CFC企业安全事件经理
CFC Enterprise Security Incident Manager
#### 公司简介
Experian 是一家全球性的数据和技术公司,为世界各地的个人和企业创造机会。我们涉足多个市场,包括金融服务、医疗保健、汽车、农业、保险等。Experian 投资于人才和先进的新技术,以释放数据的潜力。我们在 32 个国家拥有 25,200 名优秀员工。
#### 职位描述
作为 Experian 全球安全办公室(EGSO)的一员,高级企业安全事件经理(ESIM)负责重大网络安全事件的网络事件指挥,领导企业内部跨职能的响应工作。
这个技术性很强的职位协调完整的事件响应生命周期,从检测和遏制到恢复和事后分析,同时提供高管级别的沟通,推动运营决策,并确保与 Experian 全球信息安全事件响应计划保持一致。
您将向 Experian 网络融合中心(CFC)事件响应高级总监汇报工作。作为独立贡献者,您将与技术团队、业务领导者和高管合作。您的目标是减少业务影响,加强事件准备能力,并提升我们的网络韧性。
必须能够响应非工作时间的紧急通知,处理可能的重大安全事件,并在安排的夜间、周末和节假日参与轮班值班,以支持 CFC 的事件响应工作。
**您将有机会:**
- 作为网络事件指挥官,领导企业范围内的高风险网络安全事件响应,验证并升级事件,指导跨职能响应工作,并推动遏制、消除、恢复和解决。
- 通过向高级管理层和相关方提供更新,协调技术和业务团队,支持决策,并保持准确的事件记录,提供高管级事件领导。
- 通过事后审查、根本原因分析、经验教训和对响应计划、操作流程的持续改进来增强事件响应计划。
- 通过领导桌面演练,与业务和技术相关方合作,验证响应能力,识别差距并提高准备度。
- 支持网络融合中心的运作,保持对事件的监控和管理。
查看英文原文
#### Company Description
Experian is a global data and technology company, powering opportunities for people and businesses around the world. We operate across a range of markets, from financial services to healthcare, automotive, agribusiness, insurance, and many more. Experian invests in people and new advanced technologies to unlock the power of data. We have an amazing team of 25,200 people in 32 countries.
#### Job Description
As a member of Experian's Global Security Office (EGSO), the Senior Enterprise Security Incident Manager (ESIM) serves as the Cyber Incident Commander for significant cybersecurity incidents, leading cross-functional response efforts across the enterprise
This hands-on technical role coordinates the full incident response lifecycle, from detection and containment through recovery and post-incident analysis, while providing executive-level communications, driving operational decision-making, and ensuring alignment with Experian's Global Information Security Incident Response Plan.
You will report to the CFC Senior Director of Incident Response as part of Experian's Cyber Fusion Center. As an individual contributor, you will partner with technical teams, business leaders, and executives. Your goals will be to minimize business impact, strengthen incident readiness, and improve our cyber resilience.
Must be available to respond to after-hours pages for potentially major security incidents and manage the CFC incident response during assigned nights, weekends, and holidays as part of an on-call rotation.
**You'll have the opportunity to:**
- Lead enterprise-wide response to high-risk cybersecurity incidents as Cyber Incident Commander, validating and escalating incidents, directing cross-functional response efforts, and driving containment, eradication, recovery, and resolution.
- Provide executive incident leadership by delivering updates to senior leaders and stakeholders, coordinating technical and business teams, supporting decision-making, and maintaining accurate incident documentation.
- Enhance the incident response program through post-incident reviews, root cause analysis, lessons learned, and continuous improvements to response plans, playbooks, and operational processes.
- Strengthen cyber readiness by leading tabletop exercises, partnering with business and technology stakeholders to validate response capabilities, identify gaps, and improve preparedness.
- Support Cyber Fusion Center operations by maintaining awareness of emerging threats, collaborating across security and technology teams, participating in the on-call rotation, and contributing to plans that strengthen Experian's security posture.
#### Qualifications
**Your background:**
- 8+ years of experience in security operations or information technology, with 5+ years in information security incident handling or response.
- Bachelor's degree in Computer Science, Computer Engineering, Information Security, or a related field, or equivalent professional experience.
- Experience leading/supporting investigations and response to complex cybersecurity incidents, including APTs, ransomware, DDoS, insider threats, web/mobile application attacks, and data exfiltration.
- Knowledge of cyber incident response, digital investigation methodologies, and adversary tactics, techniques, and procedures (TTPs), including incident triage, impact assessment, containment, remediation, and recovery.
- Broad technical knowledge of enterprise and cloud environments, including operating systems, networking, security controls, enterprise technologies, and detection and response platforms.
- Experience investigating complex incidents, performing root cause analysis, making risk-based decisions, and communicating technical findings to all audiences.
- Leadership experience coordinating cross-functional incident response activities, influencing stakeholders, and managing multiple high-priority cybersecurity incidents.
- Demonstrated initiative, including the ability to identify improvement opportunities, drive security enhancements, and operate effectively while keeping leadership informed.
- Plus: Industry certifications in cybersecurity, incident response, digital forensics, or ethical hacking preferred (e.g., GIAC, CISSP, SSCP, CISM, EC-Council, Offensive Security).
#### Additional Information
Our uniqueness is that we celebrate yours. Experian's people first, inclusive and purpose driven culture is multi award-winning; World's Best Workplaces™ 2025 (Fortune Global Top 25), Great Place To Work™ in 26 countries to name a few. Check out Experian Life on social or explore our Careers Site to understand why.
Our compensation reflects the cost of labor across several U.S. geographic markets. The base pay range for this position is listed above. Within this range, individual pay is determined by work location and additional factors such as job-related skills, experience, and education. You will be also eligible for a variable pay opportunity.
Experian is proud to be an Equal Opportunity Employer for all groups protected under applicable federal, state and local law, including protected veterans and individuals with disabilities. If you have a disability or special need that requires accommodation, please let us know at the earliest opportunity.
**Benefits/Perks:**
- Great compensation package and bonus plan.
- Core benefits including medical, dental, vision, and matching 401K.
- Flexible work environment, ability to work remote, hybrid or in-office.
- Flexible time off including volunteer time off, vacation, sick and 12-paid holidays.
- Explore all our exciting benefits here: [https://myexperianbenefits.com/.](https://myexperianbenefits.com/)
**Recruitment Fraud Awareness**- Experian's recruitment process is conducted only through authorised channels. Recruitment communications will only be sent from an **@** [**experian.com**](http://experian.com) email address.
**Experian will never ask candidates to make any payment** as part of an application, interview, assessment, onboarding, or recruitment process. To apply for roles or verify opportunities, please visit [**experian.com/careers.**](http://experian.com/careers)
#LI-Remote
This is a remote position.