Description
Cyber Security Incident Response Analyst (m/f)Location: Zurich area
Employment: Full-time
Starting: ASAP
Salary: Competitive
Overview:
A high-profile client of mine is looking for a passionate Cyber Security Incident Response Analyst to join their young and empowered global Cyber Response team in Zürich. As a part of this proactive, international, English-speaking team you will be defending the company against various, advanced security threats. This position offers a great opportunity to work aside highly-skilled subject matter experts on challenging tasks in a dynamic, global scale cyber security environment with over 90'000 endpoints.
Responsibilities:
? protect the company against advanced cyber threats
? be the expert in the domain of digital forensic/incident response (DFIR)
? perform threat research, analyse new malware samples and proactively monitor them
? perform defence simulations based on threat research, coverting red team and blue team topics (purple team)
? perform proactive threat hunts to identify compromised assets
? support other teams with information security related issues
? mentor and support junior analysts
Your experience and skills:
? at least 2 years of experience in a Security Operations Center with a heavy focus on Incident Response
? a thorough understanding of Linux / Windows forensics (including detection and defusion of anti-forensic techniques)
? experience detecting APT techniques, such as lateral movement, data exfiltration and privilege escalation
? proven track record performing memory analysis with such tools as Rekall or Volatility
? hands-on experience with offensive security and countermeasures
? experience using incident response and proactive defence frameworks, such as MITRE ATT&CK or Lockheed Martin Kill-Chain
? a good understanding of enterprise-scale networks and their design
Benefits:
? 2 days a week home office
? flexible working hours
? paid overtime
? training programmes
To apply for this Cyber Security Incident Response Analyst role in Zurich, send your CV to