Job D5879 Description Click to apply: Please attach resume to mail
SOFT's client is looking for a Third Party Incident Response Analyst for a long term contract assignment. This position is a part of the IT Threat Intelligence group within the Cyber Security Operations Center and will be expected to provide direct support to the 24/7 Cyber Security Monitoring group as needed. The responsibilities include, but are not limited to, the following:

• Serving as a primary point of contact for CSOC & MSSP Cybersecurity Incident escalations
• Interfaces directly with vendors & third parties for notified/observed compromises
• Forensics on memory, disks, and logs
• Malware analysis (dynamic & static)
• Involvement in full incident response lifecycle
• Processes evidence in accordance with Chain of Custody
• Creates Incident reports to brief to executive management
• Provide recommendations to prevent similar incidents
• Assist the Threat Intelligence group in other functions including
o Threat Intelligence / Threat Hunting
o Threat Readiness
o Cyber Content Engineering & Automation

Skills:
• Excellent communication skills
• Strong experience with digital forensic tools
• Strong understanding and analysis of code such as Powershell, PERL, Python
• Cybersecurity certifications (preferred)
• Experience with OT & PCI technologies (preferred)

Minimum requirements:
• Experience around 3 years within IT-Security is expected.
• Experience with Tier 1 & 2 support for cyber security operation center.
• Experience with performing incident response functions & investigations