Cyber Security Operations Center Principal UK - USDS
London
Responsibilities
About TikTok U.S. Data Security
TikTok is the leading destination for short-form mobile video. Our mission is to inspire creativity and bring joy. U.S. Data Security (“USDS”) is a subsidiary of TikTok in the U.S. This new, security-first division was created to bring heightened focus and governance to our data protection policies and content assurance protocols to keep U.S. users safe. Our focus is on providing oversight and protection of the TikTok platform and U.S. user data, so millions of Americans can continue turning to TikTok to learn something new, earn a living, express themselves creatively, or be entertained. The teams within USDS that deliver on this commitment daily span across Trust & Safety, Security & Privacy, Engineering, User & Product Ops, Corporate Functions and more.
Why Join Us
Creation is the core of TikTok's purpose. Our platform is built to help imaginations thrive. This is doubly true of the teams that make TikTok possible.
Together, we inspire creativity and bring joy - a mission we all believe in and aim towards achieving every day.
To us, every challenge, no matter how difficult, is an opportunity; to learn, to innovate, and to grow as one team. Status quo? Never. Courage? Always.
At TikTok, we create together and grow together. That's how we drive impact - for ourselves, our company, and the communities we serve.
Join us.
About the Team
FUSE is the TikTok Cyber Fusion Center, a global brand with locations opening in Washington D.C., Australia, and the UK. A Cyber Fusion Center comprises specialized, highly proficient security professionals who enable rapid and informed response to protect the company from all-hazard scenarios.
The Fusion Center Principal will lead the TikTok US Cyber Fusion Center in London, United Kingdom. You will build and lead a team of people, processes and technologies with the overarching goal of detecting and responding to threats that could impact TikTok's US operations.
The TikTok US Fusion Center will in-take, triage and coordinate reports of cyber threats with the potential to impact TikTok US. For cyber-related threats, the Cyber Fusion Center team will detect, investigate, and respond to threats or malicious activities within the enterprise. Your team will regularly survey the TikTok networks for signs of a breach, malware, or unauthorized access. You will identify and disrupt major threats that target TikTok users or utilize TikTok's infrastructure.
Additionally, your team will develop and maintain standard operating procedures and response plans. Your team will coordinate and execute purple team exercises with the USDS red team to practice incident response processes and hone procedures. Finally, your team will be responsible for data collection and analysis of cyber threat investigation data.
Tasks and Responsibilities:
- Develop and document standard operating procedures including identification, remediation, containment, and eradication procedures
- Identify major threats that target TikTok users or utilize company infrastructure
- Develop a staffing structure and roles and responsibilities for a 24x7x365 monitoring and response capability
- Provide input to cross-functional teams to ensure that log sources meet analyst needs and that sensors and collection devices are placed strategically throughout the environment
- Work with Crisis and Incident Management to enable procedures and execute them when necessary
- Work with Human Resources and Recruiting to build a staffing and development plan to attract, develop, and retain world-class talent at all levels
- Synthesize technical details of critical incidents to executive management and provide immediate containment and eradication recommendations
Qualifications
Education:
- Bachelor's degree or industry-equivalent work experience in Computer Science, Information Security, Computer Engineering, or a related discipline
Minimum Qualifications
- CISSP, GCIA, GCIH, GREM, or applicable experience in the Information Security field
- Expert in computer security incident handling and responding to Advanced Persistent Threats
- Strong Operating System Administration skills including conceptual knowledge of OS internals and experience with core service types
- Strong experience with *NIX and Windows environments
- Experience in maintaining a working knowledge of global attack groups and their tools, techniques, and procedures
Preferred Qualifications:
- Strong leadership skills and the ability to foster a collaborative, high performing team
- Excellent communication skills (verbal and written), ability to influence without authority
- Demonstrated teamwork and collaboration skills, in particular in leading or contributing to multi-functional teams
- Demonstrated experience in leading a security focused capability and providing world class services at enterprise scale
- Expertise in performing or overseeing malware analysis
- Expertise in performing or overseeing digital forensics for incident response
- Demonstrates excellent organizational direction, time management, problem-solving, prioritization, goal setting, leadership, motivation, negotiation, and interpersonal relations.
- Excellent fundamental knowledge of industry standard frameworks such as MITRE ATT&CK and NIST CSF
- Ability to communicate technical concepts to a broad range of technical and non-technical staff.
- Must possess a high degree of integrity, be trustworthy, and have the ability to lead and inspire change.
This role requires the ability to work with and support systems designed to protect sensitive data and information. As such, this role will be subject to strict national security-related screening.
TikTok is committed to creating an inclusive space where employees are valued for their skills, experiences, and unique perspectives. Our platform connects people from across the globe and so does our workplace. At TikTok, our mission is to inspire creativity and bring joy. To achieve that goal, we are committed to celebrating our diverse voices and to creating an environment that reflects the many communities we reach. We are passionate about this and hope you are too.
TikTok is committed to providing reasonable accommodations in our recruitment processes for candidates with disabilities, pregnancy, sincerely held religious beliefs or other reasons protected by applicable laws. If you need assistance or a reasonable accommodation, please reach out to us at https://shorturl.at/ktJP6
* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰
Tags: C CISSP Computer Science Forensics GCIA GCIH Governance GREM Incident response Malware MITRE ATT&CK Monitoring NIST Privacy Red team SOC Windows
Perks/benefits: Career development
More jobs like this
Explore more career opportunities
Find even more open roles below ordered by popularity of job title or skills/products/technologies used.