Arctic Wolf · 23 hours ago
Incident Response Forensic Analyst
Maximize your interview chances
Cyber SecurityInformation Technology
Growth OpportunitiesH1B Sponsor Likely
Insider Connection @Arctic Wolf
Get 3x more responses when you reach out via email instead of LinkedIn.
Responsibilities
Assist with/conduct forensic investigations for organizations that have suffered an attack from targeted threats, such as Advanced Persistent Threats, Organized Crime, and politically motivated groups, or from commodity threats such as ransomware groups.
Perform host forensic analysis primarily on Windows based systems; Assist with the investigation of Linux and Mac OS based systems.
Perform network analysis using a variety of tools and log sources to include firewall logs, NetFlow, and logs generated from a variety of network intrusions detection/prevention tools.
Conduct all aspects of a Business Email Compromise (“BEC”) investigation to include scoping, data collection and analysis, and reporting.
Assist with the forensic acquisition and analysis from Azure, Amazon Web Services (“AWS”), and Google Cloud Platform (“GCP”) environments.
Leverage applicable tooling to contain and eradicate a threat actor’s presence from a client’s network when responding to live intrusion events.
Communicate both executive and detailed level findings in verbal and written form with the assistance of senior team members if necessary
Communicate IOCs with colleagues and applicable internal teams to help develop the Arctic Wolf platform.
Collaborate with senior members of the team to make recommendations to the client
Participate in weekday escalation and weekend/holiday on call schedules.
Conduct audits and peer review of incident reports.
Fosters information sharing and collaboration.
Qualification
Find out how your skills align with this job's requirements. If anything seems off, you can easily click on the tags to select or unselect skills to reflect your actual expertise.
Required
Assist with/conduct forensic investigations for organizations that have suffered an attack from targeted threats, such as Advanced Persistent Threats, Organized Crime, and politically motivated groups, or from commodity threats such as ransomware groups.
Perform host forensic analysis primarily on Windows based systems; Assist with the investigation of Linux and Mac OS based systems.
Perform network analysis using a variety of tools and log sources to include firewall logs, NetFlow, and logs generated from a variety of network intrusions detection/prevention tools.
Conduct all aspects of a Business Email Compromise (“BEC”) investigation to include scoping, data collection and analysis, and reporting.
Assist with the forensic acquisition and analysis from Azure, Amazon Web Services (“AWS”), and Google Cloud Platform (“GCP”) environments.
Leverage applicable tooling to contain and eradicate a threat actor’s presence from a client’s network when responding to live intrusion events.
Communicate both executive and detailed level findings in verbal and written form with the assistance of senior team members if necessary.
Communicate IOCs with colleagues and applicable internal teams to help develop the Arctic Wolf platform.
Collaborate with senior members of the team to make recommendations to the client.
Participate in weekday escalation and weekend/holiday on call schedules.
Conduct audits and peer review of incident reports.
Fosters information sharing and collaboration.
Conducts duties and responsibilities in accordance with AWN’s Information Security policies, standards, processes and controls to protect the confidentiality, integrity and availability of AWN business information.
Background checks are required for this position.
Benefits
Equity for all employees
Bonus or commission pay based on role
Flexible time off, paid volunteer days and paid parental leave
401k match
Medical, Dental, and Vision insurance
Health Savings and Flexible Spending Agreement
Voluntary Legal Insurance
Training and career development programs
Company
Arctic Wolf
Arctic Wolf is a cyber security company that provides cloud-native security operations technology to reduce cyber risks.
H1B Sponsorship
Arctic Wolf has a track record of offering H1B sponsorships. Please note that this does not
guarantee sponsorship for this specific role. Below presents additional info for your
reference. (Data Powered by US Department of Labor)
Distribution of Different Job Fields Receiving Sponsorship
Represents job field similar to this job
Trends of Total Sponsorships
2023 (1)
2021 (1)
Funding
Current Stage
Late StageTotal Funding
$899.2MKey Investors
Owl Rock CapitalViking Global InvestorsFuture Fund
2022-10-06Convertible Note· $401M
2022-01-06Secondary Market· Undisclosed
2021-07-13Series F· $150M
Recent News
2024-10-23
2024-10-13
Company data provided by crunchbase