Incident Response Security Consultant

1 Month ago • 2 Years + • Cyber Security

About the job

Job Description

As an Incident Response Security Consultant at Mandiant, you'll help clients prepare for, mitigate, and respond to cybersecurity threats. Responsibilities include investigating and containing incidents, identifying attacker TTPs and IOCs, conducting forensic analysis (host, network, log, malware triage), automating threat tracking, determining the need for compromise notifications, and developing reports and presentations for technical and executive audiences. You will work on high-profile incidents, perform threat hunting, and assist clients in navigating complex situations. The role requires collaboration with internal and client teams and involves complete incident response, including investigation, containment, remediation, and crisis management.
Must have:
  • Bachelor's degree in CS or related field
  • 2 years network forensics experience
  • 2 years end-to-end IR investigation experience
  • Incident investigation & containment
  • Forensic analysis & malware triage
  • Report writing & presentation skills
Good to have:
  • Cloud certifications
  • CTF/Hacking experience
  • Excellent communication skills

Minimum qualifications:

  • Bachelor's degree in Computer Science, a related technical field, or equivalent practical experience.
  • 2 years of investigative experience with network forensics, malware triage analysis, cloud forensics, or disk and memory forensics.
  • 2 years of experience working end to end Incident Response investigations, analysis, or containment actions.

Preferred qualifications:

  • Certifications in cloud platforms.
  • Experience in security competitions, Capture the Flags (CTFs) and/or testing platforms such as Hack the Box, TryHackMe, Overthewire, etc.
  • Ability to communicate investigative findings and strategies to technical staff, executive leadership, legal counsel, and internal and external clients.
  • Excellent time and project management skills.

About the job

As a Security Consultant, you will be responsible for helping clients effectively prepare for, proactively mitigate, and detect and respond to cyber security threats. Security Consultants have an understanding of computer science, operating system functionality and networking, cloud services, corporate network environments and how to apply this knowledge to cyber security threats.

As a Security Consultant, you could work on engagements including assisting clients in navigating technically complex and high-profile incidents, performing forensic analysis, threat hunting, and malware triage. You may also test client networks, applications and devices by emulating the latest techniques to help them defend against threats, and will be the technical advocate for information security requirements and provide an in-depth understanding of the information security domain. You will also articulate and present complex concepts to business stakeholders, executive leadership, and technical contributors and successfully lead complex engagements alongside cross functional teams.

As an Incident Response Consultant, you will provide industry-leading incident response, assessment, transformation, managed detection and response, and training services with tactical support. You will help organizations detect and respond to threats and reduce the overall impact of business risk before, during, and after an incident. You will be able to resolve security incidents quickly, effectively and at scale with complete incident response including investigation, containment, remediation, and crisis management. In this role, you will work on engagements including assisting clients in navigating technically complex and high-profile incidents, performing forensic analysis, threat hunting, and malware triage.

Part of Google Cloud, Mandiant is a recognized leader in dynamic cyber defense, threat intelligence and incident response services. Mandiant's cybersecurity expertise has earned the trust of security professionals and company executives around the world. Our unique combination of renowned frontline experience responding to some of the most complex breaches, nation-state grade threat intelligence, machine intelligence, and the industry's best security validation ensures that Mandiant knows more about today's advanced threats than anyone.

Responsibilities

  • Collaborate with internal and customer teams to investigate and contain incidents.
  • Recognize and codify attacker Tools, Tactics, and Procedures (TTPs) and Indicators of Compromise (IOCs) that can be applied to current and future investigations.
  • Conduct host forensics, network forensics, log analysis, and malware triage in support of incident response investigations.
  • Automate tracking and discovery of threats leveraging internal and external data sources. Investigate impact to customers to determine if new detection or compromise notifications are necessary.
  • Develop and present comprehensive and accurate reports, training, and presentations for technical and executive audiences.
View Full Job Description

Add your resume

80%

Upload your resume, increase your shortlisting chances by 80%

About The Company

A problem isn't truly solved until it's solved for all. Googlers build products that help create opportunities for everyone, whether down the street or across the globe. Bring your insight, imagination and a healthy disregard for the impossible. Bring everything that makes you unique. Together, we can build for everyone.

San Francisco, California, United States (On-Site)

Dublin, County Dublin, Ireland (On-Site)

Hyderabad, Telangana, India (On-Site)

Mexico City, Mexico City, Mexico (On-Site)

Sunnyvale, California, United States (On-Site)

New Taipei, New Taipei City, Taiwan (On-Site)

New York, New York, United States (On-Site)

San Salvador, San Salvador Department, El Salvador (On-Site)

View All Jobs

Get notified when new jobs are added by Google

Similar Jobs

Postman - Senior Security Engineer, Detection & Response

Postman, United States (On-Site)

PwC - Cybersecurity Manager (SOC and IR)

PwC, Singapore (On-Site)

Reversing Labs - QA Engineer - Student Internship

Reversing Labs, Croatia (On-Site)

Company3 Method Studios - Director of Content Security

Company3 Method Studios, Canada (Hybrid)

Paytm - Information Security Manager

Paytm, India (On-Site)

G5 Games - SOC Engineer

G5 Games, Armenia (Remote)

PwC - Data Protection Director

PwC, Canada (On-Site)

Get notifed when new similar jobs are uploaded

Similar Skill Jobs

FCM Travel - Team Lead, IS Security Lead- Asia

FCM Travel, India (On-Site)

ION - Markets Product Security Engineer - UK

ION, United Kingdom (On-Site)

N-iX - Senior Python Engineer (#2435)

N-iX, Ukraine (Remote)

Forescout Technologies  Inc  - Senior Security Researcher

Forescout Technologies Inc , Italy (On-Site)

Trend Micro - Federal Government Account Executive

Trend Micro, Australia (On-Site)

Barracuda Networks  Inc  - Cybersecurity Analyst

Barracuda Networks Inc , Canada (Hybrid)

Get notifed when new similar jobs are uploaded

Cyber Security Jobs

Luminar Technologies - Product Security Lead

Luminar Technologies, India (On-Site)

Google - Security Architect, Google Cloud

Google, India (On-Site)

Foxhog Ventures Corp USA - Ethical Hacker

Foxhog Ventures Corp USA, India (On-Site)

NBC universal - Staff Cyber Security Engineer

NBC universal, United States (Remote)

Get notifed when new similar jobs are uploaded