Sr Digital Forensics and Incident Response (DFIR) Analyst

Remote Full-time
Our client is seeking a Sr Digital Forensics and Incident Response (DFIR) Analyst to support Corporate Cybersecurity Operations. The person hired into this position will be assigned to our clients Cybersecurity Operations Center (CSOC). The job duties include leadership, technical mentoring, and performing cyber data analytics at scale. Senior Incident Response Analyst will guide employment of detection rules (SIEM, EDR, YARA, etc.), hunt for advanced attackers, and review the technical work of junior and mid-level team members. Ideal candidates will be deadline oriented, comfortable making decisions, and able to consistently produce high quality work. The Sr DFIR Analyst will work closely with the CSOC Manager as required to produce detailed analysis of security events, support business units, and maintain a spirit of collaboration with IT Team Leaders. Responsibilities:Protect the organization’s IT assets as a member of the Cybersecurity Operations Center (CSOC)Implement DFIR strategies to identify risks and reduce gaps in network and host security controlsCollaborate with IT Ops and end users to proactively thwart intrusions and support incident responsePrepare CSOC reports that document security incidents from discovery to remediation Support vulnerability and cyber risk management functions by continually monitoring threats and exposures Test and evaluate technology solutions in preparation for small and large-scale deploymentsPeriodic on-call responsibilitiesQualifications:Bachelor’s Degree in Cybersecurity-related field or equivalent CSOC work experienceMinimum 6 years’ experience with Splunk Enterprise Security to include leading optimization projects focused on data management, enhanced monitoring, and automation. Splunk Certified Power User or other advanced Splunk Certification is a plus.Minimum 6 years’ DFIR experience using Endpoint Detection and Response (EDR) technologyMinimum 6 years’ experience performing forensic analysis on various types of evidence, such as disk, memory, network, and cloud artifacts. Proficient with common scripting and programming languagesExperience with DoD Risk Management FrameworksIn-depth understanding of common security controls for Windows, Linux, and network equipmentStrong attention to detail, time management skills, and professional demeanorUS Citizenship Apply tot his job
Apply Now →

Similar Jobs

Senior FP&A Analyst - SGA

Remote Full-time

Sr. Front End Developer, 100% Remote

Remote Full-time

VP & Associate General Counsel, Clinical Operations

Remote Full-time

`Fully Remote Position (No Exp. Needed – Start ASAP)

Remote Full-time

Freelance Franchise Development Consultant (United States)

Remote Full-time

Manufacturing, Automation & Operations Optimization Consultant

Remote Full-time

Monday.com Enterprise Consultant to Design & Build Product Lifecycle Management System

Remote Full-time

Associate Legal Counsel

Remote Full-time

[Remote] Senior Frontend Engineer (Experimentation & Growth)@ PEOPLE10 (Remote)

Remote Full-time

[Remote] Payroll/HR Clerk - Fully Remote

Remote Full-time

[Remote] Network Developer 5

Remote Full-time

Experienced Customer Service Representative - Work from Home Opportunity at blithequark

Remote Full-time

Experienced Entry-Level Remote Live Chat Operator and Customer Support Specialist for Dynamic Online Interactions

Remote Full-time

Experienced US-Based Remote Data Entry Specialist – Accurate Data Management and Entry for Innovative arenaflex Team

Remote Full-time

Senior Partnerships Development Manager

Remote Full-time

Director, Capital Markets Regulatory Policy Advisor (Hybrid)

Remote Full-time

[Remote] Pharmacist - Clinical Pharmacist Advisor Medicare

Remote Full-time

Organ Placement Coordinator- Night Shift

Remote Full-time

**Experienced Customer Service Representative – Remote Opportunity with blithequark**

Remote Full-time

Sr. Manager, Business Process Owner, Revenue Management(Remote)

Remote Full-time
← Back to Home