Job details
IBM
For more than a century, IBM has been a global technology innovator, leading advances in AI, automation, and hybrid cloud solutions that help businesses grow. Introduction As a Senior Incident Response Consultant at IBM X-Force Incident Response, you will be responsible for handling and coordinating cyber incidents across our clients’ enterprise environments. During a cyber incident, Senior IR Consultants are responsible to ensure engagement objectives are met or exceeded and coordinate and lead junior consultants in the response effort. A Senior Incident Response Consultant can communicate effectively with analysts, technical teams, and other stakeholders to deliver excellence in responding to and resolving incidents. You are expected to be both a technical expert but also able to orchestrate the analysis tasks of interest to a diverse body of stakeholders, many of whom will not have a strong technical background. Your Role and Responsibilities The consultant has strong knowledge of:- Processes for collecting, packaging, transporting, and storing electronic evidence while maintaining chain of custody.
- Cyber attack stages (e.g., reconnaissance, scanning, enumeration, gaining access, escalation of privileges, maintaining access, network exploitation, covering tracks).
- Cloud service models (e.g., IaaS, PaaS, and SaaS) and how those models can limit digital forensics and incident response.
- Malware analysis concepts and methodologies.
- Adversarial tactics, techniques, and procedures.
- System and application security threats and vulnerabilities (e.g., buffer overflow, mobile code, cross-site scripting, SQL injection, race conditions, covert channel, replay, return-oriented attacks, malicious code).
- Identifying, capturing, containing, and reporting malware.
- Recognizing and categorizing types of vulnerabilities and associated attacks.
- Using endpoint detection and response (EDR) tools (e.g., Crowdstrike, Cortex, Carbon Black) to detect and respond to security incidents at scale.
- Using log management and event correlation tools (e.g., Splunk, ELK, QRadar).
- Analyzing memory dumps to extract information.
- Using forensic tool suites (e.g., X-Ways, EnCase, Sleuthkit, FTK).
- Recognizing and interpreting malicious activity within network evidence sources.
- Conducting forensic analyses across multiple operating system platforms (e.g., Windows, Linux, macOS).
- Preparing written reports and oral presentations for technical, executive, and legal audiences.
- Relevant industry certifications (e.g., GCFE, GCFA, CISSP, etc.)
Apply safely
To stay safe in your job search, information on common scams and to get free expert advice, we recommend that you visit SAFERjobs, a non-profit, joint industry and law enforcement organization working to combat job scams.
Hiring company
IBM
Similiar Jobs that might interest you
PRINCIPAL RESERVOIR ENGINEER
QatarEnergy... reservoir-wide pressure transient analysis surveys. QA/QC Reservoir Engineering data and maintain Reservoir Engineering ...
Qatar - Doha 30 days ago
EMERGENCY RESPONSE PLANNER
QatarEnergyDepartment MARINE & LOGISTICS Primary Purpose of the Job Support Emergency Response Coordinators to effectively ...
Qatar - Doha 30 days ago
PROCESS SAFETY ENGINEER
QatarEnergy... loss prevention engineering and safety ... Engineering or equivalent or process safety/chemical/loss prevention engineering ...
Qatar 30 days ago
Senior Inspection Engineer
NES Fircroft... -skills for various engineering studies involving consultants. · ... 's degree in engineering (mechanical, industrial, or ...
Qatar 30 days ago
SR. OPERATIONS COORDINATOR
QatarEnergy... Bachelor of Science in relevant Engineering Discipline (Chemical, Mechanical, Petroleum) preferably ...
Qatar - Doha 30 days ago
OCCUPATIONAL HYGIENIST
QatarEnergy... EDUCATION: • BSc in Science or Engineering discipline, Environmental Science / Studies or ...
Qatar 30 days ago
HSE Manager
SpemoceanPosition: HSE Manager Location: Offshore, Qatar Project: Brownfield EPC Shutdown (Oil & Gas) Job Type: Shutdown Key ...
Qatar 30 days ago
HSE Supervisor
Spemocean... peak loads. Requirements ·Diploma in Engineering, Health & Safety or other related ...
Qatar 30 days ago
HSE OFFICER
Spemocean... incident reviews. Requirements ·Diploma in Engineering, Health & Safety or other related ...
Qatar 30 days ago
QHSE MANAGEMENT SYSTEM ANALYST
NES Fircroft... : Bachelor's Degree in engineering with Diploma in Industrial ... our clients with the engineering and technical expertise ...
Qatar - Doha 30 days ago
SR. PROCESS SAFETY ENGINEER
QatarEnergy... . Process Safety / Risk Engineer is also responsible ... Safety / Risk Management/ Engineering /HSE supervisory/managerial ...
Qatar - Doha 30 days ago
Senior instrumentation Engineer
NES Fircroft... Engineering activities with Sr. Engineer ...
Qatar 30 days ago
MARINE OFFICER (UMV & OIL SPILL)
QatarEnergyDepartment MARINE & LOGISTICS Primary Purpose of the Job To provide support for managing vessels engaged in UMV and Oil ...
Qatar - Doha 30 days ago
MARINE OFFICER - ONSHORE
QatarEnergyDepartment MARINE Primary Purpose of the Job To provide support for managing Marine Operations, assist in Tendering ...
Qatar - Doha 30 days ago
INSTRUMENTATION ENGINEER
QatarEnergy... by engineering consultant and preparing engineering ... field instrumentation design engineering and construction/execution ...
Qatar - Doha 30 days ago
Head of Project Engineering
Ably Resources... for a senior Project Engineering leader! • Serve as ... of project engineering teams • Bachelor's degree in Engineering ( ...
Qatar - Doha 30 days ago
Hook-Up and Commissioning Manager
Global Projects Services AG... modification works. Drive alignment between engineering, procurement, fabrication, and offshore execution ...
Qatar 30 days ago
Why are you reporting this job?
Job has expired Cannot view this pageAlternatively, you may click on the link below or copy/paste it into your browser.
https://qa.jooble.org/external/5405328785649285392?cpc=d0FU&utm_source=affiliate&utm_medium=laimoon_organic_qa&extra_ars_request_id=dd60e9377e75c2237707a27a6fedd7b0