Summary
CFC is a global cybersecurity company that has been protecting businesses from cyber attacks for over 20 years. They are seeking a Business Resumption Engineer to lead technical recovery efforts during high-pressure cyber incidents, ensuring critical systems are restored while managing active threats.
Responsibilities
- Lead server restoration efforts, including VM deployment, system rebuilds, and troubleshooting Active Directory issues to bring core business services back online
- Contain and remediate malware across diverse environments, ensuring threats are neutralised without disrupting recovery progress
- Deploy security applications across enterprise infrastructures to harden systems during and after incident response
- Monitor and remediate security alerts to maintain stability throughout the recovery process
- Collect forensic artifacts from multiple operating systems using approved DFIR tools
- Act as technical lead during incident response and restoration, providing clear documentation and structured progress updates
- Create and update procedures to support continuous improvement of response and recovery workflows
Skills
- Lead server restoration efforts, including VM deployment, system rebuilds, and troubleshooting Active Directory issues to bring core business services back online
- Contain and remediate malware across diverse environments, ensuring threats are neutralised without disrupting recovery progress
- Deploy security applications across enterprise infrastructures to harden systems during and after incident response
- Monitor and remediate security alerts to maintain stability throughout the recovery process
- Collect forensic artifacts from multiple operating systems using approved DFIR tools
- Act as technical lead during incident response and restoration, providing clear documentation and structured progress updates
- Create and update procedures to support continuous improvement of response and recovery workflows
- Fundamental understanding of enterprise security principles and best practices
- Knowledge of enterprise network architecture and how systems interconnect in real‑world environments
- Strong verbal and written communication skills, with the ability to collaborate effectively across all levels of an organisation
- Excellent time‑management and prioritisation abilities, especially in fast‑moving or ambiguous situations
- A resourceful, self‑directed learner able to research and apply new information quickly
- A collaborative team player who can also operate independently when required
- SentinelOne Siren certification required within 6 months of employment
- Degree qualified and 3+ years of experience are beneficial but not required
Qualifications
Must Haves
- Lead server restoration efforts, including VM deployment, system rebuilds, and troubleshooting Active Directory issues to bring core business services back online
- Contain and remediate malware across diverse environments, ensuring threats are neutralised without disrupting recovery progress
- Deploy security applications across enterprise infrastructures to harden systems during and after incident response
- Monitor and remediate security alerts to maintain stability throughout the recovery process
- Collect forensic artifacts from multiple operating systems using approved DFIR tools
- Act as technical lead during incident response and restoration, providing clear documentation and structured progress updates
- Create and update procedures to support continuous improvement of response and recovery workflows
- Fundamental understanding of enterprise security principles and best practices
- Knowledge of enterprise network architecture and how systems interconnect in real‑world environments
- Strong verbal and written communication skills, with the ability to collaborate effectively across all levels of an organisation
- Excellent time‑management and prioritisation abilities, especially in fast‑moving or ambiguous situations
- A resourceful, self‑directed learner able to research and apply new information quickly
- A collaborative team player who can also operate independently when required
- SentinelOne Siren certification required within 6 months of employment
Nice to Haves
- Degree qualified and 3+ years of experience are beneficial but not required