• Home
  • Jobs
  • Companies & Ventures
  • Economic Snapshots
  • GreenSee
  • Travel & Leisure
Add listing
Sign in or Register
Add listing

Unlimited Response Senior Advisor (Romania)

Dell Technologies

  • Apply on company site
  • Details
  • Company
  • prev
  • next
  • Share
  • Bookmark
  • prev
  • next
Description

Role Overview

The Incident Response Senior Advisor works with consultants and customers in the growing area of cybersecurity incident response management. This role supports a team of consultants delivering reactive services focused on management of active MDR incident response engagements, as well as delivering response actions to customers in a consultant role on an as-needed bases. Responding to incidents includes helping customers manage technical and non-technical aspects of managing response to complex, large-scale incidents; conducting detailed technical analysis to identify the scope and magnitude security incident activity, develop timelines of activity, develop remediation recommendations and plans.

The Incident Response Senior Advisor works with incident responders, security analysts, and customers in the growing area of cybersecurity incident response management. This role operates as a key member of an incident response team delivering emergency services focused on management of active Managed Extended Detection and Response (MXDR) incident response engagements. Responding to incidents includes helping customers manage technical and non-technical aspects of managing response to complex, large-scale incidents; conducting detailed technical analysis to identify the scope and magnitude security incident activity, develop timelines of activity, develop remediation recommendations, mitigation plans, and incident reporting.

Role Responsibilities

  • Team member will operate as initial escalation path for incident response escalations originating from Secureworks MXDR service
  • Review security-related events and assess their risk and validity based on available telemetry from network, endpoint, and global threat intelligence information to provide customers with concise, detailed, and well-written incident reports, root causes identification, and remediation recommendations
  • Perform technical analysis and develop technical conclusions based on analysis of evidence
  • Serve as subject matter expert in incident response and digital forensics
  • Perform complex incident response technical analysis and develop technical conclusions based on analysis of evidence; review analysis and conclusions of other consultants
  • Document findings and develop incident response remediation recommendations to present both orally and in written reports for customers
  • Develop playbooks based on customer needs
  • Use the Secureworks platform to proactively hunt for and investigate activity within the customer environment

Requirements

  • 6+ years of advanced security and forensic experience with two or more major operating systems: Microsoft: 8, 8.1, 7, Vista, XP, Server, 2012, 2008, 2003, 2000; OS X; Unix; Solaris and Linux variants; iOS; Android
  • Familiarity with Jupyter notebooks and python development for forensic analysis
  • Strong security analysis skills of networking data and traffic
  • Understanding of threat hunting methodologies using both endpoint and network-based telemetry
  • Strong experience with multiple forensic tools (such as Encase, FTK, X-Ways, F-Response, Volatility, Blacklight, MacQuisition, Recon)
  • Operational experience with security tools (firewalls, IDS, IPS, SIEMs, proxies, VPNs)
  • Understanding of vulnerabilities and tools used to discover/analyse/exploit vulnerabilities (Nessus, Nmap, Metasploit)
  • Ability to utilize Markdown markup language to document analysis findings and provide results to customer in an organized manner
  • Strong technical communication skills (oral and written) including experience briefing executive management and desire to work with customers to solve complex security issues, including at times in crisis situations
  • Understanding of at least one Compliance Framework Experience: ISO 27001/2, FISMA, PCI, HITRUST, NIST 800-series, CoBIT
  • Ability to have consultative conversations with the customer focused on service delivery concepts, processes, and technical investigations

Preferred Skills

  • 8+ years of information security experience.
  • 1+ years of Python development with Jupyter notebook experience
  • Bachelor's degree, preferably in computer science, information systems, information assurance; or equivalent work experience
  •  Technical or professional certifications such as GCFA, GCTD, GCFR, Microsoft 365/Azure, and AWS
Vacancy type
  • Freelance
Industry
  • Administrative Support
Job start date
  • 30/09/2024
Location
  • Romania

    Get Directions

You May Also Be Interested In

Product Manager Save & Invest

  • WOW Business Consulting
  • business
  • Quick view
  • Bookmark
  • Add to comparison
  • Brussels, Belgium

Customer Support Representative

  • Eaton
  • Customer Support
  • Quick view
  • Bookmark
  • Add to comparison
  • Belgrade, Serbia

Quotation Engineer

  • Eaton
  • Engineering
  • Quick view
  • Bookmark
  • Add to comparison
  • Serbia

Facebook Instagram Linkedin Tiktok Link

Sitemap

Menu
  • Home
  • Jobs
  • Companies & Ventures
  • Economic Snapshots
  • GreenSee
  • Travel & Leisure

About Us

Menu
  • About
  • Contact Us
  • Editorial Policy
  • Environmental Responsibility
  • Cookie Policy (EU)

Join our community

Get weekly news about career opportunities in South East Europe. Sign up now and don't miss out!

© All Rights Reserved. Developed by: Tivius

Cart

  • Facebook
  • X
  • WhatsApp
  • LinkedIn
  • Reddit
  • Copy link
Manage Cookie Consent
To provide the best experiences, we use technologies like cookies to store and/or access device information. Consenting to these technologies will allow us to process data such as browsing behavior or unique IDs on this site. Not consenting or withdrawing consent, may adversely affect certain features and functions.
Functional Always active
The technical storage or access is strictly necessary for the legitimate purpose of enabling the use of a specific service explicitly requested by the subscriber or user, or for the sole purpose of carrying out the transmission of a communication over an electronic communications network.
Preferences
The technical storage or access is necessary for the legitimate purpose of storing preferences that are not requested by the subscriber or user.
Statistics
The technical storage or access that is used exclusively for statistical purposes. The technical storage or access that is used exclusively for anonymous statistical purposes. Without a subpoena, voluntary compliance on the part of your Internet Service Provider, or additional records from a third party, information stored or retrieved for this purpose alone cannot usually be used to identify you.
Marketing
The technical storage or access is required to create user profiles to send advertising, or to track the user on a website or across several websites for similar marketing purposes.
Manage options Manage services Manage {vendor_count} vendors Read more about these purposes
View preferences
{title} {title} {title}