Home Qatar Technology Services Controller (Cyber Security Incident)

Home Qatar Technology Services Controller (Cyber Security Incident)

Technology Services Controller (Cyber Security Incident)

Full time at Hamad International Airport in Qatar
Posted on February 10, 2025

Job details

Job Description - Technology Services Controller (Cyber Security Incident) (214162)

Job Posting

Jan 27, 2025, 6:04:32 AM

Primary Location

Doha

Unposting Date

Feb 10, 2025, 8:59:00 PM About Role You would be part of the Cyber Security Incident Response team with an operational role to quickly identify, respond to cyber incidents to our global infrastructure. This is a hands-on technical cyber security role with expertise in Security incident response and in the areas of endpoint security, application security, network security or Cloud security. Role and Responsibilities:
  • Assist and/or lead investigations in active security incident scenarios, supporting the organization through the Incident Response lifecycle.
  • Provide expertise in the triage, escalation, and response to potential security events & incidents and provide support to security teams.
  • Participate in rotating on-call schedule and work collaboratively, including outside of normal working hours as required due to critical incidents or emergency calls.
  • Proactively hunt threats in the environment, identifying new risks and developing methods to proactively address threats.
  • Provide cyber–Incident Response expertise and perform Malware Analysis & reverse engineering of malware.
  • Perform forensic analysis in response to cyber-attacks and computer security breaches on systems and networks to identify the extent and nature of the compromise and provide recommendations on containment, eradication, and remediation steps.
  • Routinely prepare written technical documentation and reports of findings, along with recommendations, that result from cases involving forensic analysis and incident response.
  • Develop and update operational playbooks for various cyber incident scenarios including Data breach, ransomware, supply chain compromise, etc.
  • Responsible for identification, analysis, and correlation of events of interest, escalation, and continued monitoring of cybersecurity events on an enterprise-wide basis.
  • Analyze various logs, network, malware, forensic, and cyber threat intel to validate security threats, recommend appropriate countermeasures, and assess the impact of cyber incidents.
  • Assist the Cyber Security manager in the analysis of security breaches to identify the root cause and implement preventive measures.
About You
  • Bachelor Degree holder with a minimum of 5-7 years of relevant experience.
  • 3+ years' experience with Incident Response, Forensics, and/or Malware Analysis.
  • At least one of the relevant certifications: SANS GIAC: GCIA, GCFA, GCFE, GREM, GXPN, GMON, or GCIH, ISC2: CCFP, CCSP, CISSP CERT CSIH, EC Council: CHFI or ECSA.
  • Familiarity with MITRE Adversary Tactics, Techniques and Common Knowledge (ATT&CK).
  • Possess knowledge of log management and logs generated by various applications or appliances of IT infrastructure for SIEM event correlation.
  • Experience with investigating using a wide variety of detective technologies SOAR, packet capture analysis, and host forensics and memory analysis tools.
  • Expert knowledge on Defender for Endpoint and Servers for effective incident response actions.
#J-18808-Ljbffr

Apply safely

To stay safe in your job search, information on common scams and to get free expert advice, we recommend that you visit SAFERjobs, a non-profit, joint industry and law enforcement organization working to combat job scams.

Share this job
See All Technology Jobs
Feedback Feedback