דלג לתוכן הראשי

Incident response researcher/ DFIR

Undisclosedמחוז המרכז, ישראללא צויןFull-timeדרגה: דרגת ביניים

פורסם לפני 27 ימים · 0 מועמדים

שכר לא צוין במשרה זו

שמירה, הגשה או בדיקת התאמה — כמה שניות להקמת חשבון חינם.

תובנת Willbi

התפקיד במילים פשוטות

התפקיד כולל השתתפות בחקירות פורנזיות ותגובה לאירועים, כולל התקפות מתוחכמות בקנה מידה גדול, וביצוע ניתוח לוגים ופורנזיקה מבוססת מארח ורשת. כמו כן, תצוד באופן יזום אחר התקפות ממוקדות ואיומים חדשים ברשתות לקוחות, ותזהה אינדיקטורים לפריצה (IOCs) וטקטיקות (TTPs).

חובה
  • At least 3 years of relevant experience in DFIR or advanced cyber threat investigation (from military service and/or industry)
  • Demonstrated in-depth understanding of the life cycle of advanced security threats, attack vectors, and variant methods of exploration (MITRE ATT&CK framework)
  • Familiarity with cloud infrastructure investigation, specifically Microsoft 365 / Azure AD environments and AWS CloudTrail
  • Deep technical understanding of network fundamentals, common Internet protocols, and advanced firewall (FW)/proxy log analysis
  • Solid understanding of system and security controls on at least two OSs (Windows, Linux / Unix), including host-based forensics and experience with analyzing OS artifacts (MFT, Registry, Event Logs, Volatile Memory)
יתרון

    חולץ מתיאור המשרה · מתעדכן אוטומטית

    למי זה מתאים

    התפקיד מתאים לאנשי מקצוע בעלי לפחות 3 שנות ניסיון ב-DFIR או בחקירות איומי סייבר מתקדמות, עם הבנה מעמיקה של מחזור החיים של איומי אבטחה מתקדמים ורקע טכני חזק ברשתות ובמערכות הפעלה. הוא פחות מתאים למי שאין לו ניסיון קודם בתחום או הבנה טכנית מעמיקה בסביבות ענן ופרוטוקולי רשת.

    תיאור המשרה המלא

    המשרה המקורית · נשמר לעיון

    We are a leading, innovative and fast-growing cybersecurity consulting company.

    With extensive experience supporting organizations (in Israel and globally) during attacks, we are dedicated to being ready when challenges strike.

    We are looking for DFIR professional to join our team.

    Job Description

    * Participate in forensic and incident response investigations, including large-scale sophisticated attacks, conduct log analysis, host and network-based forensics.

    * Participate in threat hunting: proactively hunt for targeted attacks and new emerging threats in client’s networks; as well as security assessments and simulations.

    * Identify indicators of compromise (IOCs) and tools, tactics, and procedures (TTPs) to help ascertain whether and how breaches have occurred.

    * Utilize and develop tools and methodologies to improve the existing investigative and hunting technological stack.

    * Collaborate with IT and Security teams during investigations.

    * Generate and present a comprehensive and professional report of findings from investigations.

    Main Requirements

    * At least 3 years of relevant experience in DFIR or advanced cyber threat investigation (from military service and/or industry).

    * Demonstrated in-depth understanding of the life cycle of advanced security threats, attack vectors, and variant methods of exploration (MITRE ATT&CK framework).

    * Familiarity with cloud infrastructure investigation, specifically **Microsoft 365 / Azure AD** environments and AWS CloudTrail.

    * Deep technical understanding of network fundamentals, common Internet protocols, and advanced firewall (FW)/proxy log analysis.

    * Solid understanding of system and security controls on at least two OSs (Windows, Linux / Unix), including host-based forensics and experience with analyzing OS artifacts (MFT, Registry, Event Logs, Volatile Memory).

    * Fluency with one or more scripting languages (i.e., Python, PowerShell) for data parsing and automation.

    * Problem solver, in-depth thinker with a growth mindset, capable of maintaining composure under pressure during high-stakes crises.

    אודות Undisclosed
    פרופיל החברה · בקרוב

    ביקורות עובדים · בקרובעוד משרות ב-Undisclosed

    שאלות על המשרה

    • המשרה לא ציינה שכר. אנחנו מציגים שכר רק כשהמעסיק מפרסם אותו.
    Undisclosed
    פורסם לפני 27 ימים · 0 מועמדים
    בדקו את ההתאמה