Digital Forensics & Incident Response Analyst providing real-time threat analysis and mitigation at Cayuse. Engaging in cybersecurity initiatives while leveraging extensive forensics experience.
Responsibilities
Provide real-time analysis of escalated security events to support response efforts.
Analyze data from endpoints, EDR systems, firewalls, and servers to identify, contain, and remediate suspicious activity.
Analyze malicious scripts and code to mitigate potential threats.
Engage in Threat Hunting operations to proactively identify and mitigate threats.
Conduct predictive or reactive analyses on security measures to support cybersecurity initiatives.
Create system images or capture network settings from IT environments to preserve as evidence.
Forensically duplicate digital evidence for data recovery and analysis procedures.
Perform web service network traffic analysis to detect anomalies, such as unusual events or trends.
Contribute to the analysis of cyber threat intelligence and apply findings to bolster defensive actions.
Assist in identifying root causes, mining lessons learned, and reinforcing security measures after incidents.
Requirements
Bachelor's degree (or equivalent experience) in Cybersecurity, Information Technology, or a related field.
Minimum of 3 years of relevant experience in direct digital forensics or incident response within large enterprise federal government or corporate environments.
Active Top-Secret Clearance with SCI Eligibility.
Must be able to pass a background check and CI Polygraph.
Skilled in the use of Incident Response tools such as Splunk Enterprise Security and Microsoft Defender for Endpoint.
Well-versed in employing forensic tools and suites such as Magnet Axiom, Exterro FTK, Cellebrite Physical Analyzer, Kape, and Open-Source tools.
Adept at conducting open-source research to identify and understand active or potential threats.
Highly regarded certifications include GIAC Continuous Monitoring Certification (GMON) and others.
Benefits
Medical, Dental and Vision Insurance
Wellness Program
Flexible Spending Accounts (Healthcare, Dependent Care, Commuter)
Short-Term and Long-Term Disability options
Basic Life and AD&D Insurance (Company Provided)
Voluntary Life and AD&D options
401(k) Retirement Savings Plan with matching after one year
Paid Time Off
Job title
Digital Forensics & Incident Response Analyst – Mid-Level
Senior Associate in Cybersecurity at PwC, managing cybersecurity incidents and mentoring junior team members to deliver quality solutions. Collaborating with clients to protect sensitive data against cyber threats.
Analyst supporting Controls Testing and Data Repair in regulated financial services. Executing testing activities and maintaining governance artifacts for data repair events.
Incident and Problem Manager at SONDA focusing on prioritizing and managing incidents. Collaborating on root cause analysis and prioritizing user communication in a technology - driven environment.
Incident Manager coordinating critical incidents and technical solutions in a leading technology company. Documenting and managing changes to improve service quality and efficiency.
Engineer II in Cyber Incident Response responsible for detecting and responding to cybersecurity incidents. Collaborating with global teams to minimize business impact and strengthen detection capabilities.
Senior Cyber Incident Response Analyst managing cybersecurity incidents for clients. Focused on proactive threat hunting, incident response, and digital forensics in a hybrid environment.
Incident Response expert managing IT security incidents across teams in a global retail company. Focusing on advanced incident response and continual improvement in a dynamic work environment.
Incident Response Analyst managing complex security incidents and leading response teams at Vanguard. Develop and implement incident action plans for security breaches and vulnerabilities.
Cyber Incident Response Analyst supporting 24/7 cybersecurity incident management and response operations for client. Engaging in case management, triage, and operational coordination activities.