Senior Information Security Analyst – Cyber Incident Response – Marriott International HQ – USA


Job Number 20030333
Job Category Information Technology
Location Marriott International HQ| 10400 Fernwood Road| Bethesda|
Maryland| United States
Brand Corporate
Schedule Full-time
Relocation? No
Position Type Management

Start Your Journey With Us
Marriott International is the world’s largest hotel company| with more brands|
more hotels and more opportunities for associates to grow and succeed. We
believe a great career is a journey of discovery and exploration. So| we ask|
where will your journey take you?


As part of the global Cyber Incident Response Team| proactively manages
security events and activities to reduce the impact of security incidents and
system compromises. The successful candidate will provide security monitoring|
threat analysis| trend analysis| troubleshooting of security device monitoring
and incident investigation using infrastructure and applications logs from
across the enterprise. Knowledge of evolving cloud security| threat hunting
and coding is desired. Schedule flexibility| including shift work| required to
meet business needs.


5+ years’ experience in system| network and/or application security that includes one or more of the following
Microsoft Windows Servers/Desktops
Unix and Linux administration
VM Routers and Firewalls configurations
Security troubleshooting skills
TCP IP| DNS| Enterprise- wide Antivirus| HIDS/NIDS| EDR technologies
Cloud Security practices
2+ years’ experience in creating incident response reports and documents
Undergraduate degree in computer science or related field| or equivalent work experience


Security Certification (i.e. CISSP| CISA| Ethical Hacker| CompTIA Security +)
Scripting and coding experience
Pen testing and Red Team skills
Basic project management experience
Experience in incident management


Supporting Operations

Analyzes| correlates and responds to security reports and feeds
Analyzes| correlates and responds to security alerts and alarms
Deploys and troubleshoots host-based intrusion detection system (HIDS) and network intrusion detection system (NIDS)
Manages security events using ITIL incident management processes
Leads and/or participates in incident response events
Advises and consults with internal customers on risk assessment| threat modeling| and vulnerability management
Interprets and applies security policies and procedures
Identify security issues and risks and then develop mitigation plans

Managing Work| Projects| and Policies

Creates and delivers incident response communications
Develops proactive security processes
Lead or contributes to various security initiatives
Provides analysis and trending of security log data from various security devices
Maintains up-to-date knowledge of the IT security industry| including awareness of new or revised security solutions| improved security processes| and the development of new attacks and threat vectors
Provides information security reporting| including security metrics as required
Recommends solutions to mitigate risk in any activity that potentially impacts security of existing IT and information management