waypointjobs

Zions Bancorporation

Senior Cyber Incident Response Engineer

midvale, UT

Check who can apply and the requirements below before continuing.

This job is closed

Applications are no longer available for this announcement. Explore current related opportunities below.

Job description

We are currently seeking a Senior Cyber Incident Response Engineer as part of our Enterprise Information Security department. Enterprise Information Security (EIS) is integrated with the Enterprise Technology and Operations division (1100+ technical people) at Zions Bancorporation. EIS is responsible for enabling secure innovation and business growth for 10,000+ employees across 11 states. EIS is undergoing rapid growth and we are focused on creating a relevant program that will enable our organization’s long-term success. What’s great about our department is that we laugh with each other, have Executive and Board level visibility and support for our work, and are driving highly visible, enterprise-wide initiatives. We are focused on creating business value and are seeking like-minded professionals to join our team!

The Senior Cyber Incident Response Engineer will join our CSOC Team. The Cybersecurity Operations Center (CSOC) team is the cyber front line at Zions Bancorporation. If you want to work on a team where your input matters, you get to collaborate with sharp colleagues with whom you will grow, where your work is truly valued and you make a real difference, then you will be in good company.

As a Senior Cyber Incident Response Engineer you will play a key role in defending the enterprise from malicious actors. The work you do has real impact customer-wide and enterprise-wide and it is truly valued by both.

The Senior Cyber Incident Response Engineer will:

Act as key contributor in the CSOC’s growth and evolution, actively improving our cyber incident response capabilities

Respond to cybersecurity incidents, especially as an escalation point for high-priority or highly complex incidents

Function as subject matter expert in multiple cybersecurity tools and processes such as SIEM, IDS, EDR, DLP, WAF and similar

Develop and implement monitoring use cases, cyber incident response procedures, playbooks and other technical documentation

Collaborate with Enterprise Cybersecurity Architecture and technology teams in monitoring and alerting infrastructure, processes, and tools

Train, mentor and guide other team members (across both the CSOC and other EIS teams) on cyber incident response practices, tooling, and capabilities

Participate in the on-call rotation so we can maintain 24/7 coverage in responding to alerts and possible threats

Other duties as assigned

Requirements:

Hands-on technical experience with one or more commercial SIEM products such as Splunk (preferred), IBM QRadar, LogRhythm, ArcSight, NetWitness, etc., which should include familiarity with defining and writing alert conditions/use cases in addition to daily use for investigating incidents

Experience producing technical documentation, standard operating procedures, and incident response playbooks

Expert technical knowledge in networking, Windows administration, Linux administration, common attack techniques and preventions

Advanced working knowledge of common attack vectors, different classes of attacks (e.g., passive, active, insider, close-in, distributed, etc.) and general attack stages (e.g., foot printing and scanning, enumeration, gaining access, escalation or privileges, maintaining access, network exploitation, covering tracks, etc.)

Advanced knowledge of system administration concepts for UNIX/Linux and Windows operating systems

Development experience with scripting languages such as R, HIVE, Python, JavaScript, etc., is a plus

Experience with any Endpoint Detection and Response platform is a plus

Relevant advanced technical certifications are a plus (ex: SANS, ISC2) with 5+ years of relevant experience in one or more technical cybersecurity domains (combination of education and experience, such as 6-8 years of relevant experience or equivalent education may meet qualifications)

Location:

This position has a hybrid work from home schedule with a minimum of three days per week in the office at the new Zions Technology Center in Midvale, UT

The Zions Technology Center is a 400,000-square-foot technology campus in Midvale, Utah. Located on the former Sharon Steel Mill superfund site, the sustainably built campus is the company’s primary technology and operations center. This modern and environmentally friendly technology center enables Zions to compete for the best technology talent in the state while providing team members with an exceptional work environment with features such as:

Electric vehicle charging stations and close proximity to Historic Gardner Village UTA TRAX station.

At least 75% of the building is powered by on-site renewable solar energy.

Access to outdoor recreation, parks, trails, shareable bikes and locker rooms.

Large modern cafe with a healthy and diverse menu.

Healthy indoor environment with ample natural light and fresh air.

LEED-certified sustainable building that features include the use of low VOC-emitting construction materials.

Benefits:

Medical, Dental and Vision Insurance - START DAY ONE!

Life and Disability Insurance, Paid Parental Leave and Adoption Assistance

Health Savings (HSA), Flexible Spending (FSA), and dependent care accounts

Paid Training, Paid Time Off (PTO) and 11 Paid Federal Holidays

401(k) plan with company match, Profit Sharing, competitive compensation in line with work experience

Mental health benefits including coaching and therapy sessions

Tuition Reimbursement for qualifying employees

Employee Ambassador preferred banking products

If you are an individual with disabilities who needs accommodation, or you are having difficulty using our website to apply for employment, please contact us at , Mon.-Fri. between 9 a.m. - 5 p.m. MST.

Equal Opportunity Employer

It is the policy of this corporation to provide equal employment and advancement opportunities to all employees and applicants for employment, without regard to race, color, religion, age (40 and over), sex, pregnancy, gender, disability, national origin, ethnic background, citizenship, veteran status, sexual orientation, gender identity and expression or any other characteristic protected by applicable law. This policy is established and administered in accordance with all applicable federal, state, and local laws.

Req ID:

#J-18808-Ljbffr

Worksite address

midvale, UT, 84047, US

Who can apply

Review the original listing for work authorization, qualifications and employer requirements.

Explore related searches

Current related jobs

Arrow Electronics, Inc.

WhatJobs

Design For Test Engineer IV (IC)

san jose, CA

Hourly Rate: $112,200.00 - $170,500.00

Position: Design For Test Engineer IV (IC) Job Description: What You'll Be Doing: DFT implementation for 3nm and 5nm Networking chips, IP …

Last received from source 2026-10-08View job

Arrow Electronics, Inc.

WhatJobs

Design For Test Engineer III (IC)

san jose, CA

Hourly Rate: $95,900.00 - $170,500.00

Position: Design For Test Engineer III (IC) Job Description: What You'll Be Doing: DFT implementation for 3nm and 5nm Networking chips, IP…

Last received from source 2026-10-08View job