Listing Description
Apply Online: https://salesforce.wd1.myworkdayjobs.com/en-US/External_Career_Site/job/Australia---Sydney/Security-Incident-Handler_JR43294
Salesforce has one of the best Information Security teams in the world and growing this area of the business is a top priority! Our Information Security teams work hand in hand with the business to ensure the highest security around all of our applications. The Computer Security Incident Response Team (CSIRT) is responsible for 24x7x365 security monitoring and rapid incident response across all Salesforce environments. We are passionate about defending some of the world’s top companies and are looking for others who are too.
The Incident Handler is responsible for executing security operations processes, including real-time analysis of security alert data and assisting in the response to potential security incidents. Working in a collaborative team, the position is based in Sydney Australia. You’ll be a part of our 24x7x365 global security operations, generally working a standard business week (Sydney business hours), with occasional weekend work and / or on-call rotations.2-5 years experience in the Information Security field, including operational security monitoring or incident response experience.
Monitoring devices such as network and host-based intrusion detection systems, web application firewalls, database security monitoring systems, firewalls/routers/switches, proxy servers, antivirus systems, file integrity monitoring tools, and operating system logs.
Responding to security incidents in a production environment, such as investigating and remediating possible endpoint malware infections and mitigating email borne threats such as spam and phishing.
Strong technical understanding of network fundamentals and common Internet protocols.
Strong technical understanding of the information security threat landscape (attack vectors and tools, best practices for securing systems and networks, etc.).
Familiarity with Microsoft Windows, Macintosh, Linux/Unix system administration and security controls.
Must have strong verbal and written communication skills; ability to communicate effectively and clearly to both technical and non-technical staff.
Listing Details
- Citizenship: No Requirements
- Incentives: Both
- Education: No Requirements
- Travel: No Travel
- Telework: No Telecommute