B&H Photo logo

Incident Response Lead

B&H Photo

New York, NYJob$135–169K/yrTracked 1w agoSeen in employer's feed 5 days ago

Most applications go out cold — see where you stand first. No sign-up to start.

At a glance

Compensation
$135–169K/yr
Location
New York, NY
Work Authorization
Not specified

Job overview

B&H Photo, a 50‑year‑old leader in photography and videography retail, seeks an Incident Response Lead to manage daily IR alerts, investigate security incidents, guide responders, and support the overall IR program while contributing to security projects and documentation.

Skills & qualifications

RequiredNice to have

Skills

IT NetworkingFirewallsIDS/IPSRoutingLoggingSyslogAuditdWindows Event LogSecurity ToolingAntivirusEDREmail SecurityVulnerability ScannersTicketing SystemsJIRAServiceNowRemedyCIS Top 18NISTIncident Response FrameworksThreat HuntingMalware AnalysisCommunicationWritingAnalytical SkillsTroubleshootingAttention to DetailCuriositySelf StarterIncident Reporting

Qualifications

5 Years IT/Cyber Experience3 Years Incident Response ExperienceRelevant Certifications

Benefits

Medical Insurance
401(k) Match

Full job description

At over 50 years old and counting, B&H has built a reputation as the trusted resource for photography and videography enthusiasts via its NYC SuperStore and its award-winning website. Long known as "The Professional’s Source", B&H is recognized by savvy consumers worldwide for its honest, knowledgeable guidance, expert tips and articles… and always-great prices.

B&H offers competitive salaries, medical benefits, a 401K plan, employee discounts and opportunities to grow within a high-energy, low-attitude environment. Make your move to B&H today!

Job Overview: An IR analyst L3 is responsible for the daily operations of IR alerts/tickets, triaging, investigating, and escalating security alerts and incidents, managing IR tools and services, and supporting the overall IR program. These responsibilities are designed to support the identification of and response to cyberthreats affecting B&H systems and assets in a timely manner.

Essential Responsibilities:

  • Monitor and respond to security events and incidents using established processes and tools

  • Investigate the root cause, scope, impact, and remediation of security incidents

  • Manage daily operations of reviewing and responding to IR alerts including but not limited to SIEM, EDR, DLP, FW, and WAF alerts.

  • Provide direction and guidance to incident responders and analysts

  • Manage daily operations responsibilities for the operations and support of IR tools and services.

  • Act as the Incident Lead during significant security events.

  • Conduct and participate in incident response training and exercises

  • Upkeep and development of IR documentation

  • Support the overall B&H IR program.

  • Provide monthly reporting for the IR function.

Additional Responsibilities:

  • Assisting with security projects, tasks, and other initiatives

  • Support overall IS Security initiatives.

Specific Knowledge, Skills, and Abilities:

  • Extensive knowledge of IT networking (TCP/IP, firewalls, IDS/IPS, routing, etc.), logging (syslog, auditd, window’s event log, etc.), security tooling (A/V, EDR, email security, vulnerability scanners, etc.), ticketing systems (JIRA, HP Service Now, remedy, etc.) and security principles (CIS top 18, NIST, incident response frameworks, etc.)

  • Experience with threat hunting and operating system malware analysis.

  • Ability to lead a collaborative team while building inter-departments support.

  • Excellent communication and writing skills.

  • Strong analytical and troubleshooting skills.

  • Attention to detail and curiosity to learn new skills.

  • Self starter and able to manage multiple competing priorities.

  • Experience preparing and presenting incident reports

Preferred Education, Experience and Licenses:

  • Minimum of 5 years of experience in IT/Cyber with at least 3 in Incident Response.

  • Experience leading major incident response operations and 24/7 security monitoring.

  • Relevant certifications, such as CompTIA Security+, CySe+, GCIH, GSOC, GMON, CEH, SSCP, or CISSP are a plus.

We are an Equal Opportunity Employer. All persons shall have the opportunity to be considered for employment without regard to their race, color, religion, national origin, ancestry, alienage or citizenship status, age, disability or handicap, sex or gender, marital status, veteran status, sexual orientation, arrest record, or any other characteristic protected by applicable federal, state or local laws.

We will endeavor to make a reasonable accommodation to the known physical or mental limitations of a qualified applicant with a disability unless the accommodation would impose an undue hardship on the operation of our business. If you believe you require such assistance to complete this form or to participate in an interview, please let us know.

Job Details

Job Family Information Systems

Pay Type Salary

Hiring Min Rate 134,800 USD

Hiring Max Rate 168,500 USD

You've read the whole posting — now see how you match it.