DFIR
תיאור המשרה
our DFIR team is responsible for responding to our clients' cyber incidents and crises.Our group is expanding. If you see yourself in the front line of the cybersecurity domain as a digital forensic and incident response (DFIR) talent, your place is with us. As a DFIR team member, you will participate in hands-on security research and investigations, helping our customers understand and mitigate cyber threats and attacks.Responsibilities:Perform incident response lifecycle and real-time activities, including detection and analysis, containment and eradication, and recoveryPerform incident response in a cloud environment (Azure, AWS etc.).Perform digital forensics investigationsResearch and analyze tactics, techniques, and procedures (TTPs) used by malicious actorsPerform hunt-evil and find-evil activities for proactively detecting attacksWork closely with our in-house red team, CTI, and cyber architect teamsWork closely with worldwide companies, CISOs, and technology expertsRequirements: 2-3 years of experience as a DFIR team memberExperience with performing digital forensics in a cloud environmentExperience with performing digital forensics of Windows-based and/or Linux-based platforms, network forensics, and analysisThorough understanding of threat hunting models, as well as cyber threat intelligence, including TTP and IoCs extraction and mappingExperience with research and data analysis of large DBs via Splunk, Elasticsearch, SQL, or VQLStrong understanding of targeted attacks; able to create customized tactical remediation plansGood written and verbal English communication skillsThis position is open to all candidates.
מתעניינים במשרה הזו?