Principal Consultant, Restoration and Remediation
Tasks
- Advise clients on remediation strategy and timelines
- Architect remediation plans
- Conduct tabletop exercises and remediation readiness assessments
- Coordinate recovery workstreams with DFIR IT legal and insurance
- Document client facing recovery reports
- Implement MFA and access recovery
- Improve recovery playbooks and tooling
- Lead end to end recovery operations
- Manage VPN and firewall remediation
- Manage user recovery and server rebuilds
- Mentor consultants and provide technical coaching
- Oversee enterprise backup restoration
- Participate in after hours incident response rotations
- Reconfigure and harden infrastructure
- Restore identity services
- Restore messaging systems
- Serve as technical escalation point
Perks/Benefits
- 401k matching
- Career advancement opportunities
- Dental insurance
- Disability coverage
- Flexible spending account
- Floating holidays
- Health insurance
- Health savings account
- Life and AD&D benefits
- Paid parental leave
- Paid time off
- Performance management coaching
- Professional development
- Remote work
- Vision insurance
Skills/Tech-stack
Access Management | Active Directory | Adversary TTPs | Azure Active Directory | Citrix | Cybersecurity | Digital Forensics and Incident Response | Digital forensics | Endpoint Security | Firewalls | Group Policy | Hyper-V | Identity and Access Management | Identity and access | Incident Response | MFA | Microsoft 365 | Microsoft Azure | Microsoft Azure Active Directory | Microsoft Exchange | Network Segmentation | Network reconfiguration | Threat Actor | Threat Intelligence | Threat actor behavior | Unitrends | VMware | VPN | Veeam | Virtualization | Windows Active Directory | Zerto
Education
N/A
Related jobs
-
Axiom | Digital forensics | ELK | EnCase | FTK401k matching | Career advancement | Dental insurance | Disability insurance | Flexible spending accountsSenior-level Full TimeRemote R16h ago
-
Active Directory | Amazon Web Services | Anomaly Detection | Artificial Intelligence | Attack surfaceEmployee networks | Employee volunteer opportunities | Generous vacation and holidays | Paid adoption leave | Paid parental leaveSenior-level Full TimeGBR Remote, United Kingdom R1d ago
-
AI Alert Interpretation | AV | AWS | Active Directory | Alert interpretationEmployee networks | Paid adoption leave | Paid parental leave | Paid vacation and holidays | Professional development opportunitiesSenior-level Full TimeAUS VC Remote, Australia R1d ago
-
AWS | Alert review | Authentication | Automation | Cloud platformEmployee networks | Paid adoption leave | Paid parental leave | Professional development opportunities | Vacation and holidaysMid-level Full TimeGBR Remote, United Kingdom R1d ago
-
Principal Engagement Lead (Remote) USD 130K-165KAWS Security | Axiom | Azure Security | Cloud platform security | Data acquisition401k matching | Floating holidays | Paid parental leave | Paid time off | Professional developmentSenior-level Full TimeRemote R1d ago
-
Consultant, Restoration and Remediation (Remote) USD 60K-90KAccess Control | Active Directory | Digital forensics | Endpoint protection | Firewalls401k matching | Floating holidays | On-call rotation support | Paid medical dental and vision premiums | Paid parental leaveMid-level Full TimeRemote R1d ago
-
ABAC | AWS CDK | AWS CloudFormation | AWS CloudTrail | AWS ConfigCorporate holidays | Flexible time off | Group dental insurance | Group medical insurance | Home internet allowanceSenior-level Full TimeRemote R1d ago
-
Cloud Threat Hunting Principal Consultant (Remote) USD 140K-195KAI prompts | AWS | Access Management | Agentic AI | AnalyticsCompetitive vacation and holidays | Comprehensive wellness programs | Employee networks | Great Place to Work certified | Paid parental leaveSenior-level Full TimeUSA TX Remote, United States R2d ago
-
AWS | Active Directory | Anomaly Detection | Artificial Intelligence | Attack surfaceEmployee networks | Paid adoption leave | Paid parental leave | Professional development opportunities | Travel up to 25 percentSenior-level Full TimeUSA TX Remote, United States R2d ago
-
AWS | Azure | Bash | CQL | Cloud SecurityEmployee networks | Paid adoption leave | Paid parental leave | Professional development opportunities | Remote workSenior-level Full TimeUSA TX Remote, United States R2d ago
-
Platform Professional Services Consultant (Remote) USD 95K-140KAWS | Active Directory | Alerts | Authentication | Automation Scripting401k | Competitive vacation and holidays | Employee networks | Limited travel | Paid adoption leaveMid-level Full TimeUSA TX Remote, United States R2d ago
-
CSIRT | Cyber Risk | Cyber Risk Management | Cybersecurity | Cybersecurity PolicyEmployee networks | Paid adoption leave | Paid parental leave | Professional development opportunities | Vacation and holidaysSenior-level Full TimeCAN ON Remote, Canada R2d ago
-
Principal Product Specialist GBP 80K-105KAccess Management | Application access | Attack prevention | Browser Security | DLPEducation reimbursement | Health plans | Parental leave options | Retirement options | Time off plansSenior-level Full TimeRemote - UK R2d ago
-
Principal Analyst - Cyber Security USD 115K-160KAdvanced persistent threat | Application Firewall | Cyber Kill Chain | Cyber Threat | Cyber Threat IntelligenceMentorship opportunities | Off-hours support | Remote or in-office flexibilitySenior-level Full TimeLas Vegas (LVSC), United States R3d ago
-
ADSI | Access Points | Active Directory | Active Directory Connect | Azure Active Directory401k matching | Disability insurance | Flexible spending account | Floating holidays | Health savings accountSenior-level Full TimeRemote R3d ago
-
Axiom | Digital forensics | ELK | EnCase | FTK401k matching | Dental insurance | Disability insurance | Flexible spending account | Floating holidaysSenior-level Full TimeRemote R3d ago
-
Microsoft Cloud Security Consultant - Remote US Only USD 120K-170KAWS GuardDuty | AWS IAM | AWS Security | AWS Security Hub | Access ManagementRemote workMid-level Full TimeRemote R3d ago
-
ASM | Attack Path Analysis | Attack surface | Attack surface management | Automation401k plan with company matching | Bereavement | Employee assistance program | Employee discount program | Health, dental, and vision careSenior-level Full TimeRemote - Nationwide, United States R3d ago
-
Cloud Security | Cortex XSIAM | Cortex XSOAR | Cybersecurity | Cybersecurity strategySenior-level Full TimeRemote - Nationwide, United States R3d ago
-
Cloud Security | Consulting | Cortex XSIAM | Cortex XSOAR | CybersecurityBereavement leave | Dental insurance | Disability insurance | Employee assistance program | Employee discount programSenior-level Full TimeCosta Rica R3d ago
-
RMF, Cybersecurity, and ATO Consultant USD 100K-140KAccess Control | Access Management | Authority to Operate | Behavior Analysis | Boundary Protection401k | Dental insurance | Jury Duty Paid Leave | Life insurance | Medical insuranceMid-level Full TimePentagon, DC R3d ago
-
Incident Response Consultant (Remote, GBR) GBP 64K-80KCybersecurity | Digital forensics | Dynamic malware analysis | Go | Incident ResponseEmployee networks | Paid adoption leave | Paid parental leave | Professional development | Travel on short noticeMid-level Full TimeGBR Remote, United Kingdom R4d ago
-
Incident Response Sr. Consultant (Remote) GBP 88K-110KAWS | Azure | Cloud Incident Response | Digital forensics | Google CloudCompetitive vacation and holidays | Paid adoption leave | Paid parental leave | Professional development opportunities | Volunteer opportunitiesSenior-level Full TimeGBR Remote, United Kingdom R4d ago
-
Solution Consultant, Networks & Cybersecurity USD 141K-212KCompetitive Analysis | Contract configuration | Cybersecurity | Industrial Automation | Network Security401k | Caregiver leave | Flexible work schedule | Health insurance | Paid time offSenior-level Full TimeUnited States of America Milwaukee (South … R4d ago
-
Snr Penetration Tester - IT/OT EUR 38K-55KActive Directory | Application Security | Automation | BGP | C#Travel opportunitiesMid-level Full TimeParis, France (Hybrid) R5d ago