Sr. Incident Responder
NBCUniversalAbout the role
Company Description
NBCUniversal is one of the world's leading media and entertainment companies. We create world-class content, which we distribute across our portfolio of film, television, and streaming, and bring to life through our theme parks and consumer experiences. We own and operate leading entertainment and news brands, including NBC, NBC News, MSNBC, CNBC, NBC Sports, Telemundo, NBC Local Stations, Bravo, USA Network, and Peacock, our premium ad-supported streaming service. We produce and distribute premier filmed entertainment and programming through Universal Filmed Entertainment Group and Universal Studio Group, and have world-renowned theme parks and attractions through Universal Destinations & Experiences. NBCUniversal is a subsidiary of Comcast Corporation.
Our impact is rooted in improving the communities where our employees, customers, and audiences live and work. We have a rich tradition of giving back and ensuring our employees have the opportunity to serve their communities. We champion an inclusive culture and strive to attract and develop a talented workforce to create and deliver a wide range of content reflecting our world.
Comcast NBCUniversal has announced its intent to create a new publicly traded company ('Versant') comprised of most of NBCUniversal's cable television networks, including USA Network, CNBC, MSNBC, Oxygen, E!, SYFY and Golf Channel along with complementary digital assets Fandango, Rotten Tomatoes, GolfNow, GolfPass, and SportsEngine. The well-capitalized company will have significant scale as a pure-play set of assets anchored by leading news, sports and entertainment content. The spin-off is expected to be completed during 2025.
Job Description
The Senior Incident Responder will be a critical team member within the new Versant Cyber organization. This individual is responsible for providing cyber threat alerting, event monitoring, response, and threat hunting for all areas of the business in a highly collaborative, fast paced, and agile fashion. As part of the incident response and detection team, the successful candidate will be expected to utilize their technical expertise to assess, contain, and remediate cyber threats as well as serve as an escalation point for security alerts.
RESPONSIBILITIES:
Key areas of focus for the Senior Incident Responder include managing workflows, escalations, and advance technical processes to build program maturity and growth of the threat operations and response function. The successful candidate will be responsible for the following activities:
- Day-to-day operational tasks related to the ongoing support of threat operations.
- Responsible for forensically analyzing escalated security incidents from the SOC and conducting response actions following NIST and SANS Incident Response Frameworks.
- Responsible for analyzing threat data from multiple sources and identifying security incidents and events of importance for direct escalation to Incident Commander(s).
- Promote, foster, and advocate for an environment of collaboration, diversity, and inclusion.
- Utilize forensic skillsets to properly scope and determine impact for security incidents across multiple technology platforms (Cloud, Hosts, Networks, Applications, Email).
- Mitigate risk by taking appropriate containment response actions on multiple platforms, or in some cases handoffs to partner teams.
- Keep detailed notes on all analysis activity, documented in the case management tool to validate process adherence.
- Responsible for contributing to the strategic creation and updating of new and existing SOAR playbooks and runbooks to support efficient event alerting and response actions.
- Provide On-Call support for escalated events.
- Involvement with Cyber initiatives and projects that influence defense capabilities.
Qualifications
- Minimum 5 years working in Cyber Defense with experience in Incident Response, Security Operations Center (SOC), detection engineering, or similar functions.
- Previous experience supporting or leading incident response or detection engineering functions.
- Experience using industry-standard security toolsets in a layered defense model.
- Working knowledge of core Enterprise IT concepts (web application architectures, networking, etc.).
- Experience with host-based and network-based logging and analysis.
- Knowledge of the cyber threat landscape including different types of adversaries, campaigns, and the motivations that drive them.
- Knowledge of industry recognized security and analysis frameworks (Mitre ATT&CK, Kill Chain, Diamond Model, NIST Incident Response, etc.).
- Must be self-motivated and able to work both independently and as part of a team.
- Strong communication (both verbal and written) and client intimacy skills w
Apply for this role
Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.
Apply Now →Generate Application KitFree account required — sign up in 30s