
Digital Forensics & Incident Response
Full time Aurigagulf posted 1 month ago in IT & Telecom Shortlist Email JobJob Detail
-
Offered Salary 12000
-
Experience 3 Years
-
Industry Information Technology
-
Qualifications Degree Bachelor
Job Description
Job Description
- Forensically analyze end-user systems and servers found to have possible indicators of compromise
- Perform forensics on network, host, memory, and other artifacts and extract IOCs and TTP
- Ability to perform threat intelligence activities using open source tools
- Research the latest security best practices and technologies
- Analysis of artifacts collected during a security incident/forensic analysis
- Interface and communicate with server owners, system custodians, and IT contacts to pursue security incident response activities
- Regularly provide reporting and metrics on casework
- Deep understanding of security threats, vulnerabilities, and incident response
- Threat hunting within the organization to continuously look for venerability’s and work with various teams to fix the venerability’s
- Recover data from computer hard drives and other data storage devices that have been deleted, damaged, or otherwise manipulated
- Use forensic tools and investigative methods to find specific electronic data
- Ability to process logs to analyze access attempts or activity
- Document each stage of the investigation and maintain a focus on case logs, repeatability, and chain of custody
- Present findings via written reports and orally to key stakeholders in clear and concise language
Requirements
- Bachelor’s degree in Computer Science, Engineering, Science, Math or Cyber Security related field is required
- Understanding of electronic investigation, forensic tools, and methodologies
- Experience with enterprise cloud infrastructures such as Amazon Web Services, Office 365, and Azure
- Deep experience with most common operating systems (Windows, macOS, Linux, iOS, Android) and their file systems (ext3/4, HFS+, APFS, NTFS, exFAT, etc.)
- Deep understanding of internals and constructs of modern operation systems.
- Experience with conducting log analysis of various types of logs, including Windows Event Logs, Apache, IIS, and firewall logs.
- Working knowledge of Encryption Systems
- Basic knowledge in Risk management
- Excellent teaming skills
- Good social, communication and report writing skills
- Analytical and problem-solving skills
- Excellent organizational skills to manage caseload, projects