- Career Center Home
- Search Jobs
- Cybersecurity Escalation Response Manager
Results
Job Details
Explore Location
Schwab
Phoenix, Arizona, United States
(on-site)
Posted
20 hours ago
Schwab
Phoenix, Arizona, United States
(on-site)
Job Type
Full-Time
Cybersecurity Escalation Response Manager
The insights provided are generated by AI and may contain inaccuracies. Please independently verify any critical information before relying on it.
Cybersecurity Escalation Response Manager
The insights provided are generated by AI and may contain inaccuracies. Please independently verify any critical information before relying on it.
Description
Your OpportunityAt Schwab, you're empowered to make an impact on your career. Here, innovative thought meets creative problem solving, helping us "challenge the status quo" and transform the finance industry together.
We believe in the importance of in-office collaboration and fully intend for the selected candidate for this role to work on site in the specified location(s).
Seeking an Individual Contributor in Digital Forensics and Incident Response (DFIR). This role is with the DFIR team for a Senior Manager experienced in Incident Response and Digital Forensics. The Sr Manager DFIR will coordinate and execute the proactive efforts with the other teams throughout the organization for the identification, forensic collection, correlation, analysis, training, post-mortem and reporting of computer-related security events.
This individual works closely with a broad range of professionals at all levels within Schwab technology, internal and external legal, HR, and business representatives. The DFIR Sr. Manager is responsible for setting up communication channels, inviting the appropriate people into those channels during an incident, and training team members on best practices for not only incident management, but also communication during an incident. The position will direct investigations, incident response, forensic chain of custody and prepare CSC for adverse events. They will be expected to use Cyber intelligence to proactively seek out threats and protect firm from harm.
What You Are Good At
- Command of response activities by quickly assessing the incident, make decisions about what to do, which team members are needed, and what actions come next at every stage of the resolution process.
- Expert listener, well-versed in gathering, synthesizing, and prioritizing expert recommendations and managing expectations.
- Communications and Liaison with Business Units, HR, Legal and/or external entities.
- Development and maintenance of Incident Response processes, exercises, and training of others
- Understand all phases of Incident Response and know which tasks occur at each phase: identification, containment remediation, recovery, after action reporting/lessons learned
- Coordination and execution of proactive constant exercises and various levels teaching the Incident Response processes
- Technically understand and participate in malware analysis, including Static, Dynamic, Behavioral analysis.
- Strong understanding of technical forensics to include computer, memory, mobile and network forensics
- Strong understanding of threat hunting and Mitre Att&ck Framework
- Assist in the development of indicators of compromise and cyber intelligence data to supply the Cyber Intelligence function with data for sharing, reporting and metrics
- Training and analysis of impact and capabilities of Incident Response
- Development of business impactful metrics to understand the capabilities of resilience and agility
- Continuous learning to maintain competitive advantage in the security space
- Oversight and review of current tools and processes to find efficiencies and effectiveness
What you have
- Confident decision maker and leadership skills with strong problem-solving skills
- Strong communications and organization capabilities, with attention to detail
- Trustworthy integrity, character, courage, and honesty
- Ongoing networking and building intelligence and industry networks
- Computer, Memory & Network Forensics experience
- Digital Forensics Chain of Custody Experience.
- 5 + years of Incident Management skills and experience
- Foresight and development of playbooks, IR frameworks, Tabletop Exercises
- Advanced and current knowledge of malware families, campaigns, and related threat groups
- Experience with Cloud Forensics and Cloud Incident Response across all cloud platforms - preferred
- Experience with networking environments including Windows networking, Cisco, Juniper
- Experience with Unix, Linux, Mac operating systems
- Knowledge of social engineering campaigns, exploit kits, tactics and techniques used by threat groups.
- Advanced knowledge of network security and DOS/DDoS attacks and mitigation. Including DNS and Layer 7 attacks preferred
- Advanced knowledge of web attacks and response (Web Application Firewalls, Network Firewalls, etc.) preferred
- Minimum of 10+ years of progressive experience in technology and/or information security
- Minimum of 3+ years of experience in a team leadership role
- Bachelor's Degree (Computer Science or Information Systems) and/or equivalent applicable experience
- Industry Certification and/or CISSP certifications desirable
Requisition #: 2026-121430
r1d4rh5eu
Requirements
2026-121430
Job ID: 83520827

Schwab
United States
Schwab is a leader in financial services, helping millions of people make the most of their money. Most Schwab careers are based in one of our two main operating segments, Investor Services or Institutional Services. But across the entire Schwab organization, more than 12,000 employees share a passion for fulfilling our corporate purpose: to help everyone be financially fit.
View Full Profile
More Jobs from Schwab
VP, Financial Consultant - Cambridge, MA
Cambridge, Massachusetts, United States
20 hours ago
Specialist - Security Analytics & Operations
Southlake, Texas, United States
20 hours ago
Lead Applied AI Developer - Client Data Technology
Southlake, Texas, United States
19 hours ago
Jobs You May Like
Median Salary
Net Salary per month
$4,013
Cost of Living Index
74/100
74
Median Apartment Rent in City Center
(1-3 Bedroom)
$1,799
-
$3,053
$2,426
Safety Index
47/100
47
Utilities
Basic
(Electricity, heating, cooling, water, garbage for 915 sq ft apartment)
$170
-
$549
$273
High-Speed Internet
$60
-
$120
$82
Transportation
Gasoline
(1 gallon)
$3.52
Taxi Ride
(1 mile)
$2.22
Data is collected and updated regularly using reputable sources, including corporate websites and governmental reporting institutions.
Loading...
