Senior Enterprise Resilience Analyst at Uphold enhancing incident management framework and ensuring business continuity. Managing cybersecurity incidents and operational resiliency processes across IT and Security teams.
Responsibilities
Incident Response & Management: Assist in managing cybersecurity and operational incidents from detection to resolution. Coordinate with internal stakeholders to contain, mitigate, and recover from incidents. Document and refine incident response playbooks, ensuring alignment with industry frameworks (NIST 800-61, etc.)
Operational Resiliency & Business Continuity: Support business continuity (BC) and disaster recovery (DR) exercises, ensuring alignment with incident response processes. Contribute to the development and execution of resilience testing (e.g., tabletop exercises, crisis simulations). Maintain incident and resilience program documentation, including response plans and post-incident reports. Work with third parties to assess their incident response and business continuity capabilities.
Threat & Risk Assessment: Collaborate with risk and compliance teams to evaluate enterprise risks and recommend mitigation strategies. Perform root cause analysis and post-incident reviews (PIRs) to drive continuous improvement. Analyze incident data to identify trends and provide insights on security and operational vulnerabilities.
Cross-Functional Collaboration & Continuous Improvement: Assist in the development of incident and resilience KPIs/metrics to measure program effectiveness. Provide training and awareness sessions for employees on incident response and resiliency best practices. Work with IT, Security, Legal, and Business Units to ensure alignment on regulatory and compliance requirements (ISO 27001, DORA, FFIEC, etc.)
Requirements
Bachelor’s degree in Cybersecurity, Information Security, Risk Management, or a related field (or equivalent experience)
5-7 years of relevant experience in incident response, security operations, or business continuity management
Overall experience 8+ years
Hands-on experience with security monitoring tools (SIEM, EDR, IDS/IPS) and incident handling
Familiarity with incident response frameworks (NIST 800-61, SANS PICERL, MITRE ATTACK, etc.)
Knowledge of business continuity (BC), disaster recovery (DR), and crisis management principles
Ability to document, analyze, and communicate incident response and resilience strategies effectively
Strong problem-solving skills and ability to work under pressure during incidents
Fluent written and oral English skills
Travel to business events and meetings as needed
Bonus if you have Certifications such as CISSP, GCIH, CBCP, CISM, or CRISC
Experience working with cloud security incidents (AWS, Azure, GCP)
Knowledge of compliance requirements (ISO 27001, DORA, FFIEC, etc.)
Hands-on experience with cyber threat intelligence (CTI) and threat hunting
Experience conducting tabletop exercises and red/blue team simulations
Benefits
An amazing work environment
Growth and career opportunities
Flexible and enthusiastic work environment that offers snacks, a lot of coffee, and other great benefits
Interesting events that keep you connected with the team and celebrate our success
Functional Analyst responsible for banking project analysis and functional specifications in São Paulo. Collaborating between business areas, end users, and technical teams with effective communication.
Senior Accountant responsible for executing accounting entries and conducting analyses at Big Dutchman. Supporting internal areas and ensuring compliance with accounting regulations.
Tier II Service Desk Analyst supporting Epic - related requests and troubleshooting complex issues. Collaborating with technical teams to ensure reliable and efficient Epic system support.
Evaluating and controlling radioactive waste management programs at Newport News Shipbuilding. Ensuring compliance with radiation protection regulations and assisting in development of safety procedures.
Managing Aché's brand reputation and institutional branding strategies for external communication in the health sector. Developing comprehensive communication plans and engaging with various stakeholders.
Analista de Gente & Gestão Sr at Ituran ensuring compliance with personnel administration processes while providing employee support. Seeking to build a safer world through technological solutions.
Junior Analyst in Financial Formalization at Omni ensuring compliance and quality in contracts processing. Contributing to operational efficiency and better customer experience.
Forecasting Analyst managing workforce plans for E2 Consulting Engineers. Building staffing plans, forecasting, and performance analysis in a hybrid work environment.