Senior Incident Response Security Consultant, Mandiant

Google All jobs
Remote Mexico
2 hour(s) ago
Job Overview
Company Google
First Seen 2 hour(s) ago

Job Description

Please submit your resume in English - we can only consider applications submitted in this language. Only applications of candidates with Mexican citizenship will be evaluated for this role in compliance with the provisions of Article 7 of the Federal Labor Law. Note Google's hybrid workplace includes remote roles. Remote location Mexico.### Minimum qualifications Bachelor's degree in Computer Science Information Systems Cybersecurity a related technical field or equivalent practical experience. 5 years of experience working end to end incident response investigations analysis or containment actions. 5 years of investigative experience with network forensics malware triage analysis cloud forensics or disk and memory forensics. 5 years of experience in Linux or Unix. 4 years of experience in automation and coding in Python. Ability to travel up to 30% of the time. ### Preferred qualifications Certification in cloud platforms and GCFA GCFE GNFA GCIA GREM GCIH GX-FA or equivalent. Experience in security competitions capture the flags (CTFs) or testing platforms such as Hack the Box TryHackMe Overthewire etc. Experience performing analysis within the cyber threat life cycle (e.g. digital forensics techniques/artifacts malware research and vulnerability exploitation). Ability to communicate investigative findings and strategies to technical staff executive leadership legal counsel and internal and external clients. Excellent communication skills with an ability to communicate findings and new initiatives to executive leaders. Excellent time and project management skills. About the job - As an Incident Response Consultant you will provide industry-leading incident response assessment transformation managed detection and response and training services with in-depth tactical support. You will help organizations effectively detect and respond to threats and reduce the overall impact of business risk before during and after an incident. You will be able to resolve security incidents quickly effectively and at scale with complete incident response including investigation containment remediation and crisis management. In this role you will work on engagements including assisting clients in navigating technically high-profile incidents performing forensic analysis threat hunting and malware triage.Part of Google Cloud Mandiant is a recognized leader in dynamic cyber defense threat intelligence and incident response services. Mandiant's cybersecurity expertise has earned the trust of security professionals and company executives around the world. Our unique combination of renowned frontline experience responding to some of the most complex breaches nation-state grade threat intelligence machine intelligence and the industry's best security validation ensures that Mandiant knows more about today's advanced threats than anyone.Responsibilities Lead large client-facing incident response engagements examine cloud end-point and network-based sources of evidence. Recognize and codify attacker tools tactics and procedures (TTPs) and indicators of compromise (IOCs) that can be applied to current and future investigations. Build scripts tools or methodologies to enhance Mandiant’s incident investigation processes. Develop and present comprehensive and accurate reports trainings and presentations for both technical and executive audiences. Conduct host forensics network forensics log analysis and malware triage in support of incident response investigations. Google is proud to be an equal opportunity workplace and is an affirmative action employer. We are committed to equal employment opportunity regardless of race color ancestry religion sex national origin sexual orientation age citizenship marital status disability gender identity or Veteran status. We also consider qualified applicants regardless of criminal histories consistent with legal requirements. See also Google's EEO Policy and EEO is the Law. If you have a disability or special need that requires accommodation please let us know by completing our Accommodations for Applicants form.

Unlock: Sign Up for free / Sign In and use the searches from your home page or the links in the footer.