Security Analyst / Incident Response

Full Time
Mexico City, CDMX, Mexico
5 months ago

At Lyft, our mission is to improve people’s lives with the world’s best transportation. To do this, we start with our own community by creating an open, inclusive, and diverse organization.

Lyft connects people to transportation to change the way we live and get around our communities. Lyft’s engineering team is growing rapidly, and we are looking for Security Engineers to help us scale. Come be part of a new team at Lyft focused on enabling and empowering engineering teams to deliver at scale.

Our drivers and passengers entrust Lyft with their personal information and travel details to get where they're going and expect us to keep that data safe. Lyft's security team leads efforts across the company to ensure our systems are secure and worthy of our users' trust.

Lyft Security builds systems to protect and defend infrastructure. We consult with teams as they build and launch new products and features, proactively plans for the unexpected, and responds to incidents that occur. Our work has company-wide impact and takes place at all levels of the stack, from infrastructure to web application security, as well as mobile apps, IT, bikes, scooters, and autonomous vehicles. We believe in scaling security through engineering fundamentals, automation, and tooling. Check out our blog posts at https://eng.lyft.com/tagged/security to learn more about some of the things we’ve built.

The Incident Response team owns mitigation and handling of security indents as well as our proactive hypothesis based Threat Hunting program.

Responsibilities:
  • Respond to security incidents; orchestrating response across engineering and other disciplines
  • Define and execute threat hunting operations across Lyft's systems with the objective of finding detection gaps, identifying gaps in security controls, and processes
  • Develop automation and tooling to multiply the impact of the incident response team
  • Build and maintain relationships with key partners, both internally and externally
Experience:
  • Responding to security incidents in a DFIR or SOC
  • Defining and executing threat hunting operations that yield impactful findings
  • Present findings, recommendations and results to leadership
  • Ability to communicate complex information, concepts, or ideas in a confident and well-organized manner through verbal, written, and/or visual means
  • Ability to manage multiple tasks and priorities
  • Ability to work independently with minimal supervision
  • Nice to have: scripting and automation skills, experience with cloud technologies such as AWS/GCP/Azure

This role will be in-office on a hybrid schedule if an established Lyft Location is available to the Mexico City region — Hybrid Team Members will be expected to work in the office 3 days per week on Mondays, Thursdays and a team-specific third day. Additionally, hybrid roles have the flexibility to work from anywhere for up to 4 weeks per year. #Hybrid