Назад
Company hidden
3 дня назад

Senior Specialist, Incident Response (Cybersecurity)

Формат работы
hybrid
Тип работы
fulltime
Грейд
senior
Английский
b2
Страна
Singapore
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Senior Specialist, Incident Response (Cybersecurity): Investigating cybersecurity incidents and conducting digital forensic analysis across endpoints, servers, cloud environments, networks, and SaaS platforms with an accent on evidence preservation, incident containment, and root-cause analysis. Focus on analyzing malware, ransomware, account compromise, insider threats, and data exfiltration while developing automation and improving forensic readiness.

Location: Singapore, Singapore. Hybrid arrangement with work from home up to 2 days per week, depending on team needs. A separate flex-location benefit allows up to 30 days per year working from any location in the world.

Company

hirify.global provides technology and communications solutions for airports, airlines, borders, transportation organizations, and government clients worldwide.

What you will do

  • Investigate security incidents across analysis, containment, eradication, recovery, and post-incident activities.
  • Coordinate incident response with Security Operations, CSIRT Threat, Corporate IT, Cloud & Infrastructure, Product Engineering, and other stakeholders.
  • Acquire, preserve, analyze, and report on forensic evidence from endpoints, servers, cloud environments, networks, and SaaS platforms.
  • Investigate malware, ransomware, account compromise, data exfiltration, unauthorized access, insider threats, and privileged-access misuse.
  • Prepare technical findings, incident reports, lessons learned, remediation recommendations, and evidence documentation.
  • Develop scripts and automation, improve logging and telemetry, and enhance DFIR tooling and operational processes.

Requirements

  • Experience in digital forensics, incident response, or cyber investigations in enterprise environments.
  • Hands-on experience with EDR/XDR, SIEM, forensic investigation, and security monitoring tools.
  • Experience analyzing incidents across endpoints, servers, cloud environments, networks, and identity platforms.
  • Proficiency in Python and/or PowerShell, with working knowledge of KQL or similar query languages.
  • Understanding of threat actor tactics, techniques, and procedures and the MITRE ATT&CK framework.
  • Strong analytical, problem-solving, documentation, and technical communication skills.

Nice to have

  • GCFA, GNFA, GCIH, GREM, GCFE, CISSP, or OSCP certification.
  • Cloud security and DFIR investigation experience across Azure, AWS, and/or GCP.
  • Experience with FTK, EnCase, Velociraptor, KAPE, Autopsy, or Volatility.
  • Experience in aviation, transportation, critical infrastructure, or operational technology environments.
  • Knowledge of security automation, orchestration, and AI-assisted investigation techniques.

Culture & Benefits

  • Inclusive environment operating across 200 countries and 60 languages and cultures.
  • Flexible workday options and up to 2 work-from-home days per week, depending on team needs.
  • Up to 30 days per year working from any location in the world.
  • Employee Assistance Program and personalized wellbeing support.
  • Professional development through LinkedIn Learning, Microsoft Enterprise Skills Initiative, Pluralsight, Harvard Business Publishing, Stanford, and other learning platforms.
  • Benefits aligned with the local market and employment status.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →