ATLANTA, GA, 30309, USA
3 days ago
Information Security Consultant II
About NCR VOYIX NCR VOYIX Corporation (NYSE: VYX) is a leading global provider of digital commerce solutions for the retail, restaurant and banking industries. NCR VOYIX is headquartered in Atlanta, Georgia, with approximately 16,000 employees in 35 countries across the globe. For nearly 140 years, we have been the global leader in consumer transaction technologies, turning everyday consumer interactions into meaningful moments. Today, NCR VOYIX transforms the stores, restaurants and digital banking experiences with cloud-based, platform-led SaaS and services capabilities. Not only are we the leader in the market segments we serve and the technology we deliver, but we create exceptional consumer experiences in partnership with the world’s leading retailers, restaurants and financial institutions. We leverage our expertise, R&D capabilities and unique platform to help navigate, simplify and run our customers’ technology systems. Our customers are at the center of everything we do. Our mission is to enable stores, restaurants and financial institutions to exceed their goals – from customer satisfaction to revenue growth, to operational excellence, to reduced costs and profit growth. Our solutions empower our customers to succeed in today’s competitive landscape. Our unique perspective brings innovative, industry-leading tech to all the moving parts of business across industries. NCR VOYIX has earned the trust of businesses large and small — from the best-known brands around the world to your local favorite around the corner. Information Security Consultant I This role is part of NCR Voyix’s Global Information Security team. This team is responsible for supporting and progessing NCR Voyix’s Corporate Information Security program. The primary goal of the program is to protect the confidentiality, integrity, and availability of information resources. We are seeking a highly skilled and experienced Information Security Consultant will be responsible for day-to-day activities, which include responding to both routine and high severity incidents and leading our Forensics E-Discovery team. This is a position where the ideal candidate will have a strong background in network incident response, digital forensics, e-discovery processes, and litigation support. Key Responsibilities + Collaborate with internal and customer teams to investigate and contain incidents. Conduct host forensics, network forensics, log analysis, and malware triage in support of incident response investigations. + Recognize and codify attacker Tools, Tactics, and Procedures (TTPs) and Indicators of Compromise (IOCs). Build scripts, tools, or methodologies to enhance Mandiant’s incident investigation processes that can be applied to current and future investigations. + As an active member of the team, monitor and process response for security events on a 24x7 basis. + Analyze attack vectors and methods to develop custom Splunk ES SIEM signatures or detections + Provide and implement recommendations to improve Splunk ES detections + Lead the SOC’s incident response team threat hunting and incident response activities + Lead Postmortem exercises post incidents with a focus to identify deficiencies requiring additional attention. + Analyze and respond to security threats from Firewall (FW), Intrusion Detection Systems (IDS), Intrusion Prevention Systems (IPS), Antivirus (AV), Endpoint Detection and Response (EDR), Network Detection and Response (NDR), Email Security, Cloud Security, and other security threat data sources. + Oversee the collection, preservation, and analysis of electronic data and metadata in response to litigation, regulatory inquiries, and internal investigations. + Collaborate and communicate with the Law Department and Global Security teams to understand case requirements and provide guidance on e-discovery and digital forensics matters. + Conduct data collection from U.S.-based – and, in some cases, internationally-based – digital devices, including computers, mobile devices, and cloud-based, and network systems; deduplicate and import said data into Relativity or other e-discovery review platform. + Develop and implement e-discovery strategies and workflows to ensure efficient and defensible processes. + Leverage knowledge in multiple security disciplines, such as Windows, Unix, Linux, data loss prevention (DLP), endpoint controls, Public Cloud, and networking, to offer global solutions for a complex heterogeneous environment. + Provide or facilitate the forensics analysis of security events. + Develop and implement e-discovery strategies and workflows to ensure efficient and defensible processes. + Stay current with industry trends, tools, and best practices in digital forensics and e-discovery. + Support 24/7 operations + Work non-standard hours including nights, weekends, and holidays + Perform other duties as assigned Skills and Qualifications + Strong knowledge of network, backend systems, operating systems, applications, and web services in a manner that allows for the interaction of all as it relates to security and services. + 5+ Years as a Senior incident responder/leader of incident response, digital forensics and e-discovery + Experience configuring custom Splunk searches and applications required + Experience with analyzing attack vectors and methods in order to develop Splunk ES SIEM signatures or detections + Ability to apply analytical expertise and critical thinking to security incidents + Ability to assimilate, understand and utilize various security technologies + Ability to collaborate within a geographically distributed team of Incident Response Analysts + Demonstrated team or functional leadership experience + Experience processing and analyzing intelligence in support of management decision making + Current Information Security related certification preferred. + Current Public cloud related certification preferred. + Knowledge of relevant information security and incident response frameworks such as ISO 27001, NIST SP 800-61, NIST Cyber Security Framework, MITRE ATT&CK Framework. Licenses/Certifications + CISSP Certified Information Systems Security Professional + Certified Ethical Hacker (CEH) + CompTIA Network+ Certification + CompTIA Security+ Certification Offers of employment are conditional upon passage of screening criteria applicable to the job EEO Statement Integrated into our shared values is NCR Voyix’s commitment to diversity and equal employment opportunity. All qualified applicants will receive consideration for employment without regard to sex, age, race, color, creed, religion, national origin, disability, sexual orientation, gender identity, veteran status, military service, genetic information, or any other characteristic or conduct protected by law. NCR Voyix is committed to being a globally inclusive company where all people are treated fairly, recognized for their individuality, promoted based on performance and encouraged to strive to reach their full potential. We believe in understanding and respecting differences among all people. Every individual at NCR Voyix has an ongoing responsibility to respect and support a globally diverse environment. Statement to Third Party Agencies To ALL recruitment agencies: NCR Voyix only accepts resumes from agencies on the preferred supplier list. Please do not forward resumes to our applicant tracking system, NCR Voyix employees, or any NCR Voyix facility. NCR Voyix is not responsible for any fees or charges associated with unsolicited resumes “When applying for a job, please make sure to only open emails that you will receive during your application process that come from a @ncrvoyix.com email domain.” Help us run the world's top brands. At NCR Voyix (http://www.ncr.com/) , we specialize in turning routine transactions into meaningful connections. With a rich history (http://www.ncr.com/about/history) of innovation, we've been at the forefront of problem-solving through technology. Operating globally in over 30 countries, we lead in Retail, Restaurant, Digital banking, and Payments. Our solutions optimize banking operations, streamline restaurant services, enhance retail interactions, and foster trust through secure payment systems. We take pride in our strong culture (http://www.ncr.com/about) and a history of providing robust career paths. Come work for a leading technology company where you can grow your career. Join us and be part of revolutionizing transactions across these pivotal industries.
Confirm your E-mail: Send Email