Response Operations Manager - Cyber Risk

2 days ago

Apply Now
Logo of Kroll

Kroll

Valuation • Compliance • Regulation • Corporate Finance • Restructuring

5001 - 10000 employees

Founded Kroll's nearly 100-year history

💸 Finance

🔐 Security

📋 Compliance

Description

• Kroll’s Cyber Risk team handles over 2,000 cases annually, assisting clients with cybersecurity risk management • Engage in incident response, risk assessments, and complex forensic investigations to provide clarity and support to clients. • Lead a team of Response Analysts, motivating and developing talent while managing operational processes and procedures.

Requirements

• Ability to respond rapidly, multi-task, and communicate effectively both verbally and in writing with customers, team members, and engagement managers. • Highly motivated, tenacious, assertive problem solver with a desire to analyze root cause and reach effective conclusions to active intrusions and incidents on an ongoing basis both individually and as part of larger response teams. • Solid understanding of Windows operating system fundamentals, architecture (File System, registry, processes, binaries, DLL’s, etc.) and administration concepts. Similar understanding of MacOS and/or Linux a plus. • Prior experience actively using endpoint threat detection and response (EDR) products to investigate threats such as Sentinel One, Crowdstrike Falcon, VMWare Carbon Black, Windows Defender ATP, Cortex XDR, Trend Micro XDR, or others. • Understanding of common threat actor techniques, malware behavior and persistence mechanisms. • Working knowledge of various scripting languages and tools (PowerShell, Python, VB, Yara) • Working knowledge of TCP/IP and related networking concepts. • Prior experience using Splunk or other SIEM solutions, intrusion detection solutions, or related security products. • Relevant cyber security certifications including CISSP, GCIA, GCIH, GCFA, GMON, or GREM a plus. • Excellent written and verbal communication skills • Availability for occasional after-hours, weekends, and/or holiday work in response to active incidents. • Bachelor’s degree or higher in Computer Science, Cyber Security, Computer Engineering, or similar technical degree. • Minimum 5 years’ experience in threat hunting, detection, and response or equivalent experience.

Apply Now

Similar Jobs

December 13

Pfizer

10,000+ employees

Lead regional study operations for Pfizer, overseeing startup, execution, and closeout of clinical trials.

December 11

Join JumpCloud as a Marketing Operations professional to enhance marketing strategies remotely. Shape campaign effectiveness while managing comprehensive marketing operations.

December 8

Seeking Marketing Operations Manager to drive inbound lead traffic using Marketo and SFDC integration. Collaborate across teams to optimize marketing best practices.

December 6

Join InfraCloud as an MLOps Engineer, deploying and managing AI models in various environments. Focus on enhancing AI operations and ensuring compliance with best practices.

December 3

Oversee Product Operations at HighLevel, managing a remote team to enhance efficiency.

Built by Lior Neu-ner. I'd love to hear your feedback — Get in touch via DM or lior@remoterocketship.com