Icident Response - Cyber Fusion Center
Do you like working on identifying and preventing potential cybersecurity risks
Are you ready for the next step in your career
Join our Digital Technology Team!
Our Digital Technology business provides intelligent, connected technologies to monitor and control our energy extraction assets. We provide customers with the peace of mind needed to reliably and efficiently improve their operations. Our team creates business value through continuous improvement in up-time, resilience, performance, time to market, security and compliance
Partner with the best
We are seeking a motivated and analytical Threat Hunter to join our Cyber Fusion Center team. In this hybrid role, you will support both proactive threat hunting and incident response activities to help identify, contain, and remediate cybersecurity threats across the Baker Hughes enterprise environment. This is an excellent opportunity to gain hands-on experience across multiple disciplines of threat detection and response.
As a Incident Response - Cyber Fusion Center you will be Responsible for:
- Leading technical aspects of digital security incident detection and response, focusing on very unstructured incidents and high-risk events.
- Specializing in network-centric analysis (NSM), host-centric analysis (live response, digital forensics), malware analysis, and/or log-centric analysis (SIEM)
- Performing daily response operations with a schedule that may involve nontraditional working hours - act as escalation points for Event Triage Analysts
- Mentoring and training Event Analysts as required.
Fuel your passion
- Have a Bachelor's Degree in Computer Science or STEM Majors (Science, Technology, Engineering and Math).
- A minimum 4 years of professional experience in STEM related degree.
- Have verbal and written communication skills, a sense of diplomacy, and decision-making skills to handle the often fast-paced role of an incident handler
- Have detailed understanding of APT, Cyber Crime and other associated tactics
- Show track record of understanding and interest in recognized IT and OT security-related standards and technologies, demonstrated through training, job experience and/or industry
- Have professional experience with Cyber Security, Operations Security, Product Security, Industrial Control Systems (ICS), Information Assurance, and Information Technology
- Have experience with host-based detection and prevention suites (Microsoft Defender, OSSEC, Yara, MIR, etc.)
- Have experience with host-centric tools for forensic collection and analysis (Microsoft Defender, SleuthKit, Volatility Framework, FTK, Encase, etc.)
- Have experience with Network Forensics and/or Network Security Monitoring (NSM) tools (Snort, Bro-IDS, PCAP, tcpdump, etc.) and analysis techniques (alert, flow/session and PCAP analysis)
- Have experience with malware and reverse engineering (Dynamic and static analysis)
- Have IT infrastructure background including familiarity with the following:
- Networking (TCP/IP, UDP, Routing)
- Applications (HTTP, SMTP, DNS, FTP, SSH, etc.)
- Encryption (DES, AES, RSA) and hashing algorithms (MD5, SHA-1, etc.)
- System/Application vulnerabilities and exploitation
- Operating systems (Windows, .Nix, and Mac)
- Cloud technology (SaaS, IaaS, PaaS) and associated digital forensics and incident response techniques
- Have experience with Splunk SIEM and SOAR automation tools
- Have CISSP, CISM or related SANs certifications preferred
- Have Working knowledge of secure communication methods, including Secure Shell, S/MIME and PGP/GPG
Why Join Us
This role offers a unique opportunity to grow in both proactive and reactive cybersecurity disciplines, working side-by-side with a collaborative and mission-focused team. You will receive mentorship, gain exposure to enterprise-scale security operations, and contribute meaningfully to the protection of critical assets and infrastructure.
Work in a way that works for you
We recognize that everyone is different and that the way in which people want to work and deliver at their best is different for everyone too. In this role, we can offer the following flexible working patterns:
- Working flexible hours - flexing the times when you work in the day to help you fit everything in and work when you are the most productive.
- Occasionally working remotely from home or any other work location
Working with us
Our people are at the heart of what we do at Baker Hughes. We know we are better when all of our people are developed, engaged and able to bring their whole authentic selves to work. We invest in the health and well-being of our workforce, train and reward talent and develop leaders at all levels to bring out the best in each other.
Working for you
Our inventions have revolutionized energy for over a century. But to keep going forward tomorrow, we know we have to push the boundaries today. We prioritize rewarding those who embrace change with a package that reflects how much we value their input. Join us, and you can expect:
- Contemporary work-life balance policies and wellbeing activities
- Comprehensive private medical care options
- Safety net of life insurance and disability programs
- Tailored financial programs
- Additional elected or voluntary benefits
About Us:We are an energy technology company that provides solutions to energy and industrial customers worldwide. Built on a century of experience and conducting business in over 120 countries, our innovative technologies and services are taking energy forward - making it safer, cleaner and more efficient for people and the planet.
Join Us:Are you seeking an opportunity to make a real difference in a company that values innovation and progress Join us and become part of a team of people who will challenge and inspire you! Let's come together and take energy forward.
Baker Hughes Company is an Equal Opportunity Employer. Employment decisions are made without regard to race, color, religion, national or ethnic origin, sex, sexual orientation, gender identity or expression, age, disability, protected veteran status or other characteristics protected by law.