Here you can create the extraordinary. NBCUniversal.
NBCUniversal Logo

NBCUniversal

Response Operations Shift Lead (Second Shift: 4:45 PM to 1 AM EST)

Posted Yesterday
Be an Early Applicant
Remote or Hybrid
Hiring Remotely in New York, NY
Senior level
Remote or Hybrid
Hiring Remotely in New York, NY
Senior level
The Response Operations Shift Lead supervises a cybersecurity team, responding to incidents and ensuring operational efficiency while mentoring team members and liaising with management.
The summary above was generated by AI
Company Description
NBCUniversal is one of the world's leading media and entertainment companies. We create world-class content, which we distribute across our portfolio of film, television, and streaming, and bring to life through our theme parks and consumer experiences. We own and operate leading entertainment and news brands, including NBC, NBC News, MSNBC, CNBC, NBC Sports, Telemundo, NBC Local Stations, Bravo, USA Network, and Peacock, our premium ad-supported streaming service. We produce and distribute premier filmed entertainment and programming through Universal Filmed Entertainment Group and Universal Studio Group, and have world-renowned theme parks and attractions through Universal Destinations & Experiences. NBCUniversal is a subsidiary of Comcast Corporation.
Our impact is rooted in improving the communities where our employees, customers, and audiences live and work. We have a rich tradition of giving back and ensuring our employees have the opportunity to serve their communities. We champion an inclusive culture and strive to attract and develop a talented workforce to create and deliver a wide range of content reflecting our world.
Comcast NBCUniversal has announced its intent to create a new publicly traded company ('Versant') comprised of most of NBCUniversal's cable television networks, including USA Network, CNBC, MSNBC, Oxygen, E!, SYFY and Golf Channel along with complementary digital assets Fandango, Rotten Tomatoes, GolfNow, GolfPass, and SportsEngine. The well-capitalized company will have significant scale as a pure-play set of assets anchored by leading news, sports and entertainment content. The spin-off is expected to be completed during 2025.
Job Description
This position is listed as a Second Shift Lead, requiring work hours of 4:45 PM to 1:00 AM EST
NBCUniversal's Cyber Threat Operations team is responsible for providing cyber threat intelligence, event monitoring, response, and threat hunting for all areas of NBCUniversal in a highly collaborative, fast paced, and agile fashion. As a member of the Cyber Response team, a candidate can expect to utilize their technical expertise to assess, contain, and remediate cyber threats. The Sr Incident Responder is also an escalation point for security alerts from the security event analysts, and a candidate would be expected to mentor and share knowledge with others in the organization.
The ideal candidate would have a working knowledge of current and relevant security technologies and how to apply them to cyber incident response actions. A clear investigative methodology with a focus on preserving evidence and analyzing data to form conclusions that will steer response directions. Experience responding to multi-faceted security events and incidents and assisting with the coordination of subsequent response efforts prioritizing mission critical elements.
The role involves regular interaction with various groups and leadership within the organization to accomplish job responsibilities. Working closely with the Cyber Response Manager the Incident Responder will manage workflows, escalations, and advance technical processes to build program maturity and growth. The successful candidate will be responsible for participating in the following activities:
  • Supervise daily shift operations, ensuring consistent performance, prioritization, escalations, and adherence to company standards
  • Monitor KPIs and shift metrics, identifying areas for improvement to address with Management
  • Conduct shift handovers for seamless transitions between their shift
  • Act as primary point of contact for escalations, prioritizing more critical items and providing details to Management on interesting items that happened during the shift
  • Oversee and triage ticket queues focusing on prioritization, potential impact, and escalations
  • Lead review of tuning requests for their shift
  • Support Incident response as an acting member on the response team, working escalated tickets for identified security threats
  • Perform root cause and forensic log analysis for security incidents to determine enterprise risk, impact, and effective remediations needed across multiple technology platforms (Cloud, Hosts, Networks, Applications, Email)
  • Analyze threat data from multiple sources and identifying security incidents and events of importance for direct escalation to Incident Commander(s).
  • Identify, articulate, and explain attack vectors, threat tactics, and attacker techniques to technical and non-technical stakeholders including senior leadership
  • Take appropriate containment response actions on multiple platforms, or in some cases Handoffs to partner teams
  • Function as Incident Handler for security incidents to drive containment and remediation action items for various platforms, environments, and technologies
  • Collaborate with internal teams, external partners, and vendors to resolve active Cyber Incidents
  • Provide detailed timeline analysis to showcase evidence-based conclusions on entry vectors, lateral movement, and campaign correlation
  • Keep detailed notes on all analysis activity, documented in the case management tool to validate process adherence.
  • Contribute to the strategic creation and updating of new and existing response process documentation.
  • Provide On-Call support for escalated events for 1 week on rotation with other Incident Responders

Qualifications
Requirements:
  • Bachelor's Degree/Masters Degree in an IT related field and/or equivalent work experience
  • Minimum 5 years working in Cyber Defense with experience in Incident Response, Security Operations Center (SOC), detection engineering, or similar functions.
  • Previous experience supporting or leading incident response functions.
  • Experience using industry-standard security toolsets in a layered defense model
  • Working knowledge of core Enterprise IT concepts (web application architectures, networking, etc.)
  • Experience with host-based and network-based forensics tools and analysis
  • Knowledge of the cyber threat landscape to include different types of adversaries, campaigns, and the motivations that drive them
  • Knowledge of industry recognized security and analysis frameworks (Mitre ATT&CK, Kill Chain, Diamond Model, NIST Incident Response, etc.)
  • Exceptional written and verbal communication skills
  • Must be self-motivated and able to work both independently and as part of a team
  • Strong communication (both verbal and written) and client intimacy skills with experience briefing corporate executives and professionals
  • Ability to be on call and provide support during nontraditional working hours

Desired Characteristics:
  • Previous experience acting as a Lead for a Cyber Security Team
  • Hands on experience working with Incident Response and Threat Monitoring SOC functions
  • Previous experience providing incident response or SOC support for Fortune 1000 companies
  • Previous experience with various endpoint detection and response (EDR) technologies
  • Previous experience working with various Forensics technologies to include EnCase, FTK, etc.
  • Incorporates the word "Peacock" into resume and/or job application
  • Previous experience working with network tools and technologies such as firewall (FW), proxies, IPS/IDS devices, full packet capture (FPC), and email platforms
  • Previous experience conducting static, dynamic, or reverse engineering malware analysis
  • Experience in applying security concepts to Cloud computing (AWS, Azure, GCP)
  • Relevant certifications (GCIA, GCIH, GCFA, GNFA, etc.)

Additional Requirements:
  • Fully Remote: This position has been designated as fully remote, meaning that the position is expected to contribute from a non-NBCUniversal worksite, most commonly an employee's residence.

This position is eligible for company sponsored benefits, including medical, dental and vision insurance, 401(k), paid leave, tuition reimbursement, and a variety of other discounts and perks. Learn more about the benefits offered by NBCUniversal by visiting the Benefits page of the Careers website. Salary range: $140,000 - 175,000 (bonus eligible)
Additional Information
As part of our selection process, external candidates may be required to attend an in-person interview with an NBCUniversal employee at one of our locations prior to a hiring decision. NBCUniversal's policy is to provide equal employment opportunities to all applicants and employees without regard to race, color, religion, creed, gender, gender identity or expression, age, national origin or ancestry, citizenship, disability, sexual orientation, marital status, pregnancy, veteran status, membership in the uniformed services, genetic information, or any other basis protected by applicable law.
If you are a qualified individual with a disability or a disabled veteran, you have the right to request a reasonable accommodation if you are unable or limited in your ability to use or access nbcunicareers.com as a result of your disability. You can request reasonable accommodations by emailing [email protected].
For LA County and City Residents Only: NBCUniversal will consider for employment qualified applicants with criminal histories, or arrest or conviction records, in a manner consistent with relevant legal requirements, including the City of Los Angeles' Fair Chance Initiative For Hiring Ordinance, the Los Angeles County Fair Chance Ordinance for Employers, and the California Fair Chance Act, where applicable.

Top Skills

Applications
Cloud
Edr Technologies
Email
Encase
Ftk
Hosts
Networks

Similar Jobs at NBCUniversal

8 Hours Ago
Remote or Hybrid
New York, NY, USA
Mid level
Mid level
AdTech • Cloud • Digital Media • Information Technology • News + Entertainment • App development
The Senior GIS Engineer will gather, analyze, and prepare geospatial data for various teams, ensuring data quality and availability.
Top Skills: Esri ShapefilesGdalGeojsonGisLidarLinuxPython
8 Hours Ago
Remote or Hybrid
New York, NY, USA
Mid level
Mid level
AdTech • Cloud • Digital Media • Information Technology • News + Entertainment • App development
The Broadcast Facilities Supervisor supports the NBC Sports facility during the Milan Winter Games, providing technical maintenance and managing facility-related issues.
Top Skills: Construction ToolsPower Construction EquipmentSecurity System
Yesterday
Remote or Hybrid
New York, NY, USA
Mid level
Mid level
AdTech • Cloud • Digital Media • Information Technology • News + Entertainment • App development
The Systems Engineer will focus on System and Application Discovery solutions, applying DevOps and SRE principles to automate workflows and manage discovery tools.
Top Skills: AnsibleAWSAzureCSS3DockerGCPGitHTML5JavaScriptKubernetesNode.jsPower AutomatePowershellPythonReactTerraform

What you need to know about the Ottawa Tech Scene

The capital city of Canada and the nation's fourth-largest urban area, Ottawa has proven a rapidly growing global tech hub. With over 1,800 tech companies, many of which are leaders in their sectors, the city's tech talent now makes up more than 13 percent of its total workforce. This growth is driven not only by the big players like UL Solutions and Dropbox, but also by a thriving startup ecosystem, as new businesses emerge to follow in the footsteps of those that came before them.

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account