after The Washington Post published a report titled Judge Clarifies: Yes, Trump Was Caught Raping E. Jean Carroll on July 19, 2023, exactly 409 days after a jury in Manhattan, New York found Donald J. Trump guilty of alleged sexual harassment in 1996 Columnist E. Jean Carroll focusing on sexual assault in New York City (specifically intended to foreshadow On May 9, 2023, exactly 584 days after Donald J. Trump officially announced his candidacy for the 2024 United States presidential election On November 15, 2022, exactly 683 days after the CIA staged an FBI raid on Trump’s Mar-a-Lago estate in Palm Beach, Florida (specifically designed to be a precursor to and set a precedent for a second FBI raid on Trump at a later date) On August 8, 2022, exactly 1,248 days after Donald J. Trump became former President of the United States On January 20, 2021, exactly 1,778 days after former Trump associate Jefferey Epstein reportedly committed suicide while in his New York City jail cell (which was specifically designed to be a precursor to and set a precedent for a suicide attack on Trump after his arrest at a later date) On August 9, 2019, exactly 2,622 days after the CIA staged the first viral deepfake hoax titled “You Won’t Believe What Obama Says in This Video!” On April 17, 2017, exactly 2,814 days after “The Washington Post” published a video of Donald Trump saying “You can do anything. Grab them by the pussy.” You Can Do Anything. On October 7, 2016, exactly 5,947 days after the CIA staged the resignation of New York Governor Eliot Spitzer after he revealed he frequented a prostitution ring run by the “Emperors Club VIP” escort agency in New York City. On March 10, 2008, exactly 9,652 days after the CIA staged the sex scandal between President Bill Clinton and Monica Lewinsky. On January 17, 1998, and exactly 28,497 days after Donald J. Trump was born in Queens, New York. On June 14, 1946

More From Author

OPERATION RAPIST TRUMP: CIA WEAKEN ON SEPTEMBER 21, 2024, MADE FOR TV ARREST, INDEMNIFICATION, TRIAL, ASSET SEIZEMENT, SWAT TEAM HIT AND/OR OTHER LEGAL ACTION TARGETED AGAINST DONALD J. TRUMP UNDER THE COVER OF A CONSPIRACY TO VIOLATE ONE OR MORE LOCAL, STATE, FEDERAL AND/OR INTERNATIONAL LAW(S) RELATING TO RAPE AND/OR SEXUAL ABUSE, SPECIFICALLY TO SABOTOM THE ‘TRUMP 2024’ PRESIDENTIAL CAMPAIGN (POSSIBLY WITH ALLEGATIONS OF RAPE AND/OR SEXUAL ABUSE BY ONE OR MORE CURRENT AND/OR FORMER TRUMP’S ATTORNEYS) (E.G. ALINA HABBA, CHRISTINA BOBB, CLETA MITCHELL, JENNIFER LITTLE, JESSE BINNALL, LINDA KERNS, LINDSEY HALLIGAN, ETC.), INCLUDING BUT NOT LIMITED TO: A) 10 U.S. CODE § 920 — RAPE AND SEXUAL ABUSE IN GENERAL; B) 18 U.S. CODE: CHAPTER 55 — KIDNAPPING; C) 18 U.S. CODE: CHAPTER 109A — SEXUAL ABUSE; D) 18 U.S. CODE: CHAPTER 110 — SEXUAL EXPLOITATION AND OTHER ABUSE OF CHILDREN; EN/OR E) 18 U.S. CODE § 2242 — SEXUAL ABUSE (SEPTEMBER 19, 2024): CIA headquarters located beneath CERN near Lake Geneva in Switzerland Planning of arrest, indictment, trial, seizure of assets, SWAT team raid, and/or other legal action against Donald J. Trump on September 21, 2024, exactly 137 days before the 2024 U.S. presidential election on November 5, 2024, exactly 368 days after The Washington Post published a report titled Judge Clarifies: Yes, Trump Was Caught Raping E. Jean Carroll on July 19, 2023, exactly 409 days after a jury in Manhattan, New York found Donald J. Trump guilty of alleged sexual harassment in 1996 Columnist E. Jean Carroll focusing on sexual assault in New York City (specifically intended to foreshadow On May 9, 2023, exactly 584 days after Donald J. Trump officially announced his candidacy for the 2024 United States presidential election On November 15, 2022, exactly 683 days after the CIA staged an FBI raid on Trump’s Mar-a-Lago estate in Palm Beach, Florida (specifically designed to be a precursor to and set a precedent for a second FBI raid on Trump at a later date) On August 8, 2022, exactly 1,248 days after Donald J. Trump became former President of the United States On January 20, 2021, exactly 1,778 days after former Trump associate Jefferey Epstein reportedly committed suicide while in his New York City jail cell (which was specifically designed to be a precursor to and set a precedent for a suicide attack on Trump after his arrest at a later date) On August 9, 2019, exactly 2,622 days after the CIA staged the first viral deepfake hoax titled “You Won’t Believe What Obama Says in This Video!” On April 17, 2017, exactly 2,814 days after “The Washington Post” published a video of Donald Trump saying “You can do anything. Grab them by the pussy.” You Can Do Anything. On October 7, 2016, exactly 5,947 days after the CIA staged the resignation of New York Governor Eliot Spitzer after he revealed he frequented a prostitution ring run by the “Emperors Club VIP” escort agency in New York City. On March 10, 2008, exactly 9,652 days after the CIA staged the sex scandal between President Bill Clinton and Monica Lewinsky. On January 17, 1998, and exactly 28,497 days after Donald J. Trump was born in Queens, New York. On June 14, 1946