Senior Incident Responder, CSIRT - APAC

1 Month ago • 5 Years + • Cyber Security

Job Summary

Job Description

Salesforce seeks a Senior Incident Responder for its Cyber Security Incident Response Team (CSIRT) in APAC. This role is on the front lines, leading incident responders to protect critical infrastructure and customer data from security threats. Responsibilities include contributing to CSIRT projects, conducting threat hunts, enhancing detection and response capabilities, and improving workflows. The role involves working within a 'follow the sun' operating model, including on-call rotation. Experience with incident response, EDR solutions (Crowdstrike), log analysis platforms (Splunk), and public cloud environments is crucial. Strong communication and collaboration skills are essential, along with a customer-centric approach.
Must have:
  • 5+ years security operations experience
  • Incident response with EDR solutions
  • Log analysis platform experience (Splunk)
  • Strong relationship building skills
  • Customer-centric approach
  • Excellent communication skills
  • Production environment incident response
  • Understanding of core incident response concepts
  • Network fundamentals and common protocols
  • Public cloud environment experience
Good to have:
  • Understanding of the threat landscape
  • Proficiency in scripting languages (Python, Bash)
  • Malware reverse engineering knowledge
  • Relevant security certifications (CISSP, GCIH)

Job Details

To get the best candidate experience, please consider applying for a maximum of 3 roles within 12 months to ensure you are not duplicating efforts.

Job Category

Enterprise Technology & Infrastructure

Job Details

About Salesforce

We’re Salesforce, the Customer Company, inspiring the future of business with AI+ Data +CRM. Leading with our core values, we help companies across every industry blaze new trails and connect with customers in a whole new way. And, we empower you to be a Trailblazer, too — driving your performance and career growth, charting new paths, and improving the state of the world. If you believe in business as the greatest platform for change and in companies doing well and doing good – you’ve come to the right place.

Salesforce - the leader in enterprise cloud computing - is seeking a Senior Incident Responder in our Cyber Security Incident Response Team (CSIRT). Candidates must have a passion for Information Security and a firm understanding of security monitoring and incident response.

As a key member of our growing Global CSIRT, the Senior Incident Responder is on the ‘front lines’ of the Salesforce production environment; leading a group of incident responders that protect our critical infrastructure and our customers’ data from the latest information security threats. You will be contributing to significant CSIRT projects, conducting threat hunts, enhancing detection and incident response capabilities, and  improving  core CSIRT workflows and processes.

Working hours correspond to our “follow the sun” operating model and shift according to daylight savings during the year. You are required to do on-call as part of a regular rotation. Applicants must meet all visa requirements to work and live in Australia.

 

REQUIRED SKILLS:

Minimum 5+ years of prior specialised security operations experience consisting of:

  • Flexibility, drive, integrity, and creative problem-solving skills

  • Operational experience performing incident response with Endpoint Detection and Response (EDR) solutions i.e. Crowdstrike etc.

  • Operational experience with log analysis platforms i.e. Splunk, Google Security Operations etc.

  • The ability to build strong relationships with peers both internal and external to your functional group, and with peers/professional organisations outside your company

  • Customer-centric attitude and focus on providing best-in-class service for customers and stakeholders

  • The willingness to apply yourself to learning new skills and gaining certifications

  • Strong verbal and written communication skills; ability to communicate effectively and clearly to both technical and non-technical audiences

  • Operational experience responding to security incidents in a production environment, such as investigating and remediating large scale network compromise, possible endpoint malware infections and attacker enterprise tactics

  • Familiarity with core concepts of security incident response, e.g., the typical phases of response, vulnerabilities vs threats vs actors, Indicators of Compromise (IoCs), etc.

  • Understanding of network fundamentals and common Internet protocols, specifically DNS, HTTP, HTTPS/TLS, and SMTP

  • Understanding of incident response and security operations within public cloud environments (e.g. AWS, Azure, or GCP)

  • Understanding of Mac OSX, Microsoft Windows, and Linux/Unix system administration and security control fundamentals

  • Experience in being part of a project team - demonstrating ability to contribute to projects across teams where influencing skills are required

  • Previous experience of collaborating with global teams

DESIRED SKILLS:

  • Understanding of the information security threat landscape (attack vectors and tools, best practices for securing systems and networks, etc.)

  • Working proficiency with programming /scripting languages is a plus: i.e. Python, Bash, Go, PowerShell

  • Working knowledge of malware reverse engineering

  • Relevant information security certifications, such as: BTL1, ISC2 CISSP, SANS GCIH, GCFA, GCFE, GX-IH, GX-FA and other related certifications

#LI-Y

Accommodations

If you require assistance due to a disability applying for open positions please submit a request via this Accommodations Request Form.

Posting Statement

At Salesforce we believe that the business of business is to improve the state of our world. Each of us has a responsibility to drive Equality in our communities and workplaces. We are committed to creating a workforce that reflects society through inclusive programs and initiatives such as equal pay, employee resource groups, inclusive benefits, and more. Learn more about Equality at www.equality.com and explore our company benefits at www.salesforcebenefits.com.

Salesforce is an Equal Employment Opportunity and Affirmative Action Employer. Qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender perception or identity, national origin, age, marital status, protected veteran status, or disability status. Salesforce does not accept unsolicited headhunter and agency resumes. Salesforce will not pay any third-party agency or company that does not have a signed agreement with Salesforce.

Salesforce welcomes all.

Similar Jobs

Google - Product Engineer, Machine Learning and GPU Accelerators

Google

Taipei City, Taiwan (On-Site)
1 Month ago
Zoox - Test Infrastructure Internship/Co-Op

Zoox

San Carlos, California, United States (On-Site)
3 Months ago
Playrix - Lead QA Engineer (Resources Team)

Playrix

Armenia (Remote)
3 Months ago
Intel Corporation - Sr. Infrastructure Engineer - Storage

Intel Corporation

Hillsboro, Oregon, United States (On-Site)
2 Months ago
Playrix - Senior Release Support Engineer

Playrix

Portugal (Remote)
3 Months ago
News Corp - Senior Engineer, Product Security

News Corp

Bengaluru, Karnataka, India (Hybrid)
3 Months ago
PwC - Insurance Enabling Technologies - Guidewire Developer -Sr.Associate

PwC

Bengaluru, Karnataka, India (On-Site)
3 Months ago
Playtika - Application Security Researcher

Playtika

Israel (On-Site)
3 Months ago
Zynga - Senior Application Security Engineer

Zynga

Bengaluru, Karnataka, India (On-Site)
6 Months ago
OKX - IT Security Operations

OKX

Kuala Lumpur, Federal Territory Of Kuala Lumpur, Malaysia (Hybrid)
4 Months ago

Get notifed when new similar jobs are uploaded

Similar Skill Jobs

Codvoai - Senior Data Scientist

Codvoai

Pune, Maharashtra, India (Remote)
1 Year ago
Zeta - Site Reliability Engineer I / II

Zeta

Bengaluru, Karnataka, India (On-Site)
3 Months ago
Paytm - DevOps - Senior DevOps Engineer

Paytm

Bengaluru, Karnataka, India (Remote)
2 Months ago
Unity - Senior DevOps Engineer

Unity

Tel Aviv-Yafo, Tel Aviv District, Israel (On-Site)
4 Months ago
Luxoft - Regular DevOps Engineer

Luxoft

(Remote)
2 Months ago
Relia Quest - Security Engineer - Pune

Relia Quest

Mumbai, Maharashtra, India (On-Site)
3 Months ago
N-iX - Senior Automation Test Engineer (JavaScript) (#2338)

N-iX

Ukraine (Remote)
3 Months ago
Animoca Brands - Senior DevOps Engineer

Animoca Brands

Hong Kong (On-Site)
4 Months ago
Telesign - Site Reliability Engineer (SRE) III

Telesign

Bengaluru, Karnataka, India (On-Site)
4 Months ago
 Sagecor Solutions - Software Engineer 1 (JPE -  036)

Sagecor Solutions

Fort Meade, Maryland, United States (On-Site)
2 Months ago

Get notifed when new similar jobs are uploaded

Jobs in Sydney, New South Wales, Australia

Luxoft - Business Analyst (Transformation & Integration)

Luxoft

Sydney, New South Wales, Australia (On-Site)
2 Months ago
Aristocrat Gaming - Global Head of Tax

Aristocrat Gaming

North Ryde, New South Wales, Australia (Hybrid)
1 Month ago
Wicked Workshop - AAA Video Games Programmer

Wicked Workshop

Box Hill, Victoria, Australia (Hybrid)
8 Months ago
Canva - Admin Business Partner - Product Platform and Infrastructure

Canva

Sydney, New South Wales, Australia (Hybrid)
3 Months ago
Easygo - Poker Manager

Easygo

Melbourne, Victoria, Australia (On-Site)
2 Months ago
Canva - Senior Accessibility Compliance Analyst (Open remote across ANZ)

Canva

Sydney, New South Wales, Australia (Remote)
3 Months ago
Employee First - Recruitment & Engagement - 3D Artist

Employee First - Recruitment & Engagement

Sydney, New South Wales, Australia (On-Site)
6 Months ago
Fluence - Services Manager

Fluence

Melbourne, Victoria, Australia (Hybrid)
4 Months ago
Tesla - Vehicle Service Technician, Footscray

Tesla

Victoria, Australia (On-Site)
1 Month ago
Netflix - Sales Partner - Australia

Netflix

Sydney, New South Wales, Australia (On-Site)
3 Months ago

Get notifed when new similar jobs are uploaded

Cyber Security Jobs

Evolution - IT Security Engineer (Red team)/ Penetration tester

Evolution

Sofia, Sofia City Province, Bulgaria (On_site)
2 Months ago
ION - IT/Cyber Security Analyst

ION

London, England, United Kingdom (On-Site)
4 Months ago
Discord - Senior Security Engineer, Enterprise Security

Discord

San Francisco, California, United States (Remote)
1 Month ago
Luxoft - Information Security Compliance Specialist

Luxoft

(Remote)
2 Months ago
Microsoft - Principal Security Engineer

Microsoft

Redmond, Washington, United States (On-Site)
1 Month ago
OKX - Graduate Hire 2024/25 - SRE/Security Engineer

OKX

Hong Kong (On-Site)
4 Months ago
PwC - ISP Compliance Specialist

PwC

Prague, Prague, Czechia (On-Site)
1 Month ago
Saviynt - Technical Lead, Professional Services

Saviynt

Bengaluru, Karnataka, India (Hybrid)
3 Months ago

Get notifed when new similar jobs are uploaded