Principal Consultant, DFIR, Reactive Services (Unit 42) - Remote
Tasks
- Analyze memory logs and endpoint telemetry
- Conduct host network and cloud investigations
- Deliver technical findings and remediation guidance
- Develop incident response playbooks and tools
- Guide investigative strategy
- Lead incident response investigations
- Maintain knowledge of emerging threats
- Perform advanced forensic analysis
- Perform forensic acquisition and analysis
- Share knowledge and mentor team
- Use DFIR tools and methodologies
Perks/Benefits
Skills/Tech-stack
Chain of Custody | Cloud Forensics | Computer forensics | Digital forensics | EnCase | Endpoint investigation | Endpoint telemetry | Evidence handling | FTK | Forensic acquisition | Incident Response | Linux | Log Analysis | MITRE ATT&CK | MacOS | Malware triage | Memory Forensics | Microsoft Windows | Network investigation | Reverse Engineering | Sleuthkit | Volatility
Education
Related jobs
-
Sr. Embedded Detection Analyst USD 122K-187KAI tools | Alert Correlation | Alert triage | Cause analysis | Detection engineeringSenior-level Full TimeRemote - USA R14h ago
-
Threat & Vulnerability Analyst USD 93K-135KDetection and prevention | GDPR | ISO 27001 | Incident Response | Intrusion Detection401k with company match | Education reimbursement | Flexible work schedule | Paid Childbearing Leave | Paid paternal leaveMid-level Full TimeRemote - United States R16h ago
-
Cybersecurity Analyst USD 93K-142KAnalytics | Business Intelligence | Cybersecurity | Data Privacy | Endpoint detection401k match | CliftonStrengths coaching | Community involvement | Dental insurance | Disability insuranceEntry-level Full TimeCarmel, IN, United States R1d ago
-
Sr. Solution Consultant USD 100K-176KAWS | Active Directory | Azure | Cybersecurity | Data Exchange LayerCommunity involvement support | Flexible work hours | Medical, dental & vision coverage | Paid parental leave | Paid time offSenior-level Full TimeRemote United States, United States R1d ago
-
AWS CloudFormation | Access Control | Active Directory | Amazon Web Services | Azure ResourceFamily leave | Health care plan | Paid time off | Retirement plan | Training and developmentSenior-level Full TimeMontana, United States - Remote R2d ago
-
Strategic Advisory Services Consultant (Remote) USD 95K-140KAI | CSIRT | Cyber Risk | Cyber risk frameworks | CybersecurityEmployee networks | Paid parental leave | Professional development | Remote work | Travel up to 30 percentSenior-level Full TimeUSA TX Remote, United States R2d ago
-
Strategic Advisory Services Consultant (Remote) USD 95K-140KAI Technologies | CSIRT | Communication skills | Cybersecurity | Fusion CenterCompetitive vacation and holidays | Comprehensive wellness programs | Employee networks | Paid adoption leave | Paid parental leaveSenior-level Full TimeUSA TX Remote, United States R2d ago
-
Strategic Advisory Services Consultant (Remote) USD 95K-140KAI | Business Strategy | CSIRT | Cybersecurity | Cybersecurity PolicyCompetitive vacation and holidays | Comprehensive wellness programs | Employee networks | Great Place to Work certified | Paid parental leaveSenior-level Full TimeUSA IN Remote, United States R2d ago
-
Senior GRC Analyst, HIPAA USD 132K-195K800-53 | Access Review | Audit management | Control Design | Control TestingSenior-level Full TimeUnited States - Remote R3d ago
-
Cyber Security Engineering Associate USD 150K-175KAutomation | Azure | Azure AD | CrowdStrike | EDRFlexible work arrangements | Health insurance | Hybrid work model | Life insurance | Paid time offMid-level Full TimeTX, United States R3d ago
-
Team Lead, Security Operations Center (SOC) - 2nd Shift USD 121K-152KCyber Security | Detection engineering | EDR | Evidence Based Investigation | Incident Response401(k) plan matching | Bereavement leave | Employee assistance program | Employee discount program | Health and wellbeing benefitsSenior-level Full TimeRemote - Nationwide, United States R3d ago
-
Event Analyst II, Third Party Risk Management USD 55K-95KCyber Compliance | Cybersecurity | Data Analysis | Executive reporting | FFIEC401k matching | Dental insurance | Employee assistance program | Employee discounts | Employee stock purchase planEntry-level Full Time601 S. Tryon Street, NC R4d ago
-
Principal Information Security Engineer USD 96K-207KApplication Security | Cloud Security | Containerization | Data Security | Detection and ResponseSenior-level Full TimeVirtual - Ohio, United States R4d ago
-
Access Management | Audit Risk | Audit Risk Management | Branch protection | CCPASenior-level Full TimeCA Burbank Bldg. 700, Second Century, … R4d ago
-
AWS | Access Management | Application Security | Azure | Cause analysisBackground Investigation required | Comprehensive technology setup | Monthly Connectivity reimbursement | Work from home optionMid-level Full TimeUSA - IL (Remote), United States R4d ago
-
Senior Security Analyst I USD 140K-176KAdversary tactics | Anomaly Detection | Bash | Clustering | DLPConference reimbursement | Employee assistance program | Flexible time off | LinkedIn Learning access | Local Employee MeetupsSenior-level Full TimeDenver R4d ago
-
Senior Security Analyst I USD 140K-176KBash | Cloud Security | DLP | Go | KubernetesEmployee assistance program | Flexible time off | LinkedIn Learning access | Remote work | Training and education reimbursementSenior-level Full TimeBoston R4d ago
-
Senior Security Analyst I USD 140K-176KAnomaly Detection | Bash | Cloud infrastructure | DFIR | DLPConference reimbursement | Employee assistance program | Flexible time off | LinkedIn Learning access | Local Employee MeetupsSenior-level Full TimeAustin R4d ago
-
Senior Security Analyst I USD 140K-176KAnomaly Detection | Bash | Cloud Security | Clustering | DLPConference reimbursement | Employee assistance program | Flexible time off | LinkedIn Learning access | Local Employee MeetupsSenior-level Full TimeSan Francisco R4d ago
-
IS Analyst - IT Security Operations USD 115K-135KAPIs | CIS | EDR | Incident Response | Indicators of compromise401k match | Career Development Programs | Dental insurance | Floating holidays | Health insuranceSenior-level Full TimeUSA-SP120-St. Petersburg, United States R5d ago
-
Cyber Threat Intelligence Analyst USD 87K-114KCyber Kill Chain | Cyber Threat | Cyber threat landscape | Incident Response | Intelligence platformsMid-level Full TimeRemote - Anywhere - USA, United … R5d ago
-
Sr. IS Analyst - Security Operations USD 115K-135KAlert triage | CIS | Case management | Cause analysis | Cloud Security401k match | Career Development Programs | Education reimbursement | Employee stock investment program | Health insuranceSenior-level Full TimeUSA-SP120/1-St. Petersburg, United States R5d ago
-
Cyber-Security Operations Analyst III, Product AppSec USD 102K-234KAWS | Alerting | Ansible | Azure | Azure DevOps401k match | AirVet virtual veterinary care | Employee assistance program | Fertility adoption and surrogacy support | Identity protectionSenior-level Full TimeRemote, United States R5d ago
-
Threat & Vulnerability Senior Associate USD 110K-159KAI analytics | Data analytics | Incident Response | Network Security | Patch ManagementFlexible hybrid schedule | Health insurance | Hybrid work model | Life insurance | Paid time offSenior-level Full TimeDallas, TX, United States R5d ago
-
Associate Analyst, Falcon Complete (Hybrid) USD 70K-95K.NET | C# | Computer forensics | Countermeasures | Dynamic analysisEmployee resource groups | Employee volunteer opportunities | Paid adoption leave | Paid parental leave | Professional developmentMid-level Full TimeSt. Louis, United States R6d ago