Job Description
Seeking an Information Security Analyst 3 / Incident Coordinator to support its Security Operations Center (SOC) within Threat Operations. This role focuses on coordinating high-severity cybersecurity, trust & safety, and fraud incidents, ensuring effective communication, documentation, task tracking, and executive reporting throughout the incident lifecycle. The ideal candidate will have experience in security operations or technical project coordination, strong stakeholder management skills, and the ability to translate technical incident details into concise executive-level updates.
Key Responsibilities
- Coordinate and manage cybersecurity, fraud, and trust & safety incidents.
- Maintain incident trackers, timelines, milestones, and documentation.
- Serve as the primary liaison between SOC teams and business stakeholders.
- Facilitate incident lifecycle activities including containment, eradication, recovery, and closure.
- Produce executive-level incident reports and status updates.
- Support post-incident reviews, lessons learned, and action-item tracking.
- Ensure adherence to incident response playbooks, SOPs, and SOC processes.
- Utilize ServiceNow SIR for incident management and reporting.
- Coordinate with DFIR, Insider Risk, Escalations, Legal, Compliance, and IT teams.
Required Qualifications
- 1-3+ years of experience in Security Operations, Incident Response, Incident Coordination, or Cybersecurity.
- Strong communication, organizational, and stakeholder management skills.
- Experience coordinating multiple high-priority incidents simultaneously.
- Understanding of SOC operations, incident response processes, and cybersecurity concepts.
- Ability to present concise executive summaries and status reports.
- Familiarity with ServiceNow Security Incident Response (SIR) preferred.
- Exposure to Splunk and CrowdStrike is a plus.
- Bachelor's degree or equivalent experience.
- PMP, ITIL, CISM, IH certifications are a plus.