Job Details
Your work profile
As Associate Director in our CyberTeam you'll build and nurture positive working relationships with teams and clients with the intention to exceed client expectations.
The role requires providing expertise and leadership for Incident Response capabilities including good understanding of cyber incident forensics. It requires providing both subject matter expertise and project management experience to serve as the point person of client engagement in domain.
The candidate shall pertain efficient incident response and remediation skills to minimise the impact of cyber risks. The individual will oversee and support security monitoring operations team and assist them during security incidents and ensure incidents are managed and responded effectively including and reporting to stakeholders. This role primarily consists of leading team of the Incident responders, Incident managers and stakeholders (including client, vendors, etc.) and to conduct thorough response activities on behalf of a wide variety of clients across sectors.
Candidate is required to work in complex security environments and alongside SOC team to design, communicate and execute incident response, containment and remediation plans. Candidate is required to have hands-on experience of incident management and investigation tools and shall be comfortable leading teams on challenging engagements, communicating with clients, providing hands-on assistance with incident response activities, and creating and presenting high-quality deliverables.
Key Responsibilities:
- Manage client engagements, with a focus on incident response and investigation. Provide both subject matter expertise and project management experience to serve as the point person for client engagements
- Assist with client incident scoping call and participate in the incident from kick-off through full containment and remediation.
- Security Analytics - Efficiently distil actionable information from large data sets for reporting, hunting, and anomaly detection.
- Recommend and document specific countermeasures and mitigating controls with post incident analysis findings
- Develop comprehensive and accurate reports and presentations for both technical and executive audiences
- Conduct Digital Forensic and Incident Response (DFIR) analysis, network log and network PCAP analysis, malware triage, and other investigation related activities in support of Incident Response investigations
- Supervise Digital Forensics and Incident Response staff, and assisting with performance reviews and mentorship of cybersecurity professionals
- Mature the Security Incident Response process to ensure it meets the needs of the Clients
- Interact with Client's CSIRT teams to cater continuous and/or ad-hoc client requests for Incident Response services
- Possess the experience, credibility and integrity to perform as an expert witness.
- Involve in business development activities and supporting pre-sales teams in Identify, market, and develop new business opportunities
- Assist with research and distribute cyber threat intelligence developed from Incident Response activities
- Research, develop and recommend infrastructure (hardware & software) needs for DFIR and evolve existing methodologies to enhance and improve our DFIR practice.
Skills required
- 10-14 years Information Security experience with at least 5 year of Incident Response experience.
- Education qualification : BE/ B.Tech / MCA/ MBA
- Solid understanding of MITRE ATT&CK, NIST cyber incident response framework and Cyber kill chain.
- Understanding of Threat Hunting and threat Intelligence concepts and technologies
- Experience of leveraging technical security solutions such as SIEM, IDS/IPS, EDR, vulnerability management or assessment, malware analysis, or forensics tools for incident triage and analysis.
- Deep experience with most common OS (Windows, MacOS, Linux, Android, iOS) and their file systems (ext3.4, NTFS, HFS+, APFS, exFAT etc)
- Proficiency with industry-standard forensic toolsets (i.e. EnCase, Axiom/IEF, Cellebrite/UFED, Nuix and FTK)
- Experience of enterprise level cloud infrastructure such as AWS, MS Azure, G Suite, O365 etc..
- Experience of malware analysis and understanding attack techniques.
- CISSP, ECIH v2, GCFA, GCIH, EnCE or equivalent DFIR certification.
- Ability to work in time-sensitive and complex situations with ease and professionalism, possess an efficient and versatile communication style
- Good verbal and written communication skill, excellent interpersonal skills
Location and way of working
- Base location: Bangalore
- Professional is required to work from office
Your role as a Associate Director
We expect our people to embrace and live our purpose by challenging themselves to identify issues that are most important for our clients, our people, and for society.
In addition to living our purpose, Senior Executive across our organization must strive to be:
- Inspiring - Leading with integrity to build inclusion and motivation
- Committed to creating purpose - Creating a sense of vision and purpose
- Agile - Achieving high-quality results through collaboration and Team unity
- Skilled at building diverse capability - Developing diverse capabilities for the future
- Persuasive / Influencing - Persuading and influencing stakeholders
- Collaborating - Partnering to build new solutions
- Delivering value - Showing commercial acumen
- Committed to expanding business - Leveraging new business opportunities
- Analytical Acumen - Leveraging data to recommend impactful approach and solutions through the power of analysis and visualization
- Effective communication Must be well abled to have well-structured and well-articulated conversations to achieve win-win possibilities
- Engagement Management / Delivery Excellence - Effectively managing engagement(s) to ensure timely and proactive execution as well as course correction for
the success of engagement(s)
- Managing change - Responding to changing environment with resilience
- Managing Quality & Risk - Delivering high quality results and mitigating risks with utmost integrity and precision
- Strategic Thinking & Problem Solving - Applying strategic mindset to solve business issues and complex problems
- Empathetic leadership and inclusivity - creating a safe and thriving environment where everyone's valued for who they are, use empathy to understand others to adapt our behaviours and attitudes to become more inclusive.