Company

CoalitionSee more

addressAddressWest Virginia, United States
type Form of workFull-Time
CategoryInformation Technology

Job description

Responsibilities
  • Drive Incident Response engagements to guide our customers through forensic investigations, contain security incidents, and provide guidance on longer term remediation recommendations.
  • Coordinate and guide Incident Response assistance from team members and vendors
  • Investigate customer data breaches and malicious activity leveraging forensics tools; analyze Windows, Linux, and Mac OS X systems to identify Indicators of Compromise (IOCs); examine firewall, web, database, and other log sources to identify evidence of malicious activity.
  • Provide case reporting as required across internal and external audiences with the appropriate technical level of detail for threat researchers and/or business customers.
  • Evaluate customer security programs, technologies, controls, and business environments; recommend and develop enhancements.
  • Provide recommendations on solutions to help customers navigate information security risk.
  • Track emerging security practices and contribute to building internal processes, and our various products.
  • Stay abreast of the current regulatory environment, industry trends and related implications.
Skills and Qualifications
  • Bachelor's Degree in Computer Science, Information Security, Engineering, or other relevant subjects.
  • 5+ years of Incident Response or digital forensics experience.
  • Demonstrated practiced knowledge of the lifecycle of network threats, attacks, attack vectors, and methods of exploitation with a knowledge of intrusion set tactics, techniques, and procedures.
  • Knowledge of TCP/IP Protocols, network assessment and network/security applications, including log and network traffic capture assessment.
  • Experience with Velociraptor, Axiom, FTK, SIFT, Volatility, ELK, WireShark, Plaso, Skadi or other open source forensic/log analysis/network assessment tools.
  • Experience with EDR tools like CrowdStrike Falcon, Carbon Black, Sentinel One, etc.
  • Knowledge of industry standard frameworks - NIST, HIPAA, PCI.
  • Self-motivated; entrepreneurial spirit; comfortable working in a dynamic environment.
  • Strong interactive communication skills (verbal & written).
  • Aptitude to learn technical concepts/terms, and aptitude to guide multiple tasks/projects simultaneously.
  • Experience deploying tools to AWS and familiarity using Cloud based platform for assessment.
Additional Skills and Qualifications
  • Excellent critical thinking skills with the experience to diagnose and troubleshoot technical issues
  • Customer oriented with a strong interest in consumer satisfaction
  • Experience to learn new technologies and concepts and comfortable using command-line interfaces
  • Experience guiding teams of highly motivated analysts
  • Communicate highly technical information to a non-technical audience
  • Experience to handle and work with consumers through high priority scenarios
  • Knowledge in project management
  • Foster a positive work environment and attitude
  • Flexibility with your work schedule in times of urgent response needs
  • Contribute to thought guidance within the DFIR industry

Bonus Points 

  • GCIH, GCIA, GCFA, GCFE, ACE, EnCE, CFCE, CISSP, or similar
  • Security policy, governance, privacy or regulatory experience (e.g., NIST, ISO, HIPAA, PCI).
  • Securing cloud based platforms (Microsoft Azure, Amazon AWS, etc.).
  • Experience with system hardening procedures for Windows, Linux, Unix is helpful. Knowledge and/or experience with Nmap, Nessus, Nexpose, Qualys, Burp, Kali, Metasploit, Meterpreter, or other offensive tools is helpful.
  • Knowledge of scripting for development of security tools and industry frameworks is helpful.
  • SCADA/Control systems network experience is a plus.

Compensation

Our compensation reflects the cost of labor across several US geographic markets. The US base salary for this position ranges from $140,000/year in our lowest geographic market up to $215,000/year in our highest geographic market. Consistent with applicable laws, an employee's pay within this range is based on a number of factors, which include but are not limited to relevant education, skills, job-related knowledge, qualifications, work experience, credentials, and/or geographic location. Your recruiter can share more on target salary for your location during the interview process. Coalition, Inc. reserves the right to modify this range as needed.

Perks

  • 100% medical, dental and vision coverage
  • Flexible PTO policy
  • Annual home office stipend and WeWork access
  • Mental & physical health wellness programs (One Medical, Headspace, Gympass, and more)!
  • Competitive compensation and opportunity for advancement

#LI-Remote

 

Refer code: 6907090. Coalition - The previous day - 2023-12-12 06:25

Coalition

West Virginia, United States
Popular Incident Response jobs in top cities

Share jobs with friends

Related jobs

Incident Response Lead

Incident Response Manager

Stripe

United States

2 days ago - seen

Tier 2 Incident Response Shift Lead

Peraton

United States

a week ago - seen

Incident Response Senior Analyst

Peraton

Quantico, VA

a week ago - seen

Senior Analyst - Incident Response

Live Nation Entertainment

Texas, United States

a week ago - seen

Incident Response Senior Attorney - Remote

Stott And May

175000

Washington, United States

2 weeks ago - seen

Cyber Incident Response Team (CIRT) Monitoring Analyst

Peraton

Beltsville, MD

2 weeks ago - seen

Lead Incident Response Analyst

Ultimate Kronos Group

Atlanta, GA

2 weeks ago - seen

Senior Advisor, Incident Response Consultant

Dell Technologies

Remote - California, United States

3 weeks ago - seen

Consultant, Incident Response Consulting - Secureworks

Dell Technologies

Remote - Connecticut, United States

3 weeks ago - seen

Staff, Incident Response Engineer - AI Red Team

Bitsight

RESTON, VA

3 weeks ago - seen

Digital Forensic Incident Response Analyst

Booz Allen Hamilton

Washington, United States

3 weeks ago - seen

EOC Monitoring Incident Response Analyst

Peraton

Sterling, VA

4 weeks ago - seen

Associate - Incident Response

Stott And May

350000

New York, NY

4 weeks ago - seen

Incident Response Analyst

Onezero Solutions

Washington, DC

4 weeks ago - seen

Incident Response Senior Associate

Dtcc

Jersey City, NJ

4 weeks ago - seen

Incident Response Administrator

York University

New York, NY

4 weeks ago - seen

Principle Security Incident Response Analyst

Oracle

Colorado, United States

a month ago - seen