Share this Job

Analyst/Senior Analyst, Cybersecurity Incident Response 1

Date: Sep 5, 2019

Apply now »

Location: Regents Centre North (PHX-52N1) 
Additional Locations: Dallas/Ft Worth, TX; None
Requisition ID: 32797 


Join us for a career with endless possibilities.

Looking for a job where a passion for innovation, a culture of teamwork, and opportunities for growth are valued and rewarded? You’ve come to the right place.


You don’t have to be an airline aficionado to join American Airlines. It takes more than cool planes to keep us ahead of the curve, and thanks to our team of behind the scenes professionals, we do just that. As the largest airline in the world, American Airlines is in the business of serving the global travel needs of our customers.  At the core of the Company is our commitment to each customer and each employee. We are dedicated to developing and delivering what our customers value and are willing to pay for. Customer-centric planning, innovative marketing, and an exceptional customer experience are supported by a cadre of talented people. 


What does it take to join us? We’re glad you asked! We expect exceptional skills in your discipline and a dedication to being the best as we relentlessly pursue our goal of being not just the largest airline in the world, but also the best airline in the world.


Fortunately, we’re building on almost a century of innovation and firsts in our industry – and we plan to continue that tradition of excellence.

About The Job

This job is a member of the Information Technology team, within the Information Technology Division. The CSARC (Cyber Security Analysis & Response Center) analyst is responsible for the successful completion of all procedures executed during his/her presence in the CSARC. This role can be based in the Dallas or Phoenix area and owns the documentation and measurement of all subordinate procedures as well as continuous improvements. The analyst will gather information for cyber security events, collate it into an accessible format and ensure its proper dissemination. They will be responsible for the Subtle Event Process long-term analysis and deep dive investigation into network/host activity.


Specifically, you’ll do the following:

  • Manages CSARC event and information intake to include gathering intelligence reports, monitoring ticket queues, investigating reported incidents, and interacting with other security and infrastructure groups as necessary
  • Serves as point of escalation for Associate Analysts and ensures all events are addressed in a timely manner using available reporting and metrics
  • Collaborates with other CSARC teams on security research and intelligence gathering
  • Serves as subject matter experts on incident detection and analysis techniques, providing guidance to Associate Analysts and making recommendations to organizational managers
  • Mentors and identifies training needs for Associate Analysts to improve detection capability within the CSARC
  • Serves as detection authority for initial incident declaration
  • Drives and monitors shift-related metrics ensuring applicable reporting is gathered and disseminated per CSARC requirements
  • Participates in an on-call rotation
  • This role can be based in Dallas or Phoenix area.

Required Qualifications

  • Associate’s Degree in Computer Science, Information Systems, Engineering, Technology, or related field or equivalent experience/training
  • 2 years of SOC/CIRT related experience
  • 3 years of Information Technology related experience
  • Experience managing cases/incidents
  • Information Security Certification, preferred
    • Security+
    • CEH
    • GCIH
    • GCIA
    • GCFA
    • GREM
    • GCFE
  • Python or PowerShell scripting
  • A solid understanding of networking, cyber security concepts, vulnerability identification and cyber threat intelligence is necessary
Qualifications (Continued)

Required Qualifications (Continued)

  • Excellent communications skills, that includes the ability to provide formal documentation of analysis and/or research results to include briefings, reports, writing, training of lower level analysts, and editing at a technical/professional level
  • Aptitude in solving problems independently
  • Demonstrated problem-solving skills
  • Sound decision-making ability
  • Must be detail oriented, well organized, thrive in a sense-of-urgency environment, leverage best practices, and most importantly, innovate through any problem with a can-do attitude
  • Strong analytical and time management skills
  • Availability to work a flexible schedule including nights and weekends; CSARC is 24x7x365 environment



Preferred Qualifications

  • Bachelor’s Degree in Computer Science, Information Systems, Engineering, Technology, or related field or equivalent experience/training
  • Ability to effectively communicate both verbally and written with all levels within the organization
  • Ability to effectively explain technical concepts and adjust messaging based on the audience
  • Ability to influence through outstanding interpersonal skills, collaboration, and negotiation skills
  • Ability to work well within a team environment, as well as independently with minimal supervision

Additional Locations: Dallas/Ft Worth, TX; None
Requisition ID: 32797 

Nearest Major Market: Phoenix

Job Segment: Engineer, Computer Science, Information Systems, Systems Engineer, Information Security, Engineering, Technology

Apply now »