At-Bay · 4 months ago
Senior DFIR Recovery Specialist
At-Bay is a fast-growth InsurSec company focused on protecting small businesses from digital risks through innovative products. They are seeking a Senior DFIR Recovery Specialist to oversee and enhance cybersecurity incident response and recovery processes, collaborating with various teams and providing expert guidance during cyber security events.
Cyber SecurityFinanceFinancial ServicesInsuranceInsurTech
Responsibilities
Accountable for overseeing, measuring, and driving efforts to systematically increase the maturity and effectiveness of cyber security incident response and recovery processes, setups, and controls for At-Bay’s Response and Recovery Team
Gains and helps maintain an end-to-end understanding of relevant client landscape (networks, endpoints, platforms, applications, dependencies, cloud services, on-premise setups, etc.)
Engages with global and local operational Security & IT teams, collaborates closely with all relevant functions across the client base, and consults with external experts & stakeholders
Provides deep security expertise in the context of reviews of detection measures, post-mortem analysis of cyber incident responses, and IT recovery exercises; supports and helps coordinate major real cyber security events
Provides assurance & evidence for the formal security control objectives in this area and contributes accordingly to the overall needs of At-bay’s clients
Identifies gaps in detection, response, recovery controls, and details and drives security risk reduction activities
Qualification
Required
Great educational background, preferably in the fields of computer science or engineering for technical project managers
Proven working experience as a project administrator in the information technology sector
Solid technical background, with understanding or hands-on experience in Windows, Linux, and OSX
Excellent client-facing and internal communication skills
Excellent written and verbal communication skills
Solid organizational skills, including attention to detail and multi-tasking skills
Play a key role in post-breach firewall reconfiguration, including rule audits, segmentation updates, and blocklist implementations to harden perimeter defenses
Collaborate with threat intel and SOC teams to develop and deploy IOCs and custom firewall rulesets (e.g., Palo Alto, Fortinet, Cisco ASA) during active incident response
Create and execute firewall recovery workflows to ensure secure rollback and containment during ransomware and APT-level incidents
Install/Replace, configure, and optimize network hubs, routers, and switches (e.g., higher-level protocols, tunneling)
Develop and implement network backup and recovery procedures
Diagnose network connectivity problems
Implement new system design procedures, test procedures, and quality standards
Install and maintain network infrastructure device operating system software (e.g., windows OS, virtual machines)
Integrate new systems into existing network architecture
Monitor network capacity and performance
Skill in writing code in a currently supported programming language (e.g., Java, Python, PowerShell)
Patch network vulnerabilities to ensure that information is safeguarded against outside parties
Provide feedback on network requirements, including network architecture and infrastructure
Test and maintain network infrastructure, including software and hardware devices
Preferred
An understanding of forensic data collection tools and procedures is a plus
Company
At-Bay
At-Bay is the InsurSec (Insurance and Cybersecurity) provider for the digital age.
H1B Sponsorship
At-Bay has a track record of offering H1B sponsorships. Please note that this does not
guarantee sponsorship for this specific role. Below presents additional info for your
reference. (Data Powered by US Department of Labor)
Distribution of Different Job Fields Receiving Sponsorship
Represents job field similar to this job
Trends of Total Sponsorships
2025 (6)
2023 (1)
2022 (3)
2021 (3)
Funding
Current Stage
Late StageTotal Funding
$295.75MKey Investors
ION Crossover PartnersQumra CapitalLightspeed Venture Partners
2022-09-02Series Unknown· $3.75M
2021-10-13Series D· $20M
2021-07-27Series D· $185M
Recent News
2025-12-16
2025-12-16
Company data provided by crunchbase