Senior Analyst, CSIRT
Listed on 2026-01-31
-
IT/Tech
Cybersecurity, Information Security
Job Description
Are You Ready to Make It Happen at Mondelēz International?
Join our Mission to Lead the Future of Snacking. Make It Uniquely Yours.
You work with the information security team as a competent and experienced information security and compliance leader.
How you will contributeAs a Senior Incident Response Analyst, you will play a vital role in strengthening MDLZ security measures. You will investigate and respond to security incidents, collaborate with cross-functional teams, and drive resolution to complex cybersecurity issues our environment. Your expertise will contribute to strong and well-designed Incident Response techniques, processes, and capabilities. You will be asked to partner on improvements both within and outside of the security domain to drive increases in team, department, and organizational maturity.
Whatyou will bring
- Take ownership of enhancing our security posture and protecting MDLZ infrastructure
- Be adept at technical writing.
- Capable of communicating with both technical and non‑technical stakeholders across all levels including C‑suite with ability to scope, tailor, and triage information shared to the roles and business priorities of audiences
- Develop and execute comprehensive containment, eradication, and recovery strategies, prioritizing business continuity and minimizing disruption to business processes. Coordinate response activities with incident response teams, internal stakeholders, and external partners. Follow established and best‑practice incident response procedures while iterating as necessary for novel events.
- Collaborate closely with a wide range of technical and non‑technical teams across business functions and geographies. Effectively scope, tailor, and triage incident information for diverse audiences, including C‑suite executives, providing clear, concise, and timely updates.
- Perform in‑depth malware analysis, network forensics, log analysis, and reverse engineering to identify root causes, establish timelines, and uncover Indicators of Compromise (IOCs) and Tactics, Techniques, and Procedures (TTPs) both independently and in partnership with security, technology, and business roles.
- Contribute significantly to the continuous review, refinement, and expansion of incident response playbooks, runbooks, and Standard Operating Procedures (SOPs), aligning them with industry best practices (e.g., NIST, MITRE) and our unique global context.
- Embody a passion for growth and drive for continuous learning
- Act as a coach and mentor to other analysts, elevating skills and contributing to overall lift of our global cybersecurity capabilities. Provide technical training sessions to various MDLZ global teams.
- Perform “lessons learned” reviews for significant incidents, identifying systemic weaknesses and driving recommendations for security control improvements, architectural enhancements, and organizational changes to prevent recurrence.
- Contribute to the team’s expansive skill set across topics like reverse engineering, cloud security, process development, scripting in Python, Power Shell, Bash, C/C++, ICS protocols, AI‑based automation, and more.
What you need to know about this position:
- Global Cybersecurity Incident Response Team with a rotational on‑call schedule
- Monitor computer environments for security issues
- Perform Threat Analysis on events reported by security tools, external parties, and internal SMEs
- Investigate security breaches and other cybersecurity events/incidents
- Contribute to Root Cause Analysis, Lessons Learned, and Corrective Action Reporting
- Create executive summaries, status reports, and supply metrics to relevant stakeholders independently
- Participate in special projects as needed
- High school diploma, GED, or equivalent certification
- Bachelor’s degree “preferred” – in Information Technology, Cybersecurity, Computer Science or related field
- Hold professional certifications through certifying bodies like:
- CompTIA:
Security+, CySA+, SANS‑GIAC: GCIH, GDAT, GPEN, GCFE, GRID - ISC2: CISSP
- Offsec: OCSP, OSIR
- CompTIA:
- 3‑6+ years’ experience in Incident Response, Information Security, SOC, Forensics,…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).