Senior Advisor, Incident Response
New
S
SophosCybersecurity
United StatesFull-TimeSenior
Salary$150,000 to $250,000 / year
Apply NowOpens the employer's application page
Job Details
- Experience
- 5 years
- Required Skills
- AWSAzureLinuxCRM
Requirements
- At least 5 years of professional experience with managed threat response and remediation.
- 5 years of experience with threat actor tactics, techniques, and procedures (TTPs), identifying and analyzing vulnerabilities.
- 5 years of experience in digital forensics, network forensics, and security practices.
- 5 years of experience managing incident response engagements, including documentation and case handling in CRM systems.
- 5 years of experience with encryption methods and Multi-Factor Authentication (MFA).
- 5 years of experience developing end-user documentation.
- 5 years of experience with firewall management and information security protocols.
- 5 years of experience in Microsoft Windows, Linux, and Unix system administration.
- 5 years of experience with network security infrastructure (load balancers, reverse proxies, web proxies).
- 5 years of experience provisioning cloud infrastructure using AWS and Azure and troubleshooting cloud issues.
- 5 years of experience provisioning forensic tooling for Endpoint Detection & Response (EDR) solutions.
- 5 years of experience leading Emergency Incident Response scoping calls.
Responsibilities
- Manage intake, processing, and disposition of physical devices and digital media for incident response, ensuring proper chain of custody and forensic imaging.
- Support physical and virtual infrastructure for customer engagement and respond to requests related to engagement data.
- Serve as the primary Emergency Incident Response (EIR) Intake consultant, handling inbound calls, verifying service levels, and leading scoping calls.
- Coordinate commercial paperwork including Engagement Work Orders (EWO) and Statements of Work (SOW).
- Manage initial evidence intake and provision forensic tooling, such as Endpoint Detection & Response (EDR) agents.
- Provision and troubleshoot cloud analysis Virtual Machines (VMs) and maintain lab equipment.
- Collaborate with cross-functional teams to implement and troubleshoot security solutions.
- Document processes and procedures related to digital media lifecycle management and forensic imaging.
View Full Description & ApplyYou'll be redirected to the employer's site