
Senior Consultant, DFIR, Reactive Services
Palo Alto Networks
full-time
Posted on:
Location Type: Remote
Location: California • United States
Visit company websiteExplore more
Salary
💰 $128,000 - $176,000 per year
Job Level
Tech Stack
About the role
- This role is client-facing and requires the Senior Consultant to help lead and produce deliverables based on reactive services client engagements.
- The Senior Consultant will work directly with multiple customers and key stakeholders (Admins, C-Suite, etc) to lead incident response incidents and guide clients through the engagement from start to finish.
- Perform reactive incident response functions including but not limited to: host-based analysis functions through investigating Windows, Linux, and Mac OS X systems to identify Indicators of Compromise (IOCs).
- Examine firewall, web, database, and other log sources to identify evidence and artifacts of malicious and compromised activity.
- Investigate data breaches leveraging forensics tools including Encase, FTK, X-Ways, SIFT, Splunk, and custom Unit 42 investigation tools to determine source of compromises and malicious activity that occurred in client environments.
- Lead incident response engagements to guide clients through forensic investigations, contain security incidents, and provide guidance on longer term remediation recommendations.
- Mentorship of Incident Response Consultants in incident response and forensics best practices.
- Ability to perform light travel requirements as needed to meet business demands (on average 20%).
Requirements
- 4+ years of incident response or digital forensics experience with a passion for cyber security
- Proficient with host-based forensics and data breach response
- Experienced with EnCase, FTK, X-Ways, SIFT, Splunk, Volatility, WireShark, TCPDump, and open source forensic tools
- Identified ability to grow into a valuable contributor to the practice and, specifically: have an external presence via public speaking, conferences, and/or publications; have credibility, executive presence, and gravitas; be able to have a meaningful and rapid delivery contribution; have the potential and capacity to understand all aspects of the business and an excellent understanding of PANW products; be collaborative and able to build relationships internally, externally, and across all PANW functions, including the sales team.
- Incident Response Consulting preferred
- Bachelor’s Degree in Information Security, Computer Science, Digital Forensics, Cyber Security or related field
Benefits
- A description of our employee benefits may be found here
Applicant Tracking System Keywords
Tip: use these terms in your resume and cover letter to boost ATS matches.
Hard Skills & Tools
incident responsedigital forensicshost-based forensicsdata breach responseforensic investigationmalicious activity analysisIndicators of Compromise (IOCs)remediation recommendationscyber security
Soft Skills
client-facingmentorshipcollaborationpublic speakingrelationship buildingexecutive presencecredibilitygravitational presencerapid delivery contribution