Назад
Company hidden
12 часов назад

Senior Incident Response Consultant, Rapid Response (Cybersecurity)

Формат работы
remote (только Romania)
Тип работы
fulltime
Грейд
senior
Английский
b2
Страна
Romania
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Senior Incident Response Consultant, Rapid Response (Cybersecurity): Leading customer-facing investigations and neutralizing ransomware and other cybersecurity incidents with an accent on forensic analysis, threat containment, root cause analysis, and executive reporting. Focus on directing concurrent response engagements, mapping incident timelines to MITRE ATT&CK, identifying data exfiltration, and coordinating handovers across time zones.

Location: Remote from Romania; legal authorization to work in Romania is required, and employer sponsorship is not available.

Company

hirify.global provides cybersecurity technologies and incident response services to organizations worldwide.

What you will do

  • Lead customer kickoff and daily update calls, provide post-incident guidance, and communicate forensic findings.
  • Direct forensic investigations, set priorities, delegate tasks, and manage multiple Rapid Response incidents concurrently.
  • Ensure threats are neutralized, assess potential data exfiltration, and conduct root cause analysis.
  • Identify analyst-discovered tactics, techniques, and procedures and add them to the threat intelligence platform.
  • Write executive summary reports with incident timelines mapped to the MITRE ATT&CK framework and provide remediation guidance.
  • Develop the Rapid Response service through basic to moderately complex projects and provide handover notes across time zones.

Requirements

  • 5+ years of experience leading incident response investigations involving ransomware.
  • Experience leading business email compromise investigations and successfully neutralizing and remediating ransomware threats.
  • Excellent understanding of incident response processes and cyber risk qualification.
  • Strong oral and written communication, prioritization, delegation, time management, and performance under pressure.
  • Strong grasp of the MITRE ATT&CK framework and a post-secondary education in cybersecurity or comparable experience.
  • Legal authorization to work in Romania without employer sponsorship. Availability for the stated Friday-to-Monday schedule, some weekends and holidays, and occasional early or late work is required.

Nice to have

  • Cybersecurity certifications such as CISSP or GCFA.
  • Experience with SIEM technologies such as Splunk or ELK.
  • SQL query writing and scripting with PowerShell, Python, or Bash.
  • Willingness to work occasional overtime during peak periods or holidays.

Culture & Benefits

  • Remote-first work environment.
  • Four-day working week from Friday through Monday, with Tuesday through Thursday off.
  • Work with an elite incident response team supporting organizations worldwide.
  • Opportunity to mentor junior analysts and share cybersecurity knowledge.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →