Incident Response Consultant (Cybersecurity)
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
TL;DR
Incident Response Consultant (Cybersecurity): Assisting clients facing sophisticated security threats by responding to incidents and preparing them for effective incident handling with an accent on technical investigations, identifying root causes, and providing tailored recommendations. Focus on conducting digital forensic investigations, analyzing data, and reporting findings to help clients improve their security posture.
Location: Japan / Thailand / Philippines
Company
is a global leader and innovator of advanced security solutions for defeating cyberattacks.
What you will do
- Conduct incident response and digital forensic investigations.
- Conduct technical investigations of complex incidents involving multiple hosts and extensive networks.
- Prepare reports on incident findings and recommended responses, and present at debriefing sessions.
- Communicate technical issues with the Threat Intelligence team (Counter Threat Unit / CTU) and Technical Testing team.
- Participate and lead Threat Hunting projects against targeted attacks.
Requirements
- At least 3 years of practical experience in incident response, digital forensics, or network forensics.
- At least 1 year experience with Encase, FTK, X-Ways, F-Response, Volatility, or one or more open source forensic tool(s).
- Experience in malware analysis.
- Understanding of vulnerabilities and the tools to detect and analyze them.
- Bachelor of Science degree in computer science, computer engineering, electronics, or related technical field, or equivalent work experience.
- Understanding of one or more of the following: ISO 27001/2, FISMA, PCI, HITRUST, NIST 800-series, CoBIT, PCI.
- Applicants must have legal authorization to work in the jurisdiction where the position is posted, without requiring employer sponsorship.
- Communication in English.
- Native-level Japanese language skills (At minimum, business-level Japanese language skills are required).
Nice to have
- Experience with operating system administration (Microsoft Windows/Linux).
- Understanding of attacker motivation and the techniques, strategies, and procedures used by attackers.
- Experience reporting to department heads and management and reporting technical content tailored to customer contact profiles of varying technical levels and organizational roles.
- At least one certification in GREM, GCFA, GCFE, CISA or CISSP.
Culture & Benefits
- operates a remote-first working model, making remote work the primary option for most employees.
- Employee-led diversity and inclusion networks that build community and provide education and advocacy.
- Annual charity and fundraising initiatives and volunteer days for employees to support local communities.
- Global employee sustainability initiatives to reduce our environmental footprint.
- Global fitness and trivia competitions to keep our bodies and minds sharp.
- Global wellbeing days for employees to relax and recharge.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →