Incident Response Senior Consultant

2 Days ago • All levels • $200,000 PA - $275,000 PA

Job Summary

Job Description

CyberArk is looking for a skilled Digital Forensics and Incident Response (DFIR) Consultant. This role involves technical leadership in managing complex security incidents, performing forensic analysis, threat hunting, and malware analysis. The consultant will assist customers in resolving security incidents efficiently, providing comprehensive response including investigation, containment, and crisis management. Responsibilities include investigating incidents using EDR systems, developing response initiatives, tracing malware, recognizing attacker Tactics, Techniques, and Procedures (TTPs) and Indicators of Compromise (IOCs), analyzing binary files, conducting forensic examinations on devices, analyzing live and collected memory, creating and refining detection and incident response playbooks, collaborating with teams for incident investigation and containment, producing high-quality reports for stakeholders, and establishing data sharing environments for suspicious events and machine timelines. The role also involves creating operational metrics, KPIs, and service level objectives to measure team competence.
Must have:
  • Investigate and analyze incidents with EDR systems.
  • Respond to ongoing security incidents in real-time.
  • Develop Incident Response initiatives.
  • Trace malware activity and patterns.
  • Recognize attacker TTPs and IOCs.
  • Analyze binary files to determine legitimacy.
  • Conduct forensic examinations on physical devices.
  • Perform analyses on live and collected memory.
  • Create and refine detection and incident response playbooks.
  • Collaborate with internal and customer teams.
  • Produce high-quality written reports and presentations.
Good to have:
  • Assist customers in rapidly and effectively resolving security incidents at scale.
  • Provide comprehensive incident response, including investigation, containment, and crisis management.
  • Establish a collaborative environment for sharing data.
  • Create operational metrics, KPIs, and service level objectives.
Perks:
  • Commissions or discretionary bonus

Job Details

CyberArk is seeking a highly skilled Digital Forensics and Incident Response (DFIR) Consultant to join our team. In this role you will be a   technical leader and navigate complex technical incidents, forensics analysis, threat hunting, and malware analysis. You will assist customers in rapidly and effectively resolving security incidents at scale, providing comprehensive incident response, including investigation, containment, and crisis management.

Responsibilities:

  • Investigate and analyze incidents with EDR systems to respond to ongoing security incidents in real-time.
  • Develop Incident Response initiatives that improve our ability to respond and remediate security incidents effectively.
  • Tracing malware activity and patterns and understanding how to remove malware non-destructively.
  • Recognize attacker Tools, Tactics, and Procedures (TTP) and Indicators of Compromise (IOC) and apply to future incident response events.
  • Analyze binary files to determine the legitimacy and extract IOCs when possible.
  • Conducting forensic examinations on physical devices and performing analyses on live and collected memory.
  • Create and refine detection and incident response playbooks.
  • Collaborate with internal and customer teams to investigate and contain incidents.
  • Produce high-quality written reports, presentations, and recommendations, to key stakeholders including customer leadership, and legal counsel.
  • Establishing a collaborative environment for sharing data on machine timelines and suspicious events.
  • Create operational metrics, key performance indicators (KPIs), and service level objectives to measure team competence.

#LI-KR1

Similar Jobs

Looks like we're out of matches

Set up an alert and we'll send you similar jobs the moment they appear!

Similar Skill Jobs

Looks like we're out of matches

Set up an alert and we'll send you similar jobs the moment they appear!

Jobs in United States

Looks like we're out of matches

Set up an alert and we'll send you similar jobs the moment they appear!

Similar Category Jobs

Looks like we're out of matches

Set up an alert and we'll send you similar jobs the moment they appear!

About The Company

CyberArk's mission is to secure the world against cyber threats so together we can move fearlessly forward. CyberArk is a global leader in identity security, helping organizations worldwide protect their most valuable assets and critical infrastructure. They offer a comprehensive platform that addresses the evolving challenges of identity-related risks, providing solutions for workforce access, privileged access, customer access, and machine identity security. CyberArk is committed to innovation and providing cutting-edge security solutions that empower their customers to be more secure and efficient.

Bulgaria (On-Site)

United States (Hybrid)

Amsterdam, North Holland, Netherlands (Hybrid)

United States (On-Site)

United Kingdom (On-Site)

View All Jobs

Get notified when new jobs are added by CyberArk

Level Up Your Career in Game Development!

Transform Your Passion into Profession with Our Comprehensive Courses for Aspiring Game Developers.

Job Common Plug