Incident Response Team Lead jobs in United States
cer-icon
Apply on Employer Site
company-logo

Tyto Athene, LLC · 1 month ago

Incident Response Team Lead

Tyto Athene is a trusted leader in IT services and solutions, delivering mission-focused digital transformation that drives measurable success. They are searching for a forward-thinking and self-motivated Incident Response Team Lead to support a law enforcement customer, responsible for leading incident response activities and mentoring junior staff.

Information Technology
check
Work & Life Balance
badNo H1BnoteSecurity Clearance RequirednoteU.S. Citizen Onlynote

Responsibilities

Utilize state-of-the-art technologies such as host forensics tools (FTK/Encase), Endpoint Detection & Response tools, log analysis (Splunk), and network forensics (full packet capture solution) to perform hunt and investigative activity to examine endpoint and network-based data
Conduct malware analysis, host and network, forensics, log analysis, and triage in support of incident response
Recognize attacker and APT activity, tactics, and techniques that can be used to improve monitoring, analysis, and incident response
Develop and build security content, scripts, tools, or methods to enhance the incident investigation processes
Lead Incident Response activities and mentor junior staff
Work with key stakeholders to implement remediation plans in response to incidents
Effectively investigative and identify root cause findings then communicate findings to stakeholders including technical staff, and leadership
Author Standard Operating Procedures (SOPs) and training documentation when needed
Generates end-of-shift reports for documentation and knowledge transfer to subsequent analysts on duty

Qualification

Incident ResponseCybersecurityDigital ForensicsCISSPSIEM SystemsEDR ToolsIDS/IPSScriptingLeadershipCommunication

Required

Minimum five (5) years of progressive experience in cybersecurity, information security, security engineering, network engineering, incident response, systems architecture, or data management with a cybersecurity focus
Bachelor's degree in Computer Engineering, Computer Science, Information Technology, or Cybersecurity (or eight (8) years of relevant work experience in lieu of degree)
Required Certification: Certified Information Systems Security Professional (CISSP)
Proficient experience with Security Information and Event Management (SIEM) systems
Proficient experience with Endpoint Detection & Response (EDR) tools
Proficient experience with Intrusion Detection & Prevention Systems (IDS/IPS)
Proficient experience with Digital forensic and case management platforms
Proven experience leading cyber incident response efforts and coordinating with technical and non-technical stakeholders
TS/SCI Clearance required

Preferred

Knowledge and experience with scripting and programming (Python, PERL, etc.) are also highly preferred
Desirable certifications include, but not limited to GCIH, GCIA, GCFE, GREM, GCFA, GSEC
Desirable certifications include, but not limited to Security +
Desirable certifications include, but not limited to CEH, CISSP, CCNA (Security) or equivalent Certifications
Desirable certifications include, but not limited to CySA+

Benefits

Health/Dental/Vision
401(k) match
Paid Time Off
STD/LTD/Life Insurance
Referral Bonuses
Professional development reimbursement
Parental leave

Company

Tyto Athene, LLC

twittertwittertwitter
company-logo
At Tyto Athene, we help turn Data to Dominance.

Funding

Current Stage
Late Stage

Leadership Team

leader-logo
Dennis Kelly
Chief Executive Officer
linkedin
leader-logo
Peter O'Donoghue
Chief Technology Officer
linkedin
Company data provided by crunchbase