Talent.com
Lead Incident Response Consultant
Lead Incident Response ConsultantFortinet • Saudi Arabia
Lead Incident Response Consultant

Lead Incident Response Consultant

Fortinet • Saudi Arabia
30+ days ago
Job description

We are looking for a Lead Consultant – FortiGuard Incident Response to work in a dynamic and exciting new position reporting to the Director of Operations for FortiGuard Security Consulting Services. The analyst will work directly with members of a world class incident response and forensics team. Our team is comprised of individuals with strong knowledge in malware hunting and analysis, reverse engineering, multiple scripting languages, forensics and threat actors’ TTPs. In this very hands-on customer facing role the consultant’s main objective is to lead and manage the incident response engagements and train/mentor other security consultants. Leveraging your in-depth understanding of the threat actors’ tactics, techniques, procedures and tools as well as our flagship FortiEDR tooling you will need to quickly glean situational awareness to provide guidance to the team members as well as to the client. In addition, from time to time the candidate will help to create threat research work products such as blogs and presentations. To be successful in this role the candidate must be possess strong consulting skills, deep technical skills and able to work under tight timelines.

Responsibilities:

  • Lead IR engagements and mentoring/training junior analysts
  • Serve as the primary contact for clients during investigations, delivering clear technical and executive-level updates.
  • Continue to focus on process improvement for the customer facing incident response services

  • Conduct host-based analysis and forensic functions on Windows, Linux, and Mac OS X systems

  • Review firewall, web, database, and other log sources to identify evidence and artifacts of malicious and compromised activity

  • Leverage our FortiEDR Platform to conduct investigations to rapidly detect and analyze security threats

  • Perform memory forensics and file analysis as needed
  • Contribute to threat intelligence consumption and generation within the FortiGuard threat intelligence ecosystem.

  • Perform basic reverse engineering of threat actors’ malicious tools

  • Develop complete and informative reports and presentations for both executive and technical audience

  • Availability during nights/weekends as needed for IR engagements

Required Skills:

  • Excellent written and verbal communication skills
  • Experience interfacing with customers

  • Experience with of at least one scripting language: Shell, Ruby, Perl, Python, etc
  • Ability to data mine using YARA, RegEx or other techniques to identify new threats
  • Experienced with EnCase, FTK, X-Ways, SIFT, Splunk, Redline, Volatility, WireShark, TCPDump, and open source forensic tools a plus

  • Experience with malware analysis tools such as IDA Pro, OllyDbg, Immunity Debugger
  • Hands-on experience dealing with APT campaigns, attack Tactics, Techniques and Procedures (TTPs), memory injection techniques, static and dynamic malware analysis and malware persistence mechanism
  • Strong knowledge of operating system internals and endpoint security experience.
  • Able to communicate with both technical and executive personnel
  • Static and dynamics malware and log analysis
  • Analysis of Linux and MAC binary files and the understanding of MAC internals is a plus but not required.
  • Highly motivated, self-driven and able to work both independently and within a team
  • Able to work under pressure in time critical situations and occasional nights and weekends work
  • A solid understanding of Active Directory and how to secure is a plus

Education:

  • Bachelor’s Degree in Computer Engineering, Computer Science or related field
  • Or 10+ years’ experience with incident response and or Forensics
Create a job alert for this search

Lead Incident Response Consultant • Saudi Arabia

Similar jobs
SIEM & NDR Consultant

SIEM & NDR Consultant

Partner One Capital • Saudi Arabia
NetWitness is revolutionizing how organizations detect, investigate, and respond to cyber threats.As a leader in SIEM (Security Information and Event Management) and NDR (Network Detection and Resp...Show more
Last updated: 30+ days ago • Promoted
Senior Offensive Security Consultant – FortiGuard Proactive Services

Senior Offensive Security Consultant – FortiGuard Proactive Services

Fortinet, Inc • Saudi Arabia
Customer Engagements: Collaborate with clients to understand their security needs and objectives.Lead and deliver Red Team and penetration testing engagements, ensuring high-quality results that al...Show more
Last updated: 30+ days ago • Promoted
Senior Incident Response Consultant - Forensics & Mentoring

Senior Incident Response Consultant - Forensics & Mentoring

Fortinet, Inc. • Saudi Arabia
A leading cybersecurity company is seeking a Lead Consultant for FortiGuard Incident Response in Saudi Arabia.This role involves leading and managing incident response engagements, mentoring junior...Show more
Last updated: 30+ days ago • Promoted
Senior Cyber Incident Responder – DFIR & Forensics Expert

Senior Cyber Incident Responder – DFIR & Forensics Expert

Partner One Capital • Saudi Arabia
A leading cybersecurity firm in Saudi Arabia seeks a Cybersecurity Incident Response Specialist.You'll investigate security incidents, perform digital forensics, and analyze malware alongside seaso...Show more
Last updated: 30+ days ago • Promoted
Senior Information Security Consultant – Immediate

Senior Information Security Consultant – Immediate

Securseed • Saudi Arabia
The candidate is responsible for establishing, implementing, monitoring, reviewing, and improving all suitable sets of controls for the prevention of threats to the security of client applications ...Show more
Last updated: 30+ days ago • Promoted
Lead Incident Response Consultant

Lead Incident Response Consultant

Fortinet, Inc. • Saudi Arabia
Lead Consultant – FortiGuard Incident Response.Director of Operations for FortiGuard Security Consulting Services.The analyst will work directly with members of a world class incident response and ...Show more
Last updated: 30+ days ago • Promoted
OT Cybersecurity Lead Consultant - Saudi

OT Cybersecurity Lead Consultant - Saudi

Fortinet, Inc • Saudi Arabia
As an OT Cybersecurity Lead Consultant (Professional Services), your role and mission is to support our partners and asset owners through their digital transformation by delivering pragmatic OT cyb...Show more
Last updated: 30+ days ago • Promoted
Senior Technical Security Consultant (On-Site Project Lead, Saudi Arabia)

Senior Technical Security Consultant (On-Site Project Lead, Saudi Arabia)

AcuTech Consulting Group • Saudi Arabia
Senior Technical Security Consultant (On-Site Project Lead, Saudi Arabia).We have deep expertise in Process Safety Management (PSM), Training, Implementation, Auditing, Process Hazard Analyses (PHA...Show more
Last updated: 30+ days ago • Promoted
Incident Response Analyst & Threat Hunter

Incident Response Analyst & Threat Hunter

MIGRATIONIT • Saudi Arabia
A leading IT security firm in Saudi Arabia is seeking an experienced security incident handler.The candidate will be responsible for investigating escalated security incidents, ensuring communicati...Show more
Last updated: 30+ days ago • Promoted
Cybersecurity Incident Response Specialist

Cybersecurity Incident Response Specialist

Partner One Capital • Saudi Arabia
We’re on the hunt for a Cybersecurity Incident Response Specialist with the curiosity of a detective, the calm of a bomb disposal expert, and the analytical instincts of someone who enjoys untangli...Show more
Last updated: 30+ days ago • Promoted
Senior Specialist: Complaint Analytics & Resolution Leader

Senior Specialist: Complaint Analytics & Resolution Leader

Qiddiya Investment Company • Saudi Arabia
A leading investment firm in Saudi Arabia is seeking a Senior Specialist in Complaint Management to handle full complaint workflows, ensuring timely resolution and documentation.Candidates should h...Show more
Last updated: 4 days ago • Promoted
Managing Consultant: Authorization & Fraud Strategy

Managing Consultant: Authorization & Fraud Strategy

OA- Mastercard • Saudi Arabia
A global payment technology company is seeking a Managing Consultant for their Authorization & Fraud division in Saudi Arabia.This role involves leading client engagements, developing strategies, a...Show more
Last updated: 30+ days ago • Promoted
L2 Systems & Incident Response Engineer

L2 Systems & Incident Response Engineer

DeepSource • Saudi Arabia
A leading tech support company in Saudi Arabia is looking for an experienced L2 Support Engineer to provide advanced technical support and ensure operational stability across Linux and Windows envi...Show more
Last updated: 2 days ago • Promoted
Senior Falcon Platform Support Engineer — Incidents & Fraud Monitoring

Senior Falcon Platform Support Engineer — Incidents & Fraud Monitoring

Integrated Solutions Tawantech • Saudi Arabia
A leading technology firm in Saudi Arabia is seeking a skilled Senior Support Engineer with expertise in the FALCON Platform.Responsibilities include providing L2/L3 production support, ensuring sy...Show more
Last updated: 4 days ago • Promoted
Managing Consultant – Fraud SME, Advisors & Consulting Services

Managing Consultant – Fraud SME, Advisors & Consulting Services

OA- Mastercard • Saudi Arabia
Mastercard powers economies and empowers people in 200+ countries and territories worldwide.Together with our customers, we’re helping build a sustainable economy where everyone can prosper.We supp...Show more
Last updated: 15 days ago • Promoted
Services Presales Consultant

Services Presales Consultant

Dell • Saudi Arabia
Are you an experienced Services Presales Consultant who could provide advice for a game-changing, enterprise-wide IT Transformation service? Do you want to be a hero to Dell's customers by resolvin...Show more
Last updated: 30+ days ago • Promoted
Senior SOC Analyst: Lead Incident Response & Detection

Senior SOC Analyst: Lead Incident Response & Detection

Salla • Saudi Arabia
A technology firm in Saudi Arabia is seeking a Senior SOC Analyst to oversee advanced security monitoring and incident response across various platforms.This role requires a minimum of 5 years of e...Show more
Last updated: 30+ days ago • Promoted
Security & Threat Management Lead

Security & Threat Management Lead

Qiddiya Investment Company • Saudi Arabia
A leading investment organization in Saudi Arabia seeks a Manager – Security & Threat to lead governance of security operations and threat management across worker villages.Responsibilities include...Show more
Last updated: 4 days ago • Promoted