FreshRemote.Work

Senior Incident Handler - USA Remote, US, United States

Company Description

Are you ready to trade your job for a journey? Become a FlyMate!

Passion, excitement & global collaboration are all core to what it means to be a FlyMate. At Flywire, we’re on a mission to deliver the world’s most important and complex payments. We use our Flywire Advantage - the combination of our next-gen payments platform, proprietary payment network and vertical specific software, to help our clients get paid, and help their customers pay with ease - no matter where they are in the world.

What more do we need to truly be unstoppable? Perhaps, that is you! 


Who we are: 

Flywire is a global payments enablement and software company, founded a decade ago to solve high-stakes, high-value payments in education, using modern technology.

Today, we’ve digitized payments for more than 3,800+ global clients across education, healthcare, travel & B2B, covering more than 240 countries and territories and supporting over 140 currencies. And, we’re just getting started!

With over 1,200+ global FlyMates, representing more than 40 nationalities, and in 12 offices world-wide, we’re looking for FlyMates to join the next stage of our journey as we continue to grow.

Job Description

The Opportunity:

We, at Flywire, are looking for a Senior Incident Handler with Incident Commander responsibilities, you will be a pivotal leader in the organization's cybersecurity incident response efforts. Combining technical expertise with the ability to lead and coordinate incidents, you will play a crucial role in safeguarding the organization against cyber threats.

Candidates will need to be a strong leader with the ability to perform multiple types of analysis including providing mitigation recommendations for impacted parties.

  • Assume the role of Incident Commander during cybersecurity incidents, providing strategic direction and coordination.
  • Lead and orchestrate the incident response team, ensuring effective communication and collaboration, externally and internally.
  • Lead technical aspects of incident response, including analysis, containment, eradication, and recovery efforts.
  • Provide technical guidance to the incident response team during high-stress situations.
  • Conduct in-depth technical analysis of security incidents, identifying malware, attack vectors, and other technical indicators.
  • Knowledge using forensic tools and techniques to gather and analyze digital evidence.
  • Design and implement technical mitigation strategies, ensuring the rapid containment and eradication of security threats.
  • Collaborate with cybersecurity teams to implement technical controls and preventive measures.
  • Interface with technical teams, to coordinate technical incident response efforts.
  • Communicate technical details, impact assessments, and remediation efforts to leadership and stakeholders.
  • Stay abreast of emerging technical threats, vulnerabilities, and incident response technologies.
  • Evaluate and enhance technical incident response procedures based on lessons learned and industry best practices.
  • Conduct technical training sessions for the incident response team, Oncall team and Security team staff.
  • Mentor junior technical incident handlers, fostering technical skill development.
  • Participate in on-call functions to support security operations with after-hours coverage.
  • Process and procedures automation.
  • Integrate Threat intelligence into incident response strategy.
  • Support implementing new security projects.
  • Knowledgeable of current tactics, techniques and procedures (TTP) used by threat actors and practical application of the MITRE ATT&CK framework or similar.
  • Work closely with other team members to review existing policy and procedures, as well as developing new artifacts when appropriate.
  • Be part of the oncall team.

Qualifications

Here’s What We’re Looking For:

Technical skills:

  • Bachelor's or Master's degree in Cybersecurity, Information Technology, or a related field or equivalent experience.
  • Proven experience (6+ years) as a Technical Senior Incident Handler & Responder or in a similar technical role.
  • Technical incident handling certifications are highly desirable.
  • Deep technical understanding of incident response frameworks, methodologies, and tools.
  • Proficiency in using  incident response tools.
  • Strong analytical and problem-solving skills, with a keen attention to technical details.
  • Proven experience as an Incident Commander in cybersecurity incidents.
  • Leadership experience in a technical incident response capacity.

Soft skills:

  • Excellent English technical communication skills, both written and verbal.
  • Availability to travel sometimes.
  • Work independently.
  • Good analytical and problem-solving skills.
  • Excel in problem-solving during high-pressure scenarios, making well-informed decisions while considering the impact on team goals.
  • Navigate high-pressure situations with ease, maintaining focus on tasks and objectives.
  • Demonstrate resilience in the face of adversity, providing a steady and positive influence on team members.
  • Ability to communicate complex technical concepts to both technical and non-technical co-workers in a clear and concise manner.

Additional Information

What We Offer:

  • Competitive compensation, including Restricted Stock Units 
  • Employee Stock Purchase Plan (ESPP)
  • Flying Start - Our immersive Global Induction Program (Meet our Execs & Global Teams)
  • Work with brilliant people that will keep you on your toes, learn more about their journeys by checking out #InsideFlywire on social media
  • Dynamic & Global Team (we have been collaborating virtually for years!)
  • Wellbeing Programs (Mental Health, Wellness, Yoga/Pilates/HIIT Classes) with Global FlyMates 
  • Be a meaningful part in our success - every FlyMate makes an impact
  • Competitive time off including FlyBetter Days to volunteer in a cause you believe in and Digital Disconnect Days!
  • Great Talent & Development Programs (Managers Taking Flight – for new or aspiring managers!)

The US base salary range for this full-time position is $80,000-130,000 plus restricted stock units and benefits. Our salary ranges are determined by role, position level, and location. The range displayed on this job posting reflects the minimum and maximum target for new hire salaries for the position across all US locations. Within the range, individual pay is determined by work location and several other factors, including job-related skills, experience, relevant education and training. Your Talent Acquisition Partner can share more about the specific salary range for your preferred location during the hiring process.

Submit today and get started!

We are excited to get to know you! Throughout our process you can expect to meet with different FlyMates including the Hiring Manager, Peers on the team, the VP of the department, and a skills assessment. Your Talent Acquisition Partner will walk you through the steps and be your “go-to” person for any questions.

Flywire is an equal opportunity employer. With over 40 nationalities across 12 different offices, and diversity and inclusion at the core of our people agenda, we believe our FlyMates are our greatest asset, and we’re excited to watch our unique culture evolve with each new hire.

Apply

Job Profile

Regions

North America

Countries

United States

Benefits/Perks

Competitive compensation Competitive time off Employee stock purchase plan Global Induction Program Restricted Stock Units Wellbeing programs

Skills

Analysis Communication Cybersecurity Forensic tools Incident Handling Leadership MITRE ATT&CK Framework Payments Problem-solving Threat Intelligence

Tasks
  • Automate processes
  • Collaborate with cybersecurity teams
  • Communicate technical details to stakeholders
  • Conduct technical analysis
  • Conduct training sessions
  • Design mitigation strategies
  • Incident Commander
  • Integrate threat intelligence
  • Lead incident response team
  • Provide technical guidance
  • Review and develop policies
  • Stay updated on emerging threats
  • Support security projects
Restrictions

Remote USA Remote

Timezones

America/Anchorage America/Chicago America/Denver America/Los_Angeles America/New_York Pacific/Honolulu UTC-10 UTC-5 UTC-6 UTC-7 UTC-8 UTC-9