Response Operations Shift Lead (Second Shift: 4:45 PM to 1 AM EST)
NBCUniversalAbout the role
Company Description
NBCUniversal is one of the world's leading media and entertainment companies. We create world-class content, which we distribute across our portfolio of film, television, and streaming, and bring to life through our theme parks and consumer experiences. We own and operate leading entertainment and news brands, including NBC, NBC News, MSNBC, CNBC, NBC Sports, Telemundo, NBC Local Stations, Bravo, USA Network, and Peacock, our premium ad-supported streaming service. We produce and distribute premier filmed entertainment and programming through Universal Filmed Entertainment Group and Universal Studio Group, and have world-renowned theme parks and attractions through Universal Destinations & Experiences. NBCUniversal is a subsidiary of Comcast Corporation.
Our impact is rooted in improving the communities where our employees, customers, and audiences live and work. We have a rich tradition of giving back and ensuring our employees have the opportunity to serve their communities. We champion an inclusive culture and strive to attract and develop a talented workforce to create and deliver a wide range of content reflecting our world.
Comcast NBCUniversal has announced its intent to create a new publicly traded company ('Versant') comprised of most of NBCUniversal's cable television networks, including USA Network, CNBC, MSNBC, Oxygen, E!, SYFY and Golf Channel along with complementary digital assets Fandango, Rotten Tomatoes, GolfNow, GolfPass, and SportsEngine. The well-capitalized company will have significant scale as a pure-play set of assets anchored by leading news, sports and entertainment content. The spin-off is expected to be completed during 2025.
Job Description
This position is listed as a Second Shift Lead, requiring work hours of 4:45 PM to 1:00 AM EST
NBCUniversal’s Cyber Threat Operations team is responsible for providing cyber threat intelligence, event monitoring, response, and threat hunting for all areas of NBCUniversal in a highly collaborative, fast paced, and agile fashion. As a member of the Cyber Response team, a candidate can expect to utilize their technical expertise to assess, contain, and remediate cyber threats. The Sr Incident Responder is also an escalation point for security alerts from the security event analysts, and a candidate would be expected to mentor and share knowledge with others in the organization.
The ideal candidate would have a working knowledge of current and relevant security technologies and how to apply them to cyber incident response actions. A clear investigative methodology with a focus on preserving evidence and analyzing data to form conclusions that will steer response directions. Experience responding to multi-faceted security events and incidents and assisting with the coordination of subsequent response efforts prioritizing mission critical elements.
The role involves regular interaction with various groups and leadership within the organization to accomplish job responsibilities. Working closely with the Cyber Response Manager the Incident Responder will manage workflows, escalations, and advance technical processes to build program maturity and growth. The successful candidate will be responsible for participating in the following activities:
- Supervise daily shift operations, ensuring consistent performance, prioritization, escalations, and adherence to company standards
- Monitor KPIs and shift metrics, identifying areas for improvement to address with Management
- Conduct shift handovers for seamless transitions between their shift
- Act as primary point of contact for escalations, prioritizing more critical items and providing details to Management on interesting items that happened during the shift
- Oversee and triage ticket queues focusing on prioritization, potential impact, and escalations
- Lead review of tuning requests for their shift
- Support Incident response as an acting member on the response team, working escalated tickets for identified security threats
- Perform root cause and forensic log analysis for security incidents to determine enterprise risk, impact, and effective remediations needed across multiple technology platforms (Cloud, Hosts, Networks, Applications, Email)
- Analyze threat data from multiple sources and identifying security incidents and events of importance for direct escalation to Incident Commander(s).
- Identify, articulate, and explain attack vectors, threat tactics, and attacker techniques to technical and non-technical stakeholders including senior leadership
- Take appropriate containment response actions on multiple platforms, or in some cases Handoffs to partner teams
- Function as Incident Handler for security incidents to drive containment and remediation action items for various platforms, environments, and t
Apply for this role
Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.
Apply Now →Generate Application KitFree account required — sign up in 30s