Senior Cyber Event Analyst
NBCUniversalAbout the role
Company Description
NBCUniversal is one of the world's leading media and entertainment companies. We create world-class content, which we distribute across our portfolio of film, television, and streaming, and bring to life through our theme parks and consumer experiences. We own and operate leading entertainment and news brands, including NBC, NBC News, MSNBC, CNBC, NBC Sports, Telemundo, NBC Local Stations, Bravo, USA Network, and Peacock, our premium ad-supported streaming service. We produce and distribute premier filmed entertainment and programming through Universal Filmed Entertainment Group and Universal Studio Group, and have world-renowned theme parks and attractions through Universal Destinations & Experiences. NBCUniversal is a subsidiary of Comcast Corporation.
Our impact is rooted in improving the communities where our employees, customers, and audiences live and work. We have a rich tradition of giving back and ensuring our employees have the opportunity to serve their communities. We champion an inclusive culture and strive to attract and develop a talented workforce to create and deliver a wide range of content reflecting our world.
Comcast NBCUniversal has announced its intent to create a new publicly traded company ('Versant') comprised of most of NBCUniversal's cable television networks, including USA Network, CNBC, MSNBC, Oxygen, E!, SYFY and Golf Channel along with complementary digital assets Fandango, Rotten Tomatoes, GolfNow, GolfPass, and SportsEngine. The well-capitalized company will have significant scale as a pure-play set of assets anchored by leading news, sports and entertainment content. The spin-off is expected to be completed during 2025.
Job Description
NBCUniversal’s Cyber Defense Operations team is responsible for providing cyber threat intelligence, event analysis, incident response and threat hunting for all areas of NBCUniversal in a highly collaborative, fast paced, and agile fashion. As a member of the Cyber Response team, a candidate can expect to utilize their technical expertise to assess, contain, and remediate cyber threats. The Senior Cyber Event Analyst is responsible for analysis, escalation and initial response actions of security events and alerts to incidents.
The ideal candidate would have a working knowledge of current and relevant security technologies and how to apply them to cyber event analysis and response actions. A clear investigative methodology with a focus on preserving evidence and analyzing data to form conclusions that will steer response directions. Experience analyzing and responding to security events and incidents with practical and working knowledge of response analysis methodologies and enhancing security response processes. In addition, the candidate must be willing and available to work any shift including overnight shifts, weekends, and holidays to meet the needs of a 24x7/365 operation, with possibility of schedule changes based on business needs and priorities.
The role involves regular interaction with various groups and leadership within the organization in order to accomplish job responsibilities. Working under the direction of the Manager, Cyber Response, the successful candidate will be responsible for participating in the following activities:
- Triage, scope, and disposition all security alerts or operational requests across multiple technology platforms (Cloud, Hosts, Networks, Applications, Email) to identify threats needing to be escalated to Incident Response and the Business
- Day-to-day operational tasks related to the ongoing support of Cyber Operations.
- Responsible for documenting evidence throughout the incident life cycle, conducting shift handovers, escalating security events to incident response, and providing support during cyber security incidents.
- Responsible for the ticket queue triage: prioritization, assignment and disposition of security incident tickets/events.
- Responsible for analyzing threat data from multiple sources and building evidence backed dispositions.
- Responsible for front line triage and response including some containment and remediation actions such as network isolation of hosts and blocking indicators of compromise within security perimeter tools.
- Analyst must keep detailed reports on all analysis activity, documented in the case management tool to validate process adherence.
- Responsible for contributing to the creation and updating of new and existing SOAR playbooks and runbooks and general response documentation.
- Identify operational gaps in security processes, provide ideas for solutions and take ownership for implementation.
- Peer review of tickets for fellow Cyber Event Analysts that request one.
- Managing the Cyber hotline during their shift.
- Act as a mentor to any Cyber Event Analysts and Intern’s that may be part
Apply for this role
Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.
Apply Now →Generate Application KitFree account required — sign up in 30s