CYE logo
CYE
Posted 150 days agoVerified live 1d ago

DFIR

Brief overview

United StatesIn-person
1+ yrsMinimum
Incident responseDigital forensics in cloud environmentsNetwork forensics and analysisThreat huntingEnglish communication skills (written and verbal)

About the company

CYE is a cybersecurity risk quantification platform that offers organizational assessment, security, and advice services.

Job description

Summary

Cye is expanding its DFIR team, which is responsible for responding to clients' cyber incidents and crises. As a DFIR team member, you will engage in hands-on security research and investigations to help customers understand and mitigate cyber threats and attacks.

Responsibilities

  • Perform incident response lifecycle and real-time activities, including detection and analysis, containment and eradication, and recovery
  • Perform incident response in a cloud environment (Azure, AWS etc.)
  • Perform digital forensics investigations
  • Research and analyze tactics, techniques, and procedures (TTPs) used by malicious actors
  • Perform hunt-evil and find-evil activities for proactively detecting attacks
  • Work closely with our in-house red team, CTI, and cyber architect teams
  • Work closely with worldwide companies, CISOs, and technology experts

Skills

  • Must be based in the Central or Eastern regions of the US
  • 1-2 years of experience as a DFIR team member
  • Experience with performing digital forensics in a cloud environment
  • Experience with performing digital forensics of Windows-based and/or Linux-based platforms, network forensics, and analysis
  • Thorough understanding of threat hunting models, as well as cyber threat intelligence, including TTP and IoCs extraction and mapping
  • Experience with research and data analysis of large DBs via Splunk, Elasticsearch, SQL, or VQL
  • Strong understanding of targeted attacks; able to create customized tactical remediation plans
  • Good written and verbal English communication skills

Qualifications

Must Haves

  • Must be based in the Central or Eastern regions of the US
  • 1-2 years of experience as a DFIR team member
  • Experience with performing digital forensics in a cloud environment
  • Experience with performing digital forensics of Windows-based and/or Linux-based platforms, network forensics, and analysis
  • Thorough understanding of threat hunting models, as well as cyber threat intelligence, including TTP and IoCs extraction and mapping
  • Experience with research and data analysis of large DBs via Splunk, Elasticsearch, SQL, or VQL
  • Strong understanding of targeted attacks; able to create customized tactical remediation plans
  • Good written and verbal English communication skills

More jobs like this