Search jobs > Boca Raton, FL > Technical advisor incident

Technical Advisor, Incident Response

Arete Corporation Defunct
Boca Raton, FL, United States
Full-time

SUMMARY

The Technical Advisor works with an incident response engagement team to assist the Engagement Lead and manages the restoration tasks to ensure the successful forensic investigation and restoration of clients from network intrusions.

The Technical Advisor is the technical engagement leader for the Tiger Team and is accountable for providing deeper technical expertise.

This role is responsible for managing technical tasks and resources and staying up to date on best practices and emerging trends of cyber-attacks.

This is a hands-on, technical role that requires working and communicating effectively with both internal team members and external clients.

ROLES AND RESPONSIBILITIES

  • Partners with the Engagement Lead (EL) to manage the overall technical tasks during an engagement
  • Assists the Client with the completion of immediate actions
  • Assists the Client with SentinelOne (S1) agent installation and troubleshooting
  • Ensures data preservation steps are taken and assists with forensic collections
  • Manages Infrastructure Recovery / Restoration and Decryption / Remediation efforts
  • Reviews backup solutions and assists with the validation of backups
  • Consults on the resolution of all technical issues such as EDR deployment, troubleshooting, forensics collections, and onsite restoration
  • Ensures the Strategic Plan contains comprehensive technical details and identifies additional technical resources based on Strategic Plan task list and milestones set by the EL
  • Serves as an internal expert on the entire engagement lifecycle and portfolio of services at a technical level
  • Serves as an escalation point for Technical Advisor, Engineer, and Technician positions for both technical and non-technical issues
  • Ensures all activities, findings, and hourly time are properly documented
  • Backfills the EL as needed on kickoff calls and daily update calls, etc. and may also fill in for other team members such as SOC or Forensics, depending on their experience and skillset
  • Interfaces with the client's technical team members, outside technical teams, the EL, the Project Manager and other Arete Teams to ensure the overall technical success of the engagement
  • Clearly articulates technical recommendations for enhancing client cybersecurity and / or IT infrastructure both verbally and in in writing (as directed by Counsel)
  • May train or mentor other technical roles
  • Identifies and escalates underperforming team members to help expedite Client recovery efforts and identify mentoring opportunities
  • Prioritizes, actions upon, and delegates instructions and tasks provided by the EL
  • May perform other duties as assigned by management

SKILLS AND KNOWLEDGE

  • General knowledge of the Incident Response lifecycle and the tools and processes leveraged over the entire engagement
  • Ability to communicate technical subject matter to a non-technical audience
  • Sufficient knowledge of all Arete core offerings, processes, and internal / proprietary tools
  • Ability to lead projects with multiple stakeholders and resolve conflicts
  • Strong influential leadership and interpersonal skills, professional presence and experience collaborating with peers on remote teams
  • Strong communication and problem-solving skills
  • Customer service focused with proven ability to manage multiple priorities
  • Innovative and creative thinking skills
  • Previous experience scripting for automation (PowerShell, Bash, Python)
  • Familiarity with industry standard incident response and forensics threat hunting software and toolsets
  • Working knowledge of networking to include DHCP, DNS, Subnetting, VLANs, and authentication, and the ability to troubleshoot and resolve issues
  • General knowledge of data encryption technologies
  • Ability to read and understand basic network diagrams
  • Familiarity with small to large size network and systems environments
  • Basic experience identifying persistence mechanisms and developing client specific remediation steps
  • Experience with basic collections and troubleshooting basic collection methods (ie. powered on VM with space constraints)
  • Experience setting up, configuring, and troubleshooting backup and restore operations
  • Data recovery experience, basic understanding of data structures, file system formats, RAID configurations, and storage configurations

DISCLAIMER

The above statements are intended to describe the general nature and level of work being performed. They are not intended to be an exhaustive list of all responsibilities, duties and skills required personnel so classified.

JOB REQUIRMENTS

  • A Bachelors / technical degree and 6 years of experience relevant experience working in IT operations and administrating IT systems, or equivalent experience.
  • Technical Certifications, Cisco Networking, Security +, Microsoft Server / Azure, etc., preferred
  • Advanced knowledge of multiple technologies : Multi-factor Authentication, Storage solutions, Hypervisors, Operating Systems, Networking, System Administration, Remote Monitoring and Management tools (RMMs), Log Aggregation and Collections, etc.
  • Thorough knowledge in at many of the following areas : virtualization, Windows Server, Linux / Unix, LDAP / Active Directory, DNS, networking, firewalls, DMZ, scripting / PowerShell, cloud solutions (Azure, AWS, etc), Microsoft 365, information security, SaaS integrations, MDM, SIEM platforms, MFA, RMM
  • Ability to align tasks with the larger objective of the project engagement process
  • Previous experience rebuilding applications and custom Windows servers as well as domain controllers and verifying correct operations
  • Ability to work onsite or during non-business hours, etc.

WORK ENVIRONMENT

While performing the responsibilities of this position, the work environment characteristics listed below are representative of the environment the employee will encounter : Usual office working conditions.

Reasonable accommodations may be made to enable people with disabilities to perform the essential functions of this job.

PHYSICAL DEMANDS

  • No physical exertion required.
  • Travel within or outside of state and potential for international travel.
  • Light work : Exerting up to 20 pounds of force occasionally, and / or up to 10 pounds of force as frequently as needed to move objects.

TERMS OF EMPLOYMENT

Salary and benefits shall be paid consistent with Arete salary and benefit policy.

EQUAL EMPLOYMENT OPPORTUNITY

We're proud to be an equal opportunity employer- and celebrate our employees' differences, regardless of race, color, religion, sex, sexual orientation, gender identity, national origin, age, disability, or Veteran status. Different makes us better

Arete Incident Response is an outstanding (and growing) company with a very dedicated, fun team. We offer competitive salaries, fully paid benefits including Medical / Dental, Life / Disability Insurance, 401(k) and the opportunity to work with some of the latest and greatest in the fast-growing cyber security industry.

When you join Arete...

You'll be doing work that matters alongside other talented people, transforming the way people, businesses, and things connect with each other.

Of course, we will offer you great pay and benefits, but we're about more than that. Arete is a place where you can craft your own path to greatness.

Whether you think in code, words, pictures or numbers, find your future at Arete, where experience matters.

Equal Employment Opportunity

We're proud to be an equal opportunity employer- and celebrate our employees' differences, regardless of race, color, religion, sex, sexual orientation, gender identity, national origin, age, disability, or Veteran status. Different makes us better.

15 days ago
Related jobs
Promoted
Arete Corporation Defunct
Boca Raton, Florida

The Technical Advisor works with an incident response engagement team to assist the Engagement Lead and manages the restoration tasks to ensure the successful forensic investigation and restoration of clients from network intrusions. The Technical Advisor is the technical engagement leader for the T...

Promoted
Bluebird Staffing
FL, United States

The Senior Security Analyst will also serve as a subject matter expertise to departments on issues of Information Security, including technical guidance and training, and designs and implements programs for user awareness, compliance monitoring, and security compliance. We are seeking an Advanced Se...

Promoted
Sirius
Deerfield Beach, Florida

Actively call and lead security incident bridges and coordinate internal incident response efforts between First Responders, operations teams, and managed security services. The successful candidate will be responsible for receiving and triaging all cyber security incident alerts and escalation, coo...

Promoted
Sirius XM Radio, Inc.
Deerfield Beach, Florida

Actively call and lead security incident bridges and coordinate internal incident response efforts between First Responders, operations teams, and managed security services. The successful candidate will be responsible for receiving and triaging all cyber security incident alerts and escalation, coo...

Promoted
CyberTec
Boca Raton, Florida

Reporting to the Security Risk and Compliance Office Security Manager, the Security Analyst is. The Security Analyst effectively correlates and analyzes security. REQUEST FROM THE HIRING MANAGER: We are looking for a Senior Security Analyst (Advanced variance). The Security Analyst is responsible fo...

BroadAxis, Inc
Florida, USA

Experienceworking in a NIST Cybersecurity Framework aligned securityprogram. Hold activeinformation security certifications such as: CEH CISSP CISA CISMCCNP CCIE Security GCIA etc. Experience inworking with third parties to coordinate monitor respond to andcoordinate cybersecurity threats incidents ...

Pegasystems
Florida, US
Remote

You will accomplish this by collaborating with cross-functional teams – including other security analysts, threat detection engineers, vulnerability analysts, security engineers, system administrators, and developers – to proactively identify potential security risks and vulnerabilities within our c...

N. Harris Computer Corporation - USA
Florida, United States
Remote

As the Cloud Security Analyst, you will utilize your wide area of expertise in access control management, cybersecurity, vulnerability management, risk management, incident management, security frameworks and other areas to provide security support for the Harris group of companies. Work with Inform...

FIS
Virtual from Any State, FL , United States of America

The IT Security Analyst Specialist is a member of our Mainframe Security Support team which leads tactical administration of our enterprise mainframe environment, including provisioning, digital certificates, audits, audit remediation, and other security-based changes. As an IT Security Analyst Spec...

JM Family Enterprises
Deerfield Beach, Florida

Senior Information Security Operations Analyst. Information Security department and plays a pivotal role serving as the technical escalation resource for all Tier I/II analysts and engineers. Cyber Security resource you will investigate, assess, and document cyber threat and attack events to aid in ...