Start Your Search Here

push notification bell

Would you like to receive notifications about jobs in Miami?

push notification bell

You have blocked notifications

Oops! You have blocked notifications. Click here for more info

You have blocked notifications, please check your browser settings.

push notification bell

You're currently subscribed to job notifications

Want to change your notifications for job alerts?

push notification bell

Subscribe to notifications

You will no longer receive notifications

Job Search

Ryder

Miami / Global

Information Security Forensic Analyst

Job Description

Information Security Forensic AnalystThe Information Security Forensic Analyst is responsible for a broad range of responsibilities with a primary emphasis on supporting the SOC 24/7 incident response by providing host and network forensic analysis. The main functions of this role are supporting personnel investigations and remediation of security incidents. The analyst will work closely with the Security incident response teams, the Security Operations Center manager, the threat team, the legal team, members of the other security teams, and other internal organizations to successfully lead the remediation and closure activities related to security incidents or potential threats to the company. The Forensic Analyst will leverage security technologies and industry best practices to manage information security incidents, investigations, and related events across the distributed enterprise.Essential FunctionsPlans, coordinates, and directs the inventory, examination, and comprehensive technical analysis of computer related evidence.Distills analytic findings into executive summaries and in-depth technical reports.Serves as a technical forensic liaison to stakeholders and explains investigations details to include forensic methodologies and protocols.Tracks and documents on-site incident response activities and provides updates to leadership throughout the engagement.Acquire/Collect computer artifacts (e.g., malware, user activity, link files) in support of onsite engagements.Correlate forensic findings to network events in support of developing and intrusion narrative.Conduct analysis of forensic images, and available evidence in support of forensic write-ups for inclusion in reports and written products.Track and document forensic analysis from initial participation through resolution.Perform forensic triage of an incident to include determining scope, urgency and potential impact.Additional ResponsibilitiesAssists with leading and coordinating forensic preliminary investigations.Evaluates, extracts, and analyzes suspected malicious code.Triage electronic devices and assess evidentiary value.Be readily available to participate in collaborative threat analysis meetings with internal and external trusted entities.Performs other duties as assigned.Skills and AbilitiesAbility to create forensically sound duplicates of evidence (Forensic images)Ability to author cyber investigative reports documenting forensic findingsSkilled in identifying different classes of attacks and attack stagesProficiency with proper evidence handling procedures and chain of custody protocolsProficiency with analysis and characterization of cyber-attacksAction oriented and have a proactive approach to problem solvingAbility to manage multiple priorities and work effectively in a fast paced, high volume, results driven environmentAbility to investigate complex scenarios and solve problemsUnderstanding of System and Application security threats and vulnerabilities advanced requiredUnderstanding of proactive analysis of systems and networks, to include creating trust levels of critical resources advanced requiredProficiency with common operating systems (e.g,Linux/Unix, Windows)advanced requiredExperience with several industry standard forensic and digital analysis tools advanced requiredKnowledge of web application, infrastructure, and internet security along with a general understanding of common operating systems, networking protocols, database, and application development intermediate requiredKnowledge of Information Security components, principles, practices, and procedures intermediate preferredQualificationsBachelor's degree required Information assurance, computer science, engineering or related technical field.Master's degree preferred Advanced technical degree (information assurance, computer science, engineering)Three (3) years or more related security systems administration with endpoint, network, application and host-based security solutions. requiredThree (3) years or more cybersecurity risk management and/or IT experience. requiredTwo (2) years or more Cloud computing (e.g., Amazon Web Services, Google Cloud Platform or Microsoft Azure) security configuration and management experience preferred.Understanding of System and Application security threats and vulnerabilities. advanced requiredUnderstanding of proactive analysis of systems and networks, to include creating trust levels of critical resources. advanced requiredProficiency with common operating systems (e.g,Linux/Unix, Windows). advanced requiredExperience with several industry standard forensic and digital analysis tools. advanced requiredKnowledge of web application, infrastructure, and internet security along with a general understanding of common operating systems, networking protocols, database, and application development. intermediate requiredKnowledge of Information Security components, principles, practices, and procedures. intermediate preferredInformation Risk, Privacy, or Security Certification (CISSP, CCSK, CCSP, PCSM)Travel: 1-10%DOT Regulated: NoJob Category: Information Security
Apply Now

Similar Opportunities

View all jobs

Get Job Alerts

Don't miss the perfect fit. Get Daily curated job alerts.

Job Title or Keyword(s)
Location