Incident Response Forensic Analyst @ Arctic Wolf | Jobright.ai
JOBSarrow
RecommendedLiked
0
Applied
0
External
0
Incident Response Forensic Analyst jobs in United States
68 applicants
company-logo

Arctic Wolf · 1 day ago

Incident Response Forensic Analyst

ftfMaximize your interview chances
Cyber SecurityInformation Technology
check
Growth Opportunities
check
H1B Sponsor Likelynote

Insider Connection @Arctic Wolf

Discover valuable connections within the company who might provide insights and potential referrals.
Get 3x more responses when you reach out via email instead of LinkedIn.

Responsibilities

Assist with/conduct forensic investigations for organizations that have suffered an attack from targeted threats, such as Advanced Persistent Threats, Organized Crime, and politically motivated groups, or from commodity threats such as ransomware groups.
Perform host forensic analysis primarily on Windows based systems; Assist with the investigation of Linux and Mac OS based systems.
Perform network analysis using a variety of tools and log sources to include firewall logs, NetFlow, and logs generated from a variety of network intrusions detection/prevention tools.
Conduct all aspects of a Business Email Compromise (“BEC”) investigation to include scoping, data collection and analysis, and reporting.
Assist with the forensic acquisition and analysis from Azure, Amazon Web Services (“AWS”), and Google Cloud Platform (“GCP”) environments.
Leverage applicable tooling to contain and eradicate a threat actor’s presence from a client’s network when responding to live intrusion events.
Communicate both executive and detailed level findings in verbal and written form with the assistance of senior team members if necessary
Communicate IOCs with colleagues and applicable internal teams to help develop the Arctic Wolf platform.
Collaborate with senior members of the team to make recommendations to the client
Participate in weekday escalation and weekend/holiday on call schedules.
Conduct audits and peer review of incident reports.
Fosters information sharing and collaboration.

Qualification

Find out how your skills align with this job's requirements. If anything seems off, you can easily click on the tags to select or unselect skills to reflect your actual expertise.

Forensic investigationsWindows forensic analysisNetwork analysisBusiness Email Compromise (BEC)Linux forensic analysisMac OS forensic analysisAzureAmazon Web Services (AWS)Google Cloud Platform (GCP)Incident reporting

Required

Assist with/conduct forensic investigations for organizations that have suffered an attack from targeted threats, such as Advanced Persistent Threats, Organized Crime, and politically motivated groups, or from commodity threats such as ransomware groups.
Perform host forensic analysis primarily on Windows based systems; Assist with the investigation of Linux and Mac OS based systems.
Perform network analysis using a variety of tools and log sources to include firewall logs, NetFlow, and logs generated from a variety of network intrusions detection/prevention tools.
Conduct all aspects of a Business Email Compromise (“BEC”) investigation to include scoping, data collection and analysis, and reporting.
Assist with the forensic acquisition and analysis from Azure, Amazon Web Services (“AWS”), and Google Cloud Platform (“GCP”) environments.
Leverage applicable tooling to contain and eradicate a threat actor’s presence from a client’s network when responding to live intrusion events.
Communicate both executive and detailed level findings in verbal and written form with the assistance of senior team members if necessary.
Communicate IOCs with colleagues and applicable internal teams to help develop the Arctic Wolf platform.
Collaborate with senior members of the team to make recommendations to the client.
Participate in weekday escalation and weekend/holiday on call schedules.
Conduct audits and peer review of incident reports.
Fosters information sharing and collaboration.
Conducts duties and responsibilities in accordance with AWN’s Information Security policies, standards, processes and controls to protect the confidentiality, integrity and availability of AWN business information.
Background checks are required for this position.

Benefits

Equity for all employees
Bonus or commission pay based on role
Flexible time off, paid volunteer days and paid parental leave
401k match
Medical, Dental, and Vision insurance
Health Savings and Flexible Spending Agreement
Voluntary Legal Insurance
Training and career development programs

Company

Arctic Wolf

company-logo
Arctic Wolf is a cyber security company that provides cloud-native security operations technology to reduce cyber risks.

H1B Sponsorship

Arctic Wolf has a track record of offering H1B sponsorships. Please note that this does not guarantee sponsorship for this specific role. Below presents additional info for your reference. (Data Powered by US Department of Labor)
Distribution of Different Job Fields Receiving Sponsorship
Represents job field similar to this job
Trends of Total Sponsorships
2023 (1)
2021 (1)

Funding

Current Stage
Late Stage
Total Funding
$899.2M
Key Investors
Owl Rock CapitalViking Global InvestorsFuture Fund
2022-10-06Convertible Note· $401M
2022-01-06Secondary Market· Undisclosed
2021-07-13Series F· $150M

Leadership Team

leader-logo
Ian McShane
Field CTO
linkedin
leader-logo
Duston Williams
CFO
linkedin
Company data provided by crunchbase
logo

Orion

Your AI Copilot