Incident Response Security Consultant, Mandiant, Google Cloud
Job Type
Job Details
Note: Google’s hybrid workplace includes remote and in-office roles. By applying to this position you will have an opportunity to share your preferred working location from the following:
In-office locations: New York, NY, USA; Atlanta, GA, USA; Austin, TX, USA; Alexandria, VA, USA; Cambridge, MA, USA; Chicago, IL, USA; Addison, TX, USA; Kirkland, WA, USA; Los Angeles, CA, USA; Reston, VA, USA; San Francisco, CA, USA; Thornton, CO, USA.
Remote location(s): United States. Minimum qualifications:
- Bachelor's degree in Computer Science, a related technical field, or equivalent practical experience.
- 2 years of investigative experience with network forensics and log analysis, malware triage analysis, disk and memory forensics in Linux, Unix, or a related operating system
- 2 years of experience working with incident response investigations, analysis, or containment actions.
Preferred qualifications:
- Certifications in Cloud Platforms (e.g., Google Cloud Platform (GCP)).
- Experience in Cloud incident response or forensics.
- Ability to communicate investigative findings and strategies to technical staff, executive leadership, legal counsel, and internal and external clients.
- Excellent written/verbal communication skills, with the ability to develop documentation and explain technical details in a concise manner.
- Excellent time and project management skills.
- Ability to work non-standard hours including Friday to Monday.
As a Security Consultant, you will be responsible for helping clients effectively prepare for, proactively mitigate, and detect and respond to cyber security threats. Security Consultants have an understanding of computer science, operating system functionality and networking, cloud services, corporate network environments and how to apply this knowledge to cyber security threats.
As a Security Consultant, you could work on engagements including assisting clients in navigating technically complex and high-profile incidents, performing forensic analysis, threat hunting, and malware triage. You may also test client networks, applications and devices by emulating the latest techniques to help them defend against threats, and will be the technical advocate for information security requirements and provide an in-depth understanding of the information security domain. You will also articulate and present complex concepts to business stakeholders, executive leadership, and technical contributors and successfully lead complex engagements alongside cross functional teams.
As an Incident Response Consultant, you will provide industry-leading incident response, assessment, transformation, managed detection and response, and training services with in-depth tactical support. You will help organizations effectively detect and respond to threats and reduce the overall impact of business risk before, during, and after an incident. You will be able to resolve security incidents quickly, effectively and at scale with complete incident response including investigation, containment, remediation, and crisis management.
- Collaborate with internal and customer teams to investigate and contain incidents. Conduct host forensics, network forensics, log analysis, and malware triage in support of incident response investigations.
- Recognize and codify attacker Tools, Tactics, and Procedures (TTPs) and Indicators of Compromise (IOCs). Build scripts, tools, or methodologies to enhance Mandiant’s incident investigation processes that can be applied to current and future investigations.
- Develop and present comprehensive and accurate reports, trainings, and presentations for technical and executive audiences.
- Utilize Mandiant technology to conduct large-scale investigations and examine endpoint and network-based sources of evidence.
- Work non-standard hours including nights, weekends, and holidays.
Sign up for our weekly remote work round-up newsletter and have new openings from companies that care delivered right to your inbox.