At Lyft, our purpose is to serve and connect. We aim to achieve this by cultivating a work environment where all team members belong and have the opportunity to thrive.
Lyft connects people to transportation to change the way we live and get around our communities. Lyft’s engineering team is growing rapidly, and we are looking for Security Analysts to help us scale. Come be part of a team at Lyft focused on enabling and empowering engineering teams to deliver at scale.
Our drivers and passengers entrust Lyft with their personal information and travel details to get where they're going and expect us to keep that data safe. Lyft's security team leads efforts across the company to ensure our systems are secure and worthy of our users' trust.
Lyft Security builds systems to protect and defend infrastructure and services from cyber attacks. We consult with teams as they build and launch new products and features, proactively plans for the unexpected, and responds to incidents that occur. Our work has company wide impact and takes place at all levels of the stack, from infrastructure to web application security, as well as mobile apps, IT, bikes, scooters, etc. We believe in scaling security through engineering fundamentals, automation, and tooling. Check out our blog posts at https://eng.lyft.com/tagged/security to learn more about some of the things we’ve built.
Our Incident Response team lives at the intersection of speed and precision. We own the full lifecycle of security incidents and stay ahead of the curve with our Threat Hunting program.
We are looking for a Security Analyst who is passionate about refining feedback loops and executing proactive security actions. In this fast-paced, ever-evolving landscape, we prioritize knowledge sharing and mentorship. You will collaborate closely with Senior Analysts to sharpen your technical edge, ensuring that as our environment grows, your expertise grows with it.
Responsibilities:
- Incident Response: Respond promptly to security incidents by orchestrating coordinated responses across engineering teams and other relevant disciplines.
- Analyze and Prioritize High-Quality Security Alerts: Assess and prioritize security alerts of high quality with the potential to impact the organization, based on SOCLess approach.
- Develop Automation and Tooling: Create and maintain automation tools to enhance the efficiency and impact of the incident response team's activities.
- Collaborate with the Detection Engineering Team: Work closely with the Detection Engineering Team to identify and implement new security strategies aimed at detecting threats, reducing the attack surface, and enhancing the organization's overall cybersecurity posture.
- Conduct Threat Hunting Operations: Define and execute threat hunting operations across the organization's systems and services, aiming to uncover detection gaps, identify weaknesses in security controls, and refine existing processes.
- Assess the Organization's Threat Landscape: Evaluate the threat landscape specific to the organization to prioritize proactive security measures and actions.
- Cultivate and Maintain Key Partnerships: Establish and nurture relationships with critical partners both within the organization and externally to foster collaboration and information sharing.
Experience:
- Cybersecurity Knowledge:
- A strong drive to learn and ambition for continuous growth within the cybersecurity domain.
- An understanding of cybersecurity principles, including threat landscape and security best practices.
- Familiarity with TTPs (tactics, techniques and procedures), anomaly detection, and behavior analysis.
- Technical Skills:
- Automation & Cloud: Scripting and automation skills, basic experience with cloud technologies such as AWS/GCP and their tech stack.
- Systems & Networking: Strong understanding of operating systems (Windows, Linux, macOS) and networking, including their security features.
- Investigative Mindset: A natural curiosity to find the 'root cause' of problems through log analysis and forensic trail-following.
- Data Analytics: Ability to aggregate and correlate datasets to identify suspicious patterns and outliers.
- AI Augmentation: Proficiency in leveraging AI tools to accelerate workflows, such as scripting, automating repetitive tasks or summarizing complex technical documentation.
- Communication Skills:
- Strong communication skills to collaborate effectively with other team members, stakeholders, and management.
- Ability to document technical activities clearly and concisely.
- Capable of communicating technical concepts in a confident, well-organized manner to both technical and non-technical audiences.
- Adaptability and Collaboration:
- The ability to adapt to evolving technologies and cybersecurity threats and stay current with industry trends.
- Ability to manage multiple tasks and priorities, and work independently.
- Ethical Considerations:
- A strong ethical foundation and commitment to handling sensitive data and incidents with integrity and discretion.
Please submit your resume in English.