Freelance Cyber-Incident Response Subject Matter Expert (SME) (ID-3372)
Job Description
Prior background in real time cyber-incident handling (e.g., host and network based forensic collection, intrusion correlation and tracking, and cyber-threat analysis) is required to qualify for this role.
This role is contract to hire !
Description:
Our Risk Management teams work to protect the safety and soundness of our systems and are responsible for identifying, managing, measuring and mitigating a spectrum of key risk types including credit, market, liquidity, systemic, operational and technology in all existing and new products, activities, processes and systems. The Technology Risk Management department is responsible for setting strategic direction in the areas of IT Risk and Information Security. They are accountable for maintaining corporate security policies and control standards and acting as an operational arm for monitoring threat intelligence.
Position Summary
The individual will act as a Cyber-Incident Response Subject Matter Expert (SME) using their heightened experience to perform forensic log, host, and network analysis. They will act as a responder to process cyber-incidents and coordinate response efforts throughout the Incident Response Lifecycle.
Specific Responsibilities
- Collect and exam all available forensic artifacts (e.g. source code, malware, Trojans, etc.)
- Develop and enable mitigation requirements for cyber-incidents within the environment
- Coordinate with Cyber Intelligence teams to correlate threat assessment information
- Perform real time cyber-incident handling (e.g., host and network based forensic collection, intrusion correlation and tracking, and cyber-threat analysis)
- Maintain Incident Response software and hardware toolkits (e.g. VMWare workstations with static and dynamic analysis tools)
- Create and implement standard operating procedures and processes to help streamline investigations, daily monitoring and analysis research to ensure all analysts are effective and following the same guidelines,
- Provide oversight and coordination for cyber-incident data flow, response, and remediation
- Provide other complex technical and non-technical solutions for the organization related to cyber-incident detection and response, as directed by senior leadership
- Experience coordinating and leading cyber incident response efforts between multiple teams
- Aligns risk and control processes into day to day responsibilities to monitor and mitigate risk; escalates appropriately
NOTE: All candidates presented must know that when hired for the role that they will start out working remotely initially due to COVID-19 with offices closed but that they must be expected to work onsite in the office once offices are reopened (tentative target in Q2). When office reopens: 3 days onsite, 2 days remote (subject to change based on team business needs)
CANDIDATE SUBMISSION: Prefer local candidates in Tampa
INTERVIEW PROCESS: 2 round interviews; first with the Tech team and then final with the Hiring manager
MUST HAVE
Experience in cyber-incident handling (e.g., host and network-based forensic collection, intrusion correlation and tracking, and cyber-threat analysis).
Experience in Creating and implementing standard operating procedures and processes to help streamline investigations, daily monitoring, and analysis research to ensure all analysts are effective and following the same guidelines.