Lead Digital Forensics Incident Response Analyst

October 10

Apply Now
Logo of Thermo Fisher Scientific

Thermo Fisher Scientific

Analytical Instruments • Laboratory Supply Chain Programs and eCommerce • Laboratory Equipment • Lab Services • Specialty Diagnostics

10,000+

Description

• Conduct digital forensic investigations in response to high or critical security incidents, independently or as part of a team. • Develop and share relevant threat intelligence with team members to improve existing detection and response capabilities. • Lead the development of forensic playbooks and scalable procedures, recommending technical solutions to reduce risk across the enterprise. • Develop solutions and strategies to build and deploy scalable tools for incident response for the team and the global SOC. • Act as a mentor and provide guidance to junior team members. • Apply your knowledge of the current and emerging threat landscape to active threat hunting exercises.

Requirements

• Bachelor’s Degree or equivalent experience in cybersecurity, computer science, engineering, or another relevant field • Relevant technical certifications a plus, such as GCIH, GCFA, GCFE, GREM, GCTI, and others • Extensive experience in combined cybersecurity, particularly in forensics, architecture, and incident response • Proficiency in using tools like Magnet Axiom, AccessData FTK, Encase, X-Ways, The Sleuth Kit/Autopsy, Volatility, Windows, Linux, and MacOS • Experience automating workflows with PowerShell, Bash, or Python • Familiarity with the TCP/IP suite of protocols • Demonstrable experience leading forensic investigations based on EDR, XDR, memory, disk, and log-based evidence • Experience conducting static and dynamic malware reverse engineering • In-depth knowledge of Cloud, Web Application, and API security, including conducting forensic investigations on their technology stacks • Ability to explain technical details to business leadership with a focus on encouraging technical changes or investment where appropriate

Benefits

• competitive remuneration • annual incentive plan bonus • healthcare • a range of employee benefits

Apply Now

Similar Jobs

October 1

Capita

10,000+

Senior SOC Analyst managing security incidents for Capita’s Cyber Transformation Project.

September 27

CertiK

201 - 500

Deliver CertiK's KYC badge product while conducting background investigations.

September 25

Cifas

51 - 200

Agile development of technology solutions for new and existing products at Cifas.

September 23

ARBITRUM

51 - 200

Support grant compliance and collaboration at Arbitrum Foundation.

Built by Lior Neu-ner. I'd love to hear your feedback — Get in touch via DM or lior@remoterocketship.com