Digital Forensics Incident Response Consultant

Remote Full-time
About the position Responsibilities • Perform incident response and digital forensic activities for PS engagements. • Deliver and execute PS engagements focused on helping customers manage and investigate cybersecurity incidents. • Conduct log reviews including structured (CSV, TSV, JSON) and unstructured (syslog) data. • Perform Windows, Linux, Mac, and mobile forensics investigations. • Utilize SIEM solutions such as Splunk, Sentinel, ELK for investigations. • Engage in threat hunting using EDR solutions such as CrowdStrike, SentinelOne, Trend Micro.• Apply bolthires cloud skills such as M365 and/or Azure. • Utilize AWS cloud skills such as GuardDuty, CloudWatch, IAM, WAF. • Conduct global or onsite security assessments, possibly working in customer's office/environment. • Attend periodical meetings to discuss ongoing security initiatives and their progress. • Advise and work on security initiatives alongside the customer. Requirements • Bachelor's degree or four or more years of work experience. • Four or more years of relevant work experience in a cybersecurity capacity.• Experience responding to cybersecurity incidents, triaging, and/or investigating cybersecurity incidents. Nice-to-haves • One or more technical certifications in areas such as incident handling, forensic analysis, reverse malware engineering or forensic tool-specific training. • Experience working in an enterprise environment. • Experience working with clients to proactively provide cybersecurity services (tabletops, incident response training, etc.). • Experience in network infrastructure, communication protocols, and network log analysis.• Experience in packet capture and TCP/UDP traffic flow analysis. • Knowledge of computer exploitation methodologies. • Current information security solutions and technologies, including network and host based products. • Experience in using forensic tools such as EnCase, FTK, Sleuth Kit, Volatility, Axiom, Cellebrite, Black Light, X-Ways, or similar. • Experience in SIEM, EDR, IDS, and DLP technologies, memory and volatile data analysis. • Knowledge of enterprise cloud infrastructure (AWS, G-Suite, O365, Azure, etc.).• Knowledge of Command line tooling (grep, sed, awk, powershell, etc.). • Ability to function in a dynamic environment, managing multiple priorities and deadlines. • Ability to make recommendations to remediate complex security threats. • Ability to synthesize data from multiple sources and present concise, relevant information to non-technical audiences. • Excellent communication skills with the ability to present to a variety of audiences. • Ability to set and manage competing expectations and priorities with technical and senior stakeholders.• Strong analytic, qualitative and quantitative reasoning skills. • Strong creative problem-solving abilities and ability to share knowledge with colleagues. Benefits • Hybrid work environment with defined work location including work from home. • Minimum eight assigned office days per month. Apply tot his job Apply tot his job
Apply Now

Similar Opportunities

Senior Forensics Consultant (Remote)

Remote Full-time

Palo Alto Networks - Associate Consultant - Digital Forensics and Incident Response, application via RippleMatch

Remote Full-time

Managing Consultant, Forensics

Remote Full-time

Senior Managing Director, Risk Advisory, Global Investigations & Forensic Accounting

Remote Full-time

Accountant/Auditor 4-Human Services-Bureau for Medical Services-Kanawha Co.

Remote Full-time

Job Post — Senior Flutter / React Native Mobile Developer (iOS & Android)

Remote Full-time

Senior Software Engineer - Flutter

Remote Full-time

React Native / Flutter Developer/ Android Lead Developer-100% Remote

Remote Full-time

FLUTTER DEVELOPER (REMOTE/USA) - GDM (Gray Media Group)

Remote Full-time

Guest Environment Expert- Houseman- Flexible Schedule

Remote Full-time

Experienced Data Entry and Customer Support Specialist – arenaflex Career Opportunity in Data Analysis and Customer Service

Remote Full-time

Experienced Remote Customer Support Specialist – Deliver Exceptional Travel Experiences with arenaflex

Remote Full-time

Experienced Part-Time Data Entry Specialist – Remote Operations at arenaflex: Unlock a Rewarding Career in the Airline Industry

Remote Full-time

Experienced Virtual Assistant – Data Entry Specialist at arenaflex

Remote Full-time

VP Diversity, Inclusion & Community Engagement

Remote Full-time

Lead Paid Media Planner [Remote]

Remote Full-time

[Remote] Senior IT Security Engineer

Remote Full-time

Remote - BSA/AML Operations Lead Analyst

Remote Full-time

Platform Security Engineer

Remote Full-time

Experienced Remote Customer Service Representative – Delivering Exceptional Support and Driving Customer Satisfaction in a Dynamic and Innovative Environment

Remote Full-time
← Back to Home