Meta Careers Jobs

Job Information

Meta Security Analyst, Security Operations and Incident Response in Tel Aviv, Israel

Summary:

Meta is seeking a Security Analyst to join the Global Security Operations and Incident Response team. The Analyst will serve on the front lines of Meta’s Security team and will lead and support security investigations across the company’s global infrastructure as well as respond to escalations from the Tier1 team. The analyst will leverage an armory of tools to investigate and respond to both external and internal security threats. Utilizing Meta’s tooling, you will monitor security events in real-time, assess external and internal threats, and provide accurate and timely response. You will collaborate closely with technical teams, with a diverse set of skills to tackle the panoply of unique security challenges that we encounter at Meta scale.

Required Skills:

Security Analyst, Security Operations and Incident Response Responsibilities:

  1. Investigate and respond to external and internal cybersecurity threats in a timely manner while communicating clearly and proactively until remediation.

  2. Act as an escalation point for Tier1 investigations, contribute to the development of the Tier1 capability, and ensure adherence to internal service level objectives.

  3. Document security investigations and produce high quality and accurate reports for a wide range of stakeholders.

  4. Collaborate with Security Engineers and cross-functional teams to investigate and remediate large scale security incidents.

  5. Support security incident root cause analysis, identify control gaps, and recommend mitigation strategies.

  6. Collaborate with cross-functional teams to drive improvements to security tools, policies and processes.

  7. Improve the effectiveness and efficiency of the Security Operations and Incident Response team including the development and refinement of processes and technical capabilities.

  8. Understand and support requirements of internal and external stakeholders, regulators, and auditors.

Minimum Qualifications:

Minimum Qualifications:

  1. 4+ years of professional experience in a Security Operations Center or in a relevant investigative role.

  2. 4+ years of experience navigating and understanding Windows, macOS, and Linux operating systems.

  3. Experience analyzing network and host-based security events.

  4. Professional experience using a wide range of investigative tools including EDR, SIEM/SOAR, UBA.

  5. Knowledge of networking technologies, specifically TCP/IP and related protocols.

  6. Experience with attacker tactics, techniques, and procedures.

  7. Experience making important decisions independently and multi-tasking under pressure.

  8. Experience responding quickly to changing situations without compromising quality.

Preferred Qualifications:

Preferred Qualifications:

  1. Experience in a Security Operations, Incident Response, or investigation role in a large and regulated organization.

  2. Experience with database query languages.

  3. Experience handling and triaging malware.

  4. Experience handling digital forensic evidence and writing reports to support internal investigations.

  5. Experience driving changes to processes that can scale across teams and regions and affect organizations outside Security.

Industry: Internet

DirectEmployers