12 часов назад
Senior Incident Response Consultant, Rapid Response (Cybersecurity)
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
Текст:
TL;DR
Senior Incident Response Consultant, Rapid Response (Cybersecurity): Leading customer-facing investigations and neutralizing ransomware and other cybersecurity incidents with an accent on forensic analysis, threat containment, root cause analysis, and executive reporting. Focus on directing concurrent response engagements, mapping incident timelines to MITRE ATT&CK, identifying data exfiltration, and coordinating handovers across time zones.
Location: Remote from Romania; legal authorization to work in Romania is required, and employer sponsorship is not available.
Company
provides cybersecurity technologies and incident response services to organizations worldwide.
What you will do
- Lead customer kickoff and daily update calls, provide post-incident guidance, and communicate forensic findings.
- Direct forensic investigations, set priorities, delegate tasks, and manage multiple Rapid Response incidents concurrently.
- Ensure threats are neutralized, assess potential data exfiltration, and conduct root cause analysis.
- Identify analyst-discovered tactics, techniques, and procedures and add them to the threat intelligence platform.
- Write executive summary reports with incident timelines mapped to the MITRE ATT&CK framework and provide remediation guidance.
- Develop the Rapid Response service through basic to moderately complex projects and provide handover notes across time zones.
Requirements
- 5+ years of experience leading incident response investigations involving ransomware.
- Experience leading business email compromise investigations and successfully neutralizing and remediating ransomware threats.
- Excellent understanding of incident response processes and cyber risk qualification.
- Strong oral and written communication, prioritization, delegation, time management, and performance under pressure.
- Strong grasp of the MITRE ATT&CK framework and a post-secondary education in cybersecurity or comparable experience.
- Legal authorization to work in Romania without employer sponsorship. Availability for the stated Friday-to-Monday schedule, some weekends and holidays, and occasional early or late work is required.
Nice to have
- Cybersecurity certifications such as CISSP or GCFA.
- Experience with SIEM technologies such as Splunk or ELK.
- SQL query writing and scripting with PowerShell, Python, or Bash.
- Willingness to work occasional overtime during peak periods or holidays.
Culture & Benefits
- Remote-first work environment.
- Four-day working week from Friday through Monday, with Tuesday through Thursday off.
- Work with an elite incident response team supporting organizations worldwide.
- Opportunity to mentor junior analysts and share cybersecurity knowledge.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →
Похожие вакансии
5 дней назад
CFC Senior Enterprise Security Incident Manager (Cybersecurity)
153 075 - 275 535$
4 дня назад
Senior Security Consultant (Incident Response)
3 дня назад
Cyber Threat Intelligence Analyst
6 дней назад
HK Senior Detection and Response Engineer (Cybersecurity)
9 часов назад
Threat Research Analyst (Cybersecurity)
3 дня назад