Job Description
Are you passionate about helping to drive global Cybersecurity innovation and change? Do you thrive in environments that encourage critical thinking, creativity, and challenging the status quo?
Honeywell Cyber Fusion Center is looking for a Cyber Security Architect/Engr to join the cyber security incident response team. In this role, you will be responsible for detecting, analyzing, and responding to cybersecurity incidents. You will support the remediation of complex security incidents that span multiple service towers and technologies. The role requires close global collaboration with cross โ functional teams to effectively defend Honeywell against cyber threats and attacks.
This position allows deep insight into various aspects of cyber security and will require attention to detail, a sense of urgency, and strong communication skills.
Responsibilities
- Participate on a team of highly skilled cybersecurity incident responders.
- Build and maintain processes and procedures.
- Assess the scope, severity and potential impact of Cyber incidents
- Assist with driving complex cybersecurity incidents to successful conclusion.
- Understand root causes of cybersecurity incidents.
- Perform initial analysis, identification, and remediation of network intrusions, application attacks, and computer system compromises.
- Constantly optimize work procedures and automate recurring tasks. Develop and update technical documentation and formulate work instructions to address repeating issues.
- Collaborate with global team members based in the Europe, India and US.
- Participate in global on-call rotation.
- Serve as part of a 24/7 shift support modem (no night shifts).
Qualifications
- Bachelorโs degree in Cybersecurity, Computer Science, or equivalent experience.
- 2+ years of experience in Information Security or Information Technology fields.
- 2+ years of experience in a cybersecurity role.
- Experience with SIEM and EDR solutions.
- Experience with dynamic and static malware analysis
- Good technical knowledge of Windows/Linux operating systems, various types of applications, and networking technologies.
- Analytical skills in threat, vulnerability, and intrusion detection analysis.
- Keen understanding of threat vectors as well as exfiltration techniques.
- Attention to detail.
- Ability to develop and follow complex work instructions and documentation.
- Experience in working in a global, process-driven organization.
- Willingness to learn.
We value
- Experience with SOAR Solutions like XSOAR/Demisto.
- Knowledge in cloud security (Azure, AWS, MS Office 365).
- Knowledge of Linux operating system.
- One or more widely recognized certifications from renowned institutions such as GIAC/SANS, ISC/CISSP or Microsoft.
- Detailed knowledge of Endpoint Detection and Response tools (e.g., Sentinel or MS Defender ATP).
- Knowledge of scripting in Python or PowerShell.
- Understanding of ITIL process, such as Incidents, Change & Problem management.
- Experience in working in a global, process-driven organization.
About Us
Honeywell helps organizations solve the world's most complex challenges in automation, the future of aviation and energy transition. As a trusted partner, we provide actionable solutions and innovation through our Aerospace Technologies, Building Automation, Energy and Sustainability Solutions, and Industrial Automation business segments โ powered by our Honeywell Forge software โ that help make the world smarter, safer and more sustainable.