Description
As a Incident Responder, you will lead technical investigations for customer-impacting and customer-owned incidents while driving efficiency through Python-based automation.
Cloud Investigation: Conduct technical investigations in response to high-severity incidents specifically focused on the Salesforce platform.
Automation Development: Utilize Python to develop and maintain automation workflows within the Luna platform (Salesforce’s proprietary automation tool) to streamline response capabilities.
Log Analysis: Perform advanced log analysis using a variety of tools to identify and contain incidents.
Platform Expertise: Analyze complicated evidence items from security incidents involving Salesforce Core, Marketing Cloud, Commerce Cloud, Tableau, and Mulesoft.
Collaboration: Function as a technical expert on complex investigations, coordinating with stakeholder technical SMEs and partner teams.
Documentation: Create detailed timelines and high-quality incident after-action reports.
Regulatory Support: Assist customers with regulatory notifications, including requirements for DORA.
Shift Operations: Operate 5 days per week during the 6:00 AM – 2:00 PM IST window and participate in a local on-call rotation for weekends and public holidays.
Required Skills
Experience: 3–5 years in information security or closely related roles, with direct experience in security incident response.
Automation: Proficiency in Python development with the ability to research and learn unfamiliar proprietary technologies like Luna quickly.
Technical Basics: Exceptional technical basics, including networking fundamentals, common application protocols, system architecture, and software development.
Advanced Log Analysis: Exceptional log analysis skills, including experience extracting data from complex SQL or Hadoop-type data stores.
Incident Management: Ability to manage and constantly triage multiple security incidents, differentiating urgent issues from the merely important.
Customer Communication: Ability to meet with customers and communicate complex technical concepts to a non-technical audience.
Analytical Thinking: Ability to logically assess facts and formulate a plan of action even in high-pressure situations.
Knowledge Base: Broad information security knowledge, including familiarity with regulations like PCI-DSS, GDPR, and DORA.
Desired Skills
Certification: Salesforce Admin certified.
Industry Experience: 3–5 years of E-commerce security experience.
Organization: Prior experience in a large and complex organization with a high degree of change.
