Incident Response Security Consultant

1 Month ago • 2 Years + • Cyber Security

Job Summary

Job Description

As an Incident Response Security Consultant at Mandiant, you'll investigate and contain cyber security incidents, collaborating with internal and customer teams. Responsibilities include conducting forensic analysis (host, network, log, malware triage), recognizing attacker TTPs and IOCs, automating threat tracking, and determining if compromise notifications are needed. You'll create reports and presentations for technical and executive audiences, helping clients prepare for, mitigate, and respond to threats. The role involves working on complex, high-profile incidents, performing threat hunting, and providing incident response services (investigation, containment, remediation, crisis management).
Must have:
  • Bachelor's degree in Computer Science or related field
  • 2 years network forensics/malware analysis experience
  • 2 years end-to-end incident response experience
  • Incident investigation and containment
  • Forensic analysis and malware triage
  • Report writing and presentation skills
Good to have:
  • Cloud platform certifications
  • Experience in security competitions (CTFs)
  • Excellent communication skills

Job Details

Minimum qualifications:

  • Bachelor's degree in Computer Science, a related technical field, or equivalent practical experience.
  • 2 years of investigative experience with network forensics, malware triage analysis, cloud forensics, or disk and memory forensics.
  • 2 years of experience working end to end Incident Response investigations, analysis, or containment actions.

Preferred qualifications:

  • Certifications in cloud platforms.
  • Experience in security competitions, Capture the Flags (CTFs) or testing platforms such as Hack the Box, TryHackMe, Overthewire, etc.
  • Ability to communicate investigative findings and strategies to technical staff, executive leadership, legal counsel, and internal and external clients.
  • Excellent time and project management skills.

About the job

As a Security Consultant, you will be responsible for helping clients effectively prepare for, proactively mitigate, and detect and respond to cyber security threats. Security Consultants have an understanding of computer science, operating system functionality and networking, cloud services, corporate network environments and how to apply this knowledge to cyber security threats.

As a Security Consultant, you could work on engagements including assisting clients in navigating technically complex and high-profile incidents, performing forensic analysis, threat hunting, and malware triage. You may also test client networks, applications and devices by emulating the latest techniques to help them defend against threats, and will be the technical advocate for information security requirements and provide an in-depth understanding of the information security domain. You will also articulate and present complex concepts to business stakeholders, executive leadership, and technical contributors and successfully lead complex engagements alongside cross functional teams.

As an Incident Response Consultant, you will provide industry-leading incident response, assessment, transformation, managed detection and response, and training services with tactical support. You will help organizations detect and respond to threats and reduce the overall impact of business risk before, during, and after an incident. You will be able to resolve security incidents quickly, effectively and at scale with complete incident response including investigation, containment, remediation, and crisis management. In this role, you will work on engagements including assisting clients in navigating technically complex and high-profile incidents, performing forensic analysis, threat hunting, and malware triage.Part of Google Cloud, Mandiant is a recognized leader in dynamic cyber defense, threat intelligence and incident response services. Mandiant's cybersecurity expertise has earned the trust of security professionals and company executives around the world. Our unique combination of renowned frontline experience responding to some of the most complex breaches, nation-state grade threat intelligence, machine intelligence, and the industry's best security validation ensures that Mandiant knows more about today's advanced threats than anyone.

Responsibilities

  • Collaborate with internal and customer teams to investigate and contain incidents.
  • Recognize and codify attacker Tools, Tactics, and Procedures (TTPs) and Indicators of Compromise (IOCs) that can be applied to current and future investigations.
  • Conduct host forensics, network forensics, log analysis, and malware triage in support of incident response investigations.
  • Automate tracking and discovery of threats leveraging internal and external data sources. Investigate impact to customers to determine if new detection or compromise notifications are necessary.
  • Develop and present comprehensive and accurate reports, training, and presentations for technical and executive audiences.

Similar Jobs

Netflix - Security Engineer L5, Incident Response

Netflix

Warsaw, Masovian Voivodeship, Poland (On-Site)
3 Months ago
Canonical - Security Risk Management Specialist

Canonical

(Remote)
2 Weeks ago
Moloco - Security DevOps Engineer

Moloco

United States (On-Site)
2 Weeks ago
Scale AI - Senior Security Engineer, Incident Responder

Scale AI

San Francisco, California, United States (On-Site)
1 Month ago
ION - Markets Product Security Engineer - UK

ION

London, England, United Kingdom (On-Site)
7 Months ago
Google - Strategic Security Consultant

Google

Toronto, Ontario, Canada (On-Site)
1 Month ago
Cloud Software Group - Lead Product Security Engineer

Cloud Software Group

Bengaluru, Karnataka, India (On-Site)
6 Months ago
Saviynt - Sr. Engineer, Solutions Engineering

Saviynt

United States (Remote)
7 Months ago
Google - Senior Embedded Engineer, Security/Privacy, Pixel

Google

Warsaw, Masovian Voivodeship, Poland (On-Site)
1 Month ago
PwC - ETIC, Cybersecurity Risk Technology Associate

PwC

Cairo, Cairo Governorate, Egypt (On-Site)
8 Months ago

Get notifed when new similar jobs are uploaded

Similar Skill Jobs

Google - Operations Analyst, Pre-Sales Operations

Google

Singapore (On-Site)
1 Month ago
ByteDance - Senior Security Tech Lead Manager - Security Engineering

ByteDance

San Jose, California, United States (On-Site)
3 Months ago
Plarium - SecOps Engineer

Plarium

Herzliya, Tel Aviv District, Israel (On-Site)
1 Month ago
IMC - Information Security Engineer

IMC

Sydney, New South Wales, Australia (On-Site)
1 Month ago
CrowdStrike - Sr. Engineer -Cloud- IoT

CrowdStrike

Pune, Maharashtra, India (On-Site)
3 Weeks ago
Tide - Senior Threat Detection Engineer

Tide

Sofia, Sofia City Province, Bulgaria (Hybrid)
2 Weeks ago
London stock Exchange - Senior Cyber Automation Engineer

London stock Exchange

Bengaluru, Karnataka, India (Hybrid)
2 Weeks ago
ByteDance - Senior Infrastructure Security Engineer, Security Assurance

ByteDance

Singapore (On-Site)
7 Months ago
Google - Instructional Designer

Google

Dubai, Dubai, United Arab Emirates (On-Site)
1 Month ago
Google - Senior Cloud Security Architect

Google

Dubai, Dubai, United Arab Emirates (On-Site)
1 Month ago

Get notifed when new similar jobs are uploaded

Jobs in Kuwait City, Al Asimah Governate, Kuwait

Google - Cloud Security Architect

Google

Kuwait City, Al Asimah Governate, Kuwait (On-Site)
1 Month ago
Google - Technical Solutions Consultant, Security

Google

Kuwait City, Al Asimah Governate, Kuwait (On-Site)
1 Month ago
Google - Technical Solutions Consultant, Security

Google

Kuwait City, Al Asimah Governate, Kuwait (On-Site)
1 Month ago
Cubic Corporation - ACMI Technician

Cubic Corporation

Kuwait City, Al Asimah Governate, Kuwait (On-Site)
3 Weeks ago
Google - Senior Intelligence Analyst

Google

Kuwait City, Al Asimah Governate, Kuwait (On-Site)
1 Month ago
Google - Technical Solutions Consultant, Security

Google

Kuwait City, Al Asimah Governate, Kuwait (On-Site)
1 Month ago
Google - Technical Solutions Consultant, Security

Google

Kuwait City, Al Asimah Governate, Kuwait (On-Site)
1 Month ago
Google - Cloud Security Architect

Google

Kuwait City, Al Asimah Governate, Kuwait (On-Site)
1 Month ago
Cubic Corporation - ACMI Technician

Cubic Corporation

Kuwait City, Al Asimah Governate, Kuwait (On-Site)
3 Weeks ago
Google - Senior Intelligence Analyst

Google

Kuwait City, Al Asimah Governate, Kuwait (On-Site)
1 Month ago

Get notifed when new similar jobs are uploaded

Cyber Security Jobs

PwC - Application Security Manager

PwC

Makati, Metro Manila, Philippines (On-Site)
8 Months ago
PwC - ETIC, Cybersecurity Cloud Security - Manager

PwC

Cairo, Cairo Governorate, Egypt (On-Site)
8 Months ago
Google - Security Engineer, Endpoint Platforms Security, Core

Google

Hyderabad, Telangana, India (On-Site)
1 Month ago
PwC - IN-Senior Associate_SmartCitiesGIS _Cities_Advisory _Ahmedabad/Mumbai/Delhi

PwC

Ahmedabad, Gujarat, India (On-Site)
5 Months ago
PwC - Senior Associate - Data Engineer - D&AT IFS

PwC

Bengaluru, Karnataka, India (On-Site)
8 Months ago
GoMotive - Information Security Analyst II

GoMotive

Pakistan (Remote)
2 Months ago
ION - Senior Security Architect

ION

Milan, Lombardy, Italy (On-Site)
7 Months ago
Google - Senior Software Engineer, ChromeOS, Security

Google

Kraków, Lesser Poland Voivodeship, Poland (On-Site)
1 Month ago
ByteDance - Cloud Security Architect

ByteDance

Singapore (On-Site)
1 Month ago
Google - Senior Software Engineer, Security and Privacy, Pixel Phone

Google

New Taipei, New Taipei City, Taiwan (On-Site)
1 Month ago

Get notifed when new similar jobs are uploaded