Original listing text, shown exactly as published by the company.
About the Role
Join our growing security team and help drive security detection and response initiatives across Ramp. This will include a focus on maturing our security detection and alerting capabilities across our federal and public sector environments.
Please note that this role will require you to be comfortable with working in-person at our NYC HQ (located near Madison Square Park) at least 2 days/week
What You’ll Do
- Respond and assist with security requests and incidents submitted by Ramp team members
- Review logging, alerting, and audit sources to identify potential security incidents and perform initial triage on identified incidents
- Contribute to the creation, upkeep, and tuning of runbooks and security alerts to effectively handle, triage, and improve security alerts
- Work closely with the Ramp Security Engineers to improve security alerting and automated remediation
- Utilize log ingestion platform for security analytics and identification of tactics, techniques and patterns of attackers
- Design and implement automation to detect and respond to threats
What You Need
- 3-4 years of information technology experience or the equivalent combination of education, technical training, or work experience.
- Working experience in information security, especially on a Computer/Security Incident Response Team (C/SIRT), Computer Emergency Response Team (CERT), Computer Security Incident Response Center (CSIRC) or a Security Operations Center (SOC)
- Experience with query-based log management solutions (ELK, Datadog, Panther, etc)
- Strong deductive reasoning and critical thinking skills
- Ability to communicate complex security issues to peers and management in a clear and effective manner.
- Strong written communication skills and the ability to succinctly document technical details
Nice to Haves
- Prior experience working with government entities or in a highly regulated environment
- Security Certifications such as CompTIA Security+, Network+, etc.
- Experience with workflow automation tooling (Tines, Swimlane, etc.)