We use cookies. Find out more about it here. By continuing to browse this site you are agreeing to our use of cookies.
#alert
Back to search results
New

Principal Incident Response Commander (DFIR)

Advantage Technical
$95.00-$11.00
paid time off, paid holidays
United States, California, Redwood City
Jan 31, 2025
Principal Incident Response Commander with Digital Forensics background.

No Third Party Applicants please

Location:
100% Remote (PT or MT hours)

Duration: 12 months+ contract

Rate: Based on Experience

Requirements: Background Check

Description:

Principal Incident Response Commander

* Investigation experience handling large investigations

* Sound technical understand across the cyber security space which shows experience with forensics, network security concepts, intel, and hunting.

* Experience delivering written technical reports to leadership


The Challenge


Join the Cyber Defense Center as a Principal Incident Response Commander. With your extensive experience in incident response, digital forensics, investigative skills, and process improvement, you'll play a key role in minimizing damage, protecting sensitive data, and ensuring business continuity. You'll manage and investigate complex incidents, drive investigations to successful conclusions, and enhance our processes. Collaborate with senior staff to execute strategies and elevate our Incident Response program. Are you ready to leverage your expertise and make a significant impact?

What You Will Do

* Incident Response: Confidently lead incident response activities, ensuring stakeholder alignment for efficient responses. Collaborate with leadership to implement strategic initiatives and foster continuous learning to enhance incident response capabilities organization-wide.

* Investigations: Analyze data points from past or current cases using critical thinking and investigative skills. Identify indicators of compromise, potential attack vectors, and root causes to guide effective resolution steps and discover new connections.

* Reporting: Keep detailed incident records and provide clear, concise reports to leadership. Ensure timely updates and communicate critical information effectively to stakeholders.

* Technical Expert: Provide technical support for incidents, guide team members, and offer technical direction. Use your expertise to troubleshoot and resolve issues, assisting in the technical aspects of incident response.

* Continuous Improvement: Enhance incident response through post-incident retrospectives and security, engineering, and partner team feedback.

* Training and Presentations: Develop and present comprehensive reports, training sessions, and presentations for both technical and non-technical audiences.

* Process Development: Assist in designing, documenting, and reporting on incident response processes, procedures, and metrics to optimize efficiency and effectiveness.

* Threat Awareness: Stay updated on emerging threats and attack vectors to maintain expertise in the evolving cyber landscape.

What You Need to Succeed

* Incident Response Expertise: Bring at least 8+ years of hands-on experience managing the end-to-end incident response lifecycle, including detection, analysis, and post-incident activities. Demonstrate proficiency in incident response and digital forensics, particularly in responding at scale.

* Technical Proficiency: Possessing a robust understanding of threat intelligence, malware analysis, and network security concepts, complemented by practical expertise in digital forensics across operating systems, memory analysis, and handling malicious files. Experienced in utilizing EDR (Endpoint Detection and Response) tooling for effective incident response and management at scale. Knowledge of reverse engineering or scripting or programming languages is a plus.

* Investigation Background: Strong investigative skills and incident response expertise to effectively manage and resolve complex cases. Previous government or law enforcement experience with large-scale investigations is a plus.

* Analytical Skills: Excellent at analyzing large data sets under pressure, with strong multitasking abilities to address complex challenges and prioritize tasks effectively.

* Communication Skills: Clear and effective communication with diverse stakeholders and engineering teams. Strong in both written and verbal communication to deliver reports and updates and present technical findings to leadership.

* Curiosity and Learning: Stay updated on emerging technologies and evolving attack methods. Actively explore and master new tools to enhance investigative capabilities, proactively sharing knowledge to strengthen incident response effectiveness.

* Security and Compliance Knowledge: Solid understanding of security fundamentals and familiarity with regulatory frameworks such as FedRAMP, ISO 27001, SOC2, HIPAA, FERPA, GDPR, and PCI-DSS.

* Collaborative Mindset: Embrace collaboration, building team relationships to drive projects and provide incident support. Encourage innovative problem-solving and solutions-driven thinking.

Why Join Us?

* Innovation: Be part of a team that fosters a culture of experimentation, innovation, and continuous learning.

* Impact: Play a key role in safeguarding our enterprise from advanced cyber threats and improving our overall security posture.

* Growth: Opportunities for professional growth and development through challenging projects and ongoing training.

* Collaboration: Work in a collaborative environment that values relationships and teamwork.

#techjobs

#LI-SK1

The base pay range above represents the low and high end of the base compensation range we reasonably expect to pay for this position. Actual base compensation will vary and may be above or below the range based on various factors including, but not limited to, geographic location, actual experience, and job performance. This job posting is not a promise of any specific pay for any specific employee.

The range listed is just one component of the total compensation package for our employees. Based on the details of your position, we provide a variety of benefits to our employees, including medical, dental, and vision plans, pre-tax savings plans, pre-tax parking and commuter plans, supplemental health and welfare plans, a retirement savings plan, an employee assistance program, pet insurance, and paid holidays. Other rewards may include short-term incentives and paid time off.

After you have applied, download our Staffmark Group WorkNOW App to receive real-time job offers and apply for additional opportunities. You can download it from the App Store or get it on Google Play.

About Advantage Technical

With company roots going back over 30 years, Advantage Technical is an engineering and information technology services company and a national leader in the provision of technical resources today. These services include Staff Augmentation, Direct Placement, Project Resourcing and Outsourcing - delivered from 40 key market locations, by over 3500 specialized contractors, to over 500 clients across North America. Advantage Technical is a Best of Staffing Diamond Award winner for both Clients and Talent. For more information about the industries and services offered by Advantage Technical, please visit AdvantageTechnical.com.

Advantage Technical is committed to providing equal employment opportunity for all persons regardless of race, color, religion (including religious dress and grooming practices), sex, sexual orientation, gender, gender identity, gender expression, age, marital status, national origin, ancestry, citizenship status, pregnancy, medical condition, genetic information, mental and physical disability, political affiliation, union membership, status as a parent, military or veteran status or other non-merit based factors. We will provide reasonable accommodations throughout the application, interviewing and employment process. If you require a reasonable accommodation, contact your local branch. Advantage Technical is an E-Verify employer. This policy is applicable to all phases of the employment relationship, including hiring, transfers, promotions, training, terminations, working conditions, compensation, benefits, and other terms and conditions of employment.

All employees are directed to familiarize themselves with this policy and to act in accordance with it. All decisions with respect to employment matters and other phases of employer-temporary employee relationships will be in keeping with this policy and in accordance with all applicable laws and regulations.

Applied = 0

(web-6f6965f9bf-j5kl7)