21 день назад
Lead Consultant - Incident Response (CPX) (Cybersecurity)
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
Текст:
TL;DR
Lead Consultant - Incident Response (CPX) (Cybersecurity): Leading incident response engagements in a cyber defence environment with an accent on digital forensics, threat hunting, malware analysis, and stakeholder coordination. Focus on investigating Windows, Mac, and Linux systems, analyzing network and malware evidence, developing remediation plans, and improving DFIR services.
Location: MBZ City, Abu Dhabi, United Arab Emirates
Company
operates a high-impact and operationally critical cyber defence environment.
What you will do
- Lead technical coordination for active incident response engagements and communicate investigation progress to clients.
- Execute threat hunting and digital forensic investigations across Windows, Mac, and Linux systems.
- Perform host, network, mobile, cloud, malware, and OT/ICS-related investigations in relevant areas of expertise.
- Produce detailed reports, technical briefs, remediation plans, and customer-facing guidance.
- Conduct quality assurance on reports, contribute to process documentation, and drive continuous service improvement.
- Maintain the DFIR Forensics Lab, lead team research, and develop internal knowledge-sharing sessions.
Requirements
- Previous experience performing digital forensics is mandatory.
- Strong blue team, threat hunting, network analysis, operating system forensics, malware analysis, and enterprise infrastructure knowledge.
- Experience with network analysis tools such as Bro/Zeek, RITA, or Suricata, plus system and network device log analysis.
- GIAC certification in at least one discipline is required; GNFA, GCIH, GCIA, GCFE, GCFA, and GDAT are examples.
- Excellent spoken and written English communication and stakeholder management skills are required.
- A bachelor's degree in Computer Science or Engineering is desirable but not mandatory; malware analysis experience is also desirable.
Culture & Benefits
- Work in a fast-paced, dynamic, and operationally critical cyber defence environment.
- Collaborate with skilled blue team professionals while handling engagements independently after the initial two months.
- Follow a flexible schedule suited to changing incident response situations.
- Contribute to service improvement, internal research, and brown-bag knowledge-sharing sessions.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →