Minimum qualifications:
Bachelor's degree in Computer Science, Information Systems, Cybersecurity, related technical field, or equivalent practical experience.
4 years of experience working incident response investigations, analysis, and containment actions.
4 years of experience with network forensics, malware triage analysis, cloud forensics, and disk memory forensics with operating systems.
Ability to travel 30%.
Preferred qualifications: Certifications in cloud platforms.
Experience in cloud incident response or forensics.
Ability to communicate investigative findings and strategies to technical staff, executive leadership, legal counsel, and internal and external clients.
Excellent communication skills, with the ability to develop documentation and explain technical details in a concise manner.
Excellent time and project management skills.
About the job
As a Security Consultant, you will be responsible for helping clients effectively prepare for, proactively mitigate, and detect and respond to cyber security threats. Security Consultants have an understanding of computer science, operating system functionality and networking, cloud services, corporate network environments and how to apply this knowledge to cyber security threats.
In this role, you will assist clients in navigating technically complex and high-profile incidents, performing forensic analysis, threat hunting, and malware triage. You'll also test client networks, applications and devices by emulating the latest techniques to help them defend against threats, and will be the technical advocate for information security requirements and provide an in-depth understanding of the information security domain. You will also articulate and present complex concepts to business stakeholders, executive leadership, and technical contributors and successfully lead complex engagements alongside cross functional teams.
In this role, you will understand existing and emerging threat actors, and identify rapidly changing tools, tactics, and procedures of attackers. You will understand evolving attacker behavior and motivations, participate and manage large client-facing projects, and train and mentor other security consultants.
Mandiant is a recognized leader in dynamic cyber defense, threat intelligence and incident response services. By scaling decades of frontline experience, Mandiant helps organizations to be confident in their readiness to defend against and respond to cyber threats. Mandiant is now part of Google Cloud.
Responsibilities
Lead large, client-facing incident response engagements, and examine cloud, endpoint, and network-based sources of evidence. Collaborate with internal and customer teams to investigate and contain incidents. Recognize and codify attacker Tools, Tactics, and Procedures (TTPs) and Indicators of Compromise (IOCs) that can be applied to current and future investigations. Build scripts, tools, or methodologies to enhance Mandiant's incident investigation processes. Develop and present comprehensive and accurate reports, trainings, and presentations for both technical and executive audiences.