Sr Mgr Cyber Command Ctr - 90397438 - Remote Job at Amtrak, United States

YTBLTk4vaHJPS0dYZUxyUmNEaHhJNk40SFE9PQ==
  • Amtrak
  • United States

Job Description

Your success is a train ride away!

As we move America’s workforce toward the future, Amtrak connects businesses and communities across the country. We employ more than 20,000 diverse, energetic professionals in a variety of career fields throughout the United States. The safety of our passengers, our employees, the public and our operating environment is our priority, and the success of our railroad is due to our employees.

 

Are you ready to join our team?

Our values of ‘Do the Right Thing, Excel Together and Put Customers First’ are at the heart of what matters most to us, and our Core Capabilities, ‘Building Trust, Accountability, Effective Communication, Customer Focus, and Proactive Safety & Security’ are what every employee needs to know and do to be most impactful at Amtrak. By living the Amtrak values, focusing on our capabilities, and actively embracing and fostering diverse ideas, backgrounds, and perspectives, together we will honor our past and make Amtrak a company of the future.

 

The Senior Manager, Cybersecurity Threat Command Center is a key position responsible for leading day-to-day operations of our Cyber Threat Command Center an integral operation arm of the Cyber Fusion Center. In this role, you will have a critical impact with key stakeholder engagement, cybersecurity incident management, incident response, and coordination. Your expertise in cyber incident response, cybersecurity incident handling, and cyber threat analysis will be instrumental in protecting our organization's systems, data, and reputation. Act as a mentor and provide guidance to team members. 

ESSENTIAL FUNCTIONS:

  • Manage the Cyber Threat Command Center daily operations and lead the overall management of the incident management lifecycle ensuring effective incident containment
  • Coordinate and lead the cybersecurity incident management, response, and coordination process, collaborating with cross-functional teams and stakeholders. 
  • Collaborate with internal external entities, such as law enforcement, regulatory bodies, and cybersecurity incident response service providers to ensure timely response, containment, and eradication of cybersecurity incidents. 
  • Investigate, assess, and prepare comprehensive cybersecurity incident reports, including root cause analysis, impact assessment, and recommended mitigation measures. 
  • Conduct in-depth analysis of cybersecurity incidents to identify trends, patterns, and indicators of compromise (IOCs). 
  • Assist with developing cybersecurity incident response plans, including containment, eradication, playbooks, procedures, and recovery strategies. 
  • Provide ownership and accountability driving Cybersecurity Incident Management and Cybersecurity Incident Handling escalations to resolution. 
  • Collaborate with Cyber Fusion Center Teams (Cyber Threat Command Center, Threat Intelligence, Threat Operations, and Threat Command Center) for process improvement, collaboration, and feedback loops.
  • Preferred ability for effective communication and interpersonal skills, work well with others in an integrated team environment, and must be self-motivated. 
  • Preferred knowledge and familiarity with Operational Technology (OT), Industrial Controls Systems (ICS) or Supervisory Control and Data Acquisition (SCADA) systems but not required.
  • Lead Cyber Incident Exercises, Tabletops, and Cyber Incident Management Response Team with business leaders, stakeholders, and cross-functional teams.
  • Partner with Cyber Fusion Center Service Offering Leads (Threat Intelligence, Threat Operations, and Threat Command Center) for process improvement, collaboration, and feedback loops. 

MINIMUM QUALIFICATIONS:

  • Bachelor’s degree in computer science, Information Systems, Software Engineering, Software Development, or relevant field, and 9+ years of relevant experience or 13+ years of relevant work experience in Cybersecurity.
  • Experience with Cyber Incident Handling, Cyber Incident Response, and/or Cyber Incident Management.
  • Relevant experience and leadership acumen focusing on developing high-performing talent.
  • Ability to switch between strategic, tactical, and operational concepts and be comfortable in either setting.
  • Ability to build and deliver executive level presentations to clients and organizational leadership.
  • Ability to communicate complex information, concepts, or ideas in a confident and well-organized manner through verbal, written, and/or visual means.
  • Ability to think critically and like threat actors.
  • Knowledge of attack vectors, threat tactics, and attacker techniques.
  • Knowledge of penetration testing principles, tools, and techniques.
  • Knowledge of Application Security Risks (e.g., Open Web Application Security Project Top 10 list). 
  • Knowledge of using a variety of forensic analysis tools in incident response investigations to determine the extent and scope of compromise.
  • Knowledge of cyber-attack stages (e.g., reconnaissance, scanning, enumeration, gaining access, escalation of privileges, maintaining access, network exploitation, covering tracks).
  • Skill in recognizing and categorizing types of vulnerabilities and associated attacks.
  • Skill in protecting a network against malware. (e.g., NIPS, anti-malware, restrict/prevent external devices, spam filters). 
  • Skill in performing damage assessments.
  • Skill to design incident response for cloud service models.

PREFERRED QUALIFICATIONS:

  • Cybersecurity certifications, courses, or hands-on experience with some of the following:
    o Red Team Operations and Adversary Emulation
    o Penetration Testing, Exploit Writing, and Ethical Hacking
    o Offensive Security, Security Operations, Web Application Testing, or Cloud Security
    o Reverse-Malware Engineering
    o Digital Forensics and Incident Response
    o Cyber Deception – Attack Detection, Disruption, Active Defense
  • Preferred knowledge and familiarity with Operational Technology (OT), Industrial Controls Systems (ICS) or Supervisory Control and Data Acquisition (SCADA) systems, but not required.

WORK ENVIRONMENT:

  • 100% Remote, On-site, or Hybrid options available.
  • May require occasional travel up to 25% of the time.
  • May require occasional after hours, weekend, or periodic shift work supporting a 24x7x365 Cyber Fusion Center.

COMMUNICATIONS AND INTERPERSONAL SKILLS:

  • Must have excellent oral and written communication skills.

The salary/hourly range is $149,400-$193,644, Pay is based on several factors including but not limited to education, work experience, certifications, internal equity, etc. Depending on an employee’s assigned worksite or location, Amtrak may consider a geo-pay differential to be applied to the employee’s base salary. Amtrak may offer additional incentive and pay programs to recognize and reward our employees, including a short-term incentive bonus based upon factors such as individual and company performance that is commensurate with the level of the position and/or long-term incentive plan compensation. In addition to your salary, Amtrak offers a comprehensive benefit package that includes health, dental, and vision plans; health savings accounts; wellness programs; flexible spending accounts; 401K retirement plan with employer match; life insurance; short and long term disability

 

Requisition ID: 165083

Work Arrangement: 02-Remote Optional  Click here for more information about work arrangements at Amtrak. 
Relocation Offered: No 
Travel Requirements: Up to 25% 

You power our progress through your performance.

 

We want your work at Amtrak to be more than a job. We want your career at Amtrak to be a fulfilling experience where you find challenging work, rewarding opportunities, respect among colleagues, and attractive compensation. Amtrak maintains a culture that values high performance and recognizes individual employee contributions. 


Amtrak is committed to a safe workplace free of drugs and alcohol. All Amtrak positions requires a pre-employment background check that includes prior employment verification, a criminal history check and a pre-employment drug screen. 

Candidates who test positive for marijuana will be disqualified, regardless of any state or local statute, ordinance, regulation, or other law that legalizes or decriminalizes the use or possession of marijuana, whether for medical, recreational, or other use. Amtrak's pre-employment drug testing program is administered in accordance with DOT regulations and applicable law.


In accordance with DOT regulations (49 CFR § 40.25), Amtrak is required to obtain prior drug and alcohol testing records for applicants/employees intending to perform safety-sensitive duties for covered Department of Transportation positions. If an applicant/employee refuses to provide written consent for Amtrak to obtain these records, the individual will not be permitted to perform safety-sensitive functions.

 

In accordance with federal law governing security checks of covered individuals for providers of public transportation (Title 6 U.S.C. §1143), Amtrak is required to screen applicants for any permanent or interim disqualifying criminal offenses. 


Note that any education requirement listed above may be deemed satisfied if you have an equivalent combination of education, training and experience.


Amtrak is an equal opportunity employer and all qualified applicants will receive consideration for employment without regard to race/color, to include traits historically associated with race, including but not limited to, hair texture and hairstyles such as braids, locks and twists, religion, sex (including pregnancy, childbirth and related conditions, such as lactation), national origin/ethnicity, disability (intellectual, mental and physical), veteran status, marital status, ancestry, sexual orientation, gender identity and gender expression, genetic information, citizenship or any other personal characteristics protected by law..

Job Tags

Hourly pay, Permanent employment, Temporary work, Work experience placement, Interim role, Local area, Remote work, Relocation, Flexible hours, Shift work,

Similar Jobs

Culver's

Crew Member Job at Culver's

Must be able to work Sunday Day/Night, Monday-Thursday Evenings Join the Culver's True...  ...and come grow your career with us! No experience required. We need energetic \True Blue...  ...Age 18+ $8.50-$14/hr. and up! (Day/Night shifts) Meal Discounts & Paid Breaks You will... 

NP Now

Certified Nurse Midwife / CNM Job at NP Now

 ...Community Health Center is looking to hire a Certified Nurse Midwife to join a growing women's health practice in Goldsboro, NC. Open to new graduates! Just 1hr from Raleigh! Midwife will make a big impact in the lives of their patients offering hope and help! Company... 

Wayne Memorial Hospital - Jesup, GA

CRT or RRT (FULL TIME) (P-A) Job at Wayne Memorial Hospital - Jesup, GA

Purpose: To outline the job requirements and expectations of a Registered Respiratory Therapist (RRT). Under the supervision of the Cardiopulmonary Services Medical Director and the Department Director of Cardiopulmonary Services, the RRT is responsible for providing...

Avenue Technologies and Commodities Inc

SCADA Systems Developer - NASA Job at Avenue Technologies and Commodities Inc

100 % Onsite in Houston U.S. Citizenship is required Seeking detail-oriented engineers with familiarity with SCADA (for example Ignition, Wonderware, CIMPLICITY etc.) systems configuration and development to support projects using the Ignition software platform. The...

VSSI LLC Staffing Services

Assembly Line Worker Job at VSSI LLC Staffing Services

 ...Job Title: Entry-Level Assembly Line Worker - Engine Remanufacturing Warehouse. Description: Join our dynamic team in Carrollton, TX 75006, where you'll play a vital role in our engine remanufacturing process. This entry-level position offers an exciting opportunity...