Guardian Life

Lead Engineer - IT

Guardian Life  •  Chennai, IN (Onsite)  •  4 hours ago
Apply
AI can make mistakes so check important info. Chat history is never stored.

Job Description

Role: Cyber Incident Response and Threat Hunter

Team: Cyber Incident Response and Cyber Threat Mitigation Services

Team Overview:

The Cyber Incident Response and Threat Services (CIRTS) team is responsible for Level 2 response to all cybersecurity incidents, as well as detecting and alerting on potential future threats. This is a dual Incident Responder and Threat Hunter function team that responds to cybersecurity problems facing our industry.

Tools Used by Team:

  • Splunk – Used for Investigating activity as well as for Threat Hunting and Detection Engineering
  • Cisco Secure Endpoint / AMP – Endpoint Detection for Workstations
  • Trend Micro – Endpoint Detection for Servers
  • Nexthink – Workstation monitoring managed by Workplace – Used in Investigations
  • Varonis – Unstructured Data Activity and Alerting
  • Proofpoint – Email Data Lost Prevention (DLP) and Email Threat Insights
  • Trellix – Web/USB DLP
  • Cisco SecureX / ThreatGrid – Used for forensics investigations
  • Zenoss – Informational for Incident Response/Investigations
  • Imperva/Incapsula – WAF product – Used by team in investigations
  • NetScout DDOS – Used by team in investigations
  • KAPE – Desktop product – Used with Forensic Investigations

Responsibilities:

  • Respond to tickets that are either opened directly to the team in GSC, or escalated by the CDCS team. This will include investigating activity for any malicious behavior, as well as responding to the incident, including containment, if required.
  • Using Tools, proactively look for unusual activity in our environment that may not have reached the threshold of an alert, or may not be configured for monitoring.
  • Work with other team members to identify any potential areas for improvement in our detection capabilities.

Goals:

  • Respond to incidents in a timely and complete manner, working with other team members, where necessary to fully investigate and contain any malicious activity. This includes investigative timelines and artifacts, as well as Incident summaries.
  • Identify any areas for improvement in how the team collaborates with Cyber Defense, as well as any opportunities to improve our initial response either via training or automation.
  • Build Splunk Reports and Dashboards to assist our partners (Cyber Defense, Fraud and Audit) with their projects and requirements.
  • Use results of proactive threat hunts to build additional detection capabilities for Guardian’s cyber defense program.

Location:

This position can be based in any of the following locations:

Chennai

Current Guardian Colleagues: Please apply through the internal Jobs Hub in Workday

Guardian Life

About Guardian Life

Who we are

Guardian makes a difference in the lives of people when they need us most. With over 160 years of stability and fiscal integrity, we are a trusted resource to generations of families and business owners, inspiring well-being and helping build financial confidence.

Today, we stand behind 29 million consumers, helping them prepare and plan for a bright future for themselves and their families. We help business owners care for their employees. And we help people recover and thrive in times of unexpected loss.

As a modern mutual insurance company, we believe in driving value beyond dividends. We invest in our colleagues, are building an inclusive and innovative culture, and are helping to uplift communities through thoughtful corporate impact programs.

What we stand for

In 1860, a community of immigrants joined together to insure and protect their businesses and families. They were guided by powerful ideals that we’ve continued to stand behind and evolved throughout the years: we do the right thing, we believe people count, we courageously shape the future together, and we go above and beyond for the people we serve.

Guardian employees embrace and live by these values every day. They remind us to put people at the heart of all we do so that we can help protect what matters most to you. Want to help bring these values to life? Join us for a rewarding career and the opportunity to shape the future.

Disclosures:

Financial information concerning Guardian as of December 31, 2022, on a statutory basis: Admitted assets = $76.0 billion; liabilities = $67.2 billion (including $55.0 billion of reserves); and surplus = $8.8 billion. Dividends are not guaranteed. They are declared annually by Guardian’s Board of Directors.

Guardian® is a registered trademark of The Guardian Life Insurance Company of America. © Copyright 2023 The Guardian Life Insurance Company of America 2023-156184 Exp. 5/25

Industry
Finance & Insurance
Company Size
5,001-10,000 employees
Headquarters
New York , NY
Year Founded
1860
Social Media