- Company Name
- Live Nation Entertainment
- Job Title
- Cyber Security Incident Response Lead
- Job Description
-
**Job Title:** Cyber Security Incident Response Lead
**Role Summary:**
Lead the containment, eradication, and remediation of cyber incidents for a global enterprise. Serve as the primary liaison between technical teams and senior leadership, ensuring clear communication, evidence‑based analysis, post‑incident reporting, and continuous improvement of the incident response program.
**Expectations:**
- Operate on-call and respond to high‑pressure incidents.
- Provide executive‑level briefings and detailed technical reports.
- Maintain calm, analytical focus during crisis situations.
- Collaborate across global, cross‑functional teams.
**Key Responsibilities:**
- Capture precise notes and deliver accurate incident reports to stakeholders throughout the lifecycle.
- Collect, preserve, and analyze evidence to construct a complete chain of events from initial access to recovery.
- Advise Incident Commander, coordinate actions, and delegate tasks to the Cyber Defense team or external partners.
- Communicate findings, TTPs, and lessons learned through post‑mortem reports and executive briefings.
- Adhere to and promote policy governance, compliance, and audit frameworks (SOX, GDPR, PCI‑DSS, etc.).
- Develop and conduct training, tabletop exercises, and workshops to enhance team readiness.
- Act as the Incident Response subject‑matter expert on a global team.
**Required Skills:**
- Deep knowledge of incident response, threat hunting, digital forensics, and threat mitigation.
- Proficiency with SIEM, IDS/IPS, DLP, vulnerability management, and cloud security tools (AWS, Azure, GCP).
- Strong analytical, problem‑resolution, and evidence‑collection capabilities.
- Excellent written and verbal communication, including executive‑level briefings.
- Leadership, organization, time‑management, and conflict‑resolution skills.
- Ability to work under stress and maintain focus in high‑stakes environments.
**Required Education & Certifications:**
- Bachelor’s degree in Computer Science, Information Security, or related field.
- 5+ years in Cyber Security Operations; 3+ years in Incident Response investigations.
- Certifications: CISSP, GCIH, GCFA, CySA+ (preferred).
- Experience with public cloud incident response and complex enterprise infrastructures.