Analyst, Cybersecurity Operations (Detection & Response) L3

Posted 19 Days Ago
Be an Early Applicant
London, Greater London, England
Hybrid
Senior level
eCommerce • Food • Information Technology • Mobile • Cybersecurity • App development • Big Data Analytics
McDonald's feeds and fosters communities in more than 100 countries worldwide.
The Role
As an L3 Response Analyst in the Security Operations Center at McDonald's, you will identify and report cybersecurity events, support the Incident Response process, and mitigate threats. Responsibilities include event monitoring, incident handling, threat hunting, and creating standard operating procedures to streamline the response process.
Summary Generated by Built In

Job Description
Company Description:
McDonald's growth strategy, Accelerating the Arches, encompasses all aspects of our business as the leading global omni-channel restaurant brand. As the consumer landscape shifts we are using our competitive advantages to further strengthen our brand. One of our core growth strategies is to Double Down on the 3Ds (Delivery, Digital and Drive Thru). McDonald's will accelerate technology innovation so 65M+ customers a day will experience a fast, easy experience, whether at one of our 25,000 and growing Drive Thrus, through McDelivery, dine-in or takeaway.
McDonald's Global Technology is here to power tomorrow's feel-good moments.
That's why you'll find us at the forefront of transformative technology, exploring new and innovative ways to serve our millions of customers and spread happiness one delicious Hot Fudge Sundae-dipped fry at a time. Using AI, robotics and emerging tech, we're digitizing the Golden Arches. Combine that with our unparalleled global scale, and we're reshaping all areas of the business, industry and every community that is home to a McDonald's restaurant. We face complex tech challenges every day. But that's where our diverse and talented teams come in. They're made up of the best and brightest from all over the globe, and they thrive in the space where feel-good meets fast-paced.
Check out the McDonald's Global Technology Technical Blog to learn how technology and our global team are directly enabling the Accelerating the Arches strategy.
Job Description:
As a L3 Response Analyst within the Security Operations Center (SOC), your responsibilities include using defensive measures and information gathered from various sources to identify, analyse, and report cybersecurity events, ensuring the protection of McDonald's information assets. You play a crucial role in supporting the Incident Response process, responding to crisis situations, and mitigating immediate and potential cyber threats. Your expertise in security operations, event monitoring, eDiscovery, forensics, and incident response will be key in this role. The role works directly within Global Cyber Security (GCS), the organization responsible for our Cybersecurity Operations & Incident Response program and critical services, ensuring our leadership makes informed risk-based decisions.
Working within the Incident Response team and coordinating with other Cyber Operations teams to identify and report on security incidents as they occur and overseeing end-to-end remediation. Activities will include triaging security events, network and endpoint analysis, malware reverse engineering, threat hunting, vulnerability escalation, and resolving security incidents from detection to remediation. As part of the Security Operations team, you will create and implement standard operating procedures, playbooks, and processes to help streamline response monitoring, investigations, and analysis research. The role works directly within GCS, the organization responsible for our Cybersecurity Operations & Incident Response program and critical services, ensuring our leadership makes informed risk-based decisions.
The ideal candidate for this role should possess a solid understanding of cybersecurity practices, cloud technologies, detection and response frameworks, and incident handling procedures (containment, eradication, recovery, and lessons learned). They should excel in adhering to and enforcing the use of established incident response playbooks and practices, possess an acute attention to detail, and collaborate effectively across global cross-functional teams.
Required experience:

  • Experience working in a security operations or incident response role.
  • Advanced proficiency in computer networking concepts, protocols, and network security methodologies.
  • Strong expertise in analysing and mitigating cyber threats and vulnerabilities.
  • Advanced competence in authentication, authorization, and access control methods.
  • Proficiency in utilizing and developing intrusion detection methodologies and techniques for detecting host and network-based intrusions.
  • In-depth knowledge of system and application security threats and vulnerabilities, with the ability to develop and implement mitigation strategies.
  • Advanced understanding of network attacks, their relationship to threats and vulnerabilities, and the ability to develop countermeasures.
  • Proficiency in adversarial tactics, techniques, and procedures, with the ability to anticipate and counteract them.
  • Expertise in conducting eDiscovery and forensic investigations, including the collection, preservation, analysis, and presentation of digital evidence in support of incident investigations.
  • Comprehensive knowledge of the stages of a cyber-attack and the ability to develop and implement defense strategies at each stage.
  • Proficiency with Windows, MacOS, and/or Linux operating systems, with the ability to perform advanced security configurations and troubleshooting.
  • Experience in leading and mentoring junior analysts, providing guidance and support to enhance their skills and performance.
  • Ability to develop and implement advanced threat detection and response strategies.
  • Effective communication skills, with the ability to provide detailed reports and recommendations to senior management.


Responsibilities:

  • Continuously monitor and analyse system activity using security operations tools to identify malicious activity.
  • Characterize and analyse network traffic and logs to identify potential threats to McDonald's assets.
  • Provide timely detection, identification, and analysis of possible attacks and intrusions, differentiating them from benign activities and reviewing tuning recommendations to improve alert efficacy.
  • Collaborate with key stakeholders to validate security events and provide security response expertise to remediate cyber security incidents.
  • Perform event correlation to gain situational awareness and assess the effectiveness of observed attacks.
  • Conduct security operations and incident response trend analysis and reporting.
  • Conduct eDiscovery and Forensic investigations in support of incident investigations.
  • Mentor analysts to promote their performance and career growth in alignment with department and organizational objectives.
  • Plan and execute protective measures, including policy, processes, and cybersecurity awareness.
  • Develop and implement remediation plans in conjunction with incident response requirements.
  • Support threat hunting efforts across market networks, identifying indicators of compromise (IOCs) and evidence of compromise.
  • Lead and mentor junior analysts, providing guidance and support to enhance their skills and performance.


Desired Skills:

  • Professional certification such as GIAC, GCIH, GCIA, ITIL.
  • Familiarity with NIST Risk Management Framework and NIST Cybersecurity Framework, Cyber Kill Chain.
  • Experience working with case management tools, SOAR, email security solutions, SIEM, and EDR technologies.
  • Experience working with complex multinational companies and distributed business models.
  • Experience developing automation through scripting languages such as Python.

Qualifications:

  • Bachelor's degree or equivalent experience in Computer Science, Cybersecurity, Information Technology, Software Engineering, Information Systems, or Computer Engineering.

Additional Information:
McDonald's is an equal opportunity employer committed to the diversity of our workforce. We promote an inclusive work environment that creates feel-good moments for everyone. McDonald's provides reasonable accommodations to qualified individuals with disabilities as part of the application or hiring process or to perform the essential functions of their job. If you need assistance accessing or reading this job posting or otherwise feel you need an accommodation during the application or hiring process, please contact [email protected] . Reasonable accommodations will be determined on a case-by-case basis.
McDonald's provides equal employment opportunities to all employees and applicants for employment and prohibits discrimination and harassment of any type without regard to sex, sex stereotyping, pregnancy (including pregnancy, childbirth, and medical conditions related to pregnancy, childbirth, or breastfeeding), race, color, religion, ancestry or national origin, age, disability status, medical condition, marital status, sexual orientation, gender, gender identity, gender expression, transgender status, protected military or veteran status, citizenship status, genetic information, or any other characteristic protected by federal, state or local laws. This policy applies to all terms and conditions of employment, including recruiting, hiring, placement, promotion, termination, layoff, recall, transfer, leaves of absence, compensation and training.
Nothing in this job posting or description should be construed as an offer or guarantee of employment.

Top Skills

Cybersecurity

What the Team is Saying

Maryclare
Claire
Ebony
The Company
HQ: Chicago, IL
1,400 Employees
Hybrid Workplace
Year Founded: 1955

What We Do

McDonald’s is the world’s leading global foodservice retailer with over 38,000 locations in over 100 countries. We feed 68 million people every day and, along with our franchisees, employ 1.9 million people worldwide.

We're a household name across the globe, and we’re in the midst of a tech revolution in our business, doubling down on tech and creating a tech ‘recipe’ that is almost as proprietary as our Big Mac sauce®. Our tech organization is made up of intrapreneurs who get to build really cool tech with scary smart people using the latest innovations like AI, IOT, edge computing.

Why Work With Us

You'll work on industrial-scale products and platforms, alongside diverse, global teams who are always hungry for a challenge. We invest more than $1 billion in tech every year and have countless projects in AI, ML Image/Voice Recognition, IoT, robotics, edge computing and more. Bonus: see your family and friends use your work across the world.

Gallery

Gallery
Gallery
Gallery

McDonald’s Global Technology Teams

Team
Product + Tech
About our Teams

McDonald’s Global Technology Offices

Hybrid Workspace

Employees engage in a combination of remote and on-site work.

We believe in nurturing relationships while also offering flexibility. Please see each job description for specific details on hybrid or remote work.

Typical time on-site: Flexible
HQChicago, IL
Australia
Germany
Singapore
United Kingdom
France
Canada
Ireland
Mexico
Learn more

Similar Jobs

McDonald’s Global Technology Logo McDonald’s Global Technology

Senior Analyst, Cyber Defence

eCommerce • Food • Information Technology • Mobile • Cybersecurity • App development • Big Data Analytics
Hybrid
London, Greater London, England, GBR
1400 Employees

McDonald’s Global Technology Logo McDonald’s Global Technology

Deployment Analyst (Readiness)

eCommerce • Food • Information Technology • Mobile • Cybersecurity • App development • Big Data Analytics
Hybrid
London, Greater London, England, GBR
1400 Employees

McDonald’s Global Technology Logo McDonald’s Global Technology

Senior Analyst, Cyber Defence

eCommerce • Food • Information Technology • Mobile • Cybersecurity • App development • Big Data Analytics
Hybrid
London, Greater London, England, GBR
1400 Employees

McDonald’s Global Technology Logo McDonald’s Global Technology

Analyst, Cybersecurity Operations (Detection & Response) L2

eCommerce • Food • Information Technology • Mobile • Cybersecurity • App development • Big Data Analytics
Hybrid
London, Greater London, England, GBR
1400 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account