
3 Days Left) Forensic Lead
4 weeks ago
Summary
The Forensic Lead directs the India Tiger Team on active projects assigned to the respective team, conducting triage-level analysis of collected data (e.g., operating system files, images, Sentinel One, logs, etc.) and performing in-depth advanced forensic analysis. The Digital Forensics & Incident Response (DFIR) team collaborates to support clients and restore business operations during incidents by identifying threat actor behavior and activity.
Roles & Responsibilities
- Performs digital forensic analysis on Windows, Apple Mac, and Linux-based operating systems, and analyzes networking appliances including VPN and firewall appliances
- Documents forensic findings according to Arete Forensic Tracker standards and develops a master timeline and visual attack map of events
- Identifies additional sources (systems, logs, etc.) for collection based on analysis and addresses gaps in the attack lifecycle
- Collaborates with the Security Operations Center (SOC) to utilize data from monitoring and alerts provided by installed applications and deployed EDR solutions to identify Indicators of Compromise (IOCs), Tactics, Techniques, and Procedures (TTPs) relevant to the case
- Handles complex and critical security incidents
- Delivers forensic findings and updates to the team clearly and concisely through a narrative outlining event timeline, adjusting delivery to match the audience&aposs technical capabilities
- Tracks findings and captures data points to enrich threat intelligence and inform investigations
- Raises technical constraints and issues within the Forensics team to pinpoint incident details and escalates them to Forensic leadership
- Maintains current case analyst notes, the Forensic tracker, timeline, and attack map for team collaboration in our centralized case location
- Reviews detailed updates on investigative findings, including the timing and method of initial intrusions, adversary actions, activity timelines/lateral movements, and indicators of data access or exfiltration
- Identifies, documents, and shares critical IOCs or adversary TTPs uncovered with Incident Response, Threat Intel, and Security Operations teams
- Communicates identified IOCs to the India Tiger Team to advance investigations, restore/respond, and strengthen the clients security posture
- Utilizes incident-mapping frameworks like MITREs ATT&CK and Lockheed Martins Cyber Kill Chain to contextualize identified adversary actions/IOCs
- Reviews written incident reports, investigative updates, and reports as directed by counsel partners
- Communicates within the DFIR team and provides routine status updates using our case management platform
- Collaborates with cross-functional teams to leverage threat intel TTPs/IOCs, SOC/Threat Hunting team information, and Negotiations team updates to enhance incident intelligence
- Recognized as an internal expert and thought leader in area of expertise with broad experience across multiple job/specialty areas
- Plays a primary role in coaching and mentoring junior team members
- Reviews reports and appendices based on findings using standard report templates
- Accurately tracks and records time for forensic analysis
- May perform other duties as assigned by management
Skills And Knowledge
- Deep understanding of forensic artifacts, including analysis of operating system artifacts and recovery of deleted items from Windows, Linux, Mac, and RAM/memory forensics
- Thorough experience analyzing network and operating system log files such as Windows Event logs, Unified Audit Logs, Firewall logs, VPN logs, etc.
- Thorough knowledge of Windows disk and memory forensics, Network Security Monitoring (NSM), network traffic analysis, and log analysis, Unix or Linux disk and memory forensic
- Proficiency with enterprise security controls
- Master of delivering technical findings to non-technical audiences
- Ability to provide findings confidently and factually
- Thorough knowledge and experience handling PII, PHI, sensitive, confidential, and proprietary datasets
- Comprehensive experience with Cyber insurance investigations
Job Requirements
- Bachelors degree in information security, computer science, digital forensics, or cyber security and 8+ years of incident response or digital forensics experience or Master&aposs degree and 6+ years related experience or Doctorate, and 4+ years related experience
- Mastery of tools like EnCase, Axiom, FTK, X-Ways, SIFT, Splunk, Redline, Volatility, Wireshark, TCP Dump, and other open-source forensic tools
- Possess two or more of the following Certifications: Security +, Network+, SANS GCED, GCIH, GCFE, GCFA, CEH, CHFI
DISCLAIMER
The above statements are intended to describe the general nature and level of work being performed. They are not intended to be an exhaustive list of all responsibilities, duties, and skills required by personnel so classified.
WORK ENVIRONMENT
While performing the responsibilities of this position, the work environment characteristics listed below are representative of the environment the employee will encounter: Usual office working conditions. Reasonable accommodations may be made to enable people with disabilities to perform the essential functions of this job.
TERMS OF EMPLOYMENT
Salary and benefits shall be paid consistent with Arete&aposs salary and benefit policy.
DECLARATION
The Arete Incident Response Human Resources Department retains the sole right and discretion to make changes to this job description.
EQUAL EMPLOYMENT OPPORTUNITY
Were proud to be an equal opportunity employer- and celebrate our employees differences, regardless of race, color, religion, sex, sexual orientation, gender identity, national origin, age, disability, or Veteran status. Different makes us better.
Arete Incident Response is an outstanding (and growing) company with a very dedicated, fun team. We offer competitive salaries, fully paid benefits including Medical/Dental, Life/Disability Insurance, 401(k) and the opportunity to work with some of the latest and greatest in the fast-growing cyber security industry.
When you join Arete
Youll be doing work that matters alongside other talented people, transforming the way people, businesses, and things connect with each other. Of course, we will offer you great pay and benefits, but were about more than that. Arete is a place where you can craft your own path to greatness. Whether you think in code, words, pictures or numbers, find your future at Arete, where experience matters.
Equal Employment Opportunity
Were proud to be an equal opportunity employer- and celebrate our employees differences, regardless of race, color, religion, sex, sexual orientation, gender identity, national origin, age, disability, or Veteran status. Different makes us better.
-
Forensic Lead
4 weeks ago
Hyderabad, Telangana, India Arete Full timeJOB TITLE: Forensic LeadSUMMARY The Forensic Lead directs the India Tiger Team on active projects assigned to the respective team, conducting triage-level analysis of collected data (e.g., operating system files, images, Sentinel One, logs, etc.) and performing in-depth advanced forensic analysis. The Digital Forensics & Incident Response (DFIR) team...
-
Forensic Lead
2 days ago
Hyderabad, Telangana, India Arete Full time ₹ 12,00,000 - ₹ 36,00,000 per yearSummaryThe Forensic Lead directs the India Tiger Team on active projects assigned to the respective team, conducting triage-level analysis of collected data (e.g., operating system files, images, Sentinel One, logs, etc.) and performing in-depth advanced forensic analysis. The Digital Forensics & Incident Response (DFIR) team collaborates to support clients...
-
Forensic Lead-Hyderabad
3 days ago
Hyderabad, Telangana, India Aptita Services Full time ₹ 20,00,000 - ₹ 25,00,000 per year7+ years ,Cyber/Windows forensics, host-based forensics, network forensics, malware analysisExperience with tools like EnCase, Axiom, X-Ways, FTK, SIFT, ELK, Redline, open-source forensic tools/ Loc-Hyderabad,Share CV at Required Candidate profileMastery of tools like EnCase, Axiom, FTK, X-Ways, SIFT, Splunk, Redline, Volatility, Wireshark, TCP Dump, and...
-
3 Days Left) Lead
2 weeks ago
Hyderabad, Telangana, India GMR Group Full timeJob DescriptionJOB PURPOSETo develop an ethical culture by proactively identifying ethical violations/ revenue leakages / wastage of resources in the organization, and conduct investigations, collect intelligence / raise red flags with the help of data analyticsTo develop an ethical culture and work environment as per GMR Values & Beliefs Identify ethical...
-
3 Days Left Technical Lead
4 weeks ago
Hyderabad, Telangana, India DATAECONOMY Full timeJob DescriptionJob Title: Technical Lead - ETL Data EngineerExperience: 12 - 16 YearsLocation- HyderabadJob Summary:We are seeking a highly skilled and experienced ETL Data Engineer with a strong foundation in AWS, data warehousing, and application migration. The ideal candidate will be responsible for designing and maintaining cloud-based data solutions,...
-
3 Days Left) Lead HR
4 weeks ago
Hyderabad, Telangana, India Giga-ops Global Solutions Private Limited Full timeJob DescriptionAbout the RoleWe are seeking a highly experienced Lead HR professional to drive client relationship management and talent fulfillment for GiGaOps Global Solutions. This role will lead HR operations for India while managing strategic client requirements across the UK, Europe, and US regions. The Lead HR will serve as the primary bridge between...
-
3 Days Left: Data Architect
2 weeks ago
Hyderabad, Telangana, India Tata Consultancy Services Full timeRole: Data ArchitectRequired Technical Skill Set: AWS, Azure, GCP, Snowflake, Redshift, BiqQuery, Python, Talend, IICS, Hadoop, Spark, Kafka, Databricks.Desired Experience Range: 10-15 YearsLocation of Requirement: Hyderabad / Pune/Bangalore/Delhi / MumbaiDesired Competencies (Technical/Behavioral Competency)Must-Have1. 8+ years of experience and played the...
-
3 Days Left: Test Engineer
4 weeks ago
Hyderabad, Telangana, India Indium Full timeDear Candidate,- Experience: 3 to 9 years- Notice Period: Only Immediate Joiners to 15 Days- Work Mode: Work from Office only- Shift: Rotational, including Night Shifts- Note: Candidates who have attended an interview with us in the last 3 months are strictly not eligible to attend this interview. Key Skills & Responsibilities:- Software Testing & Bug...
-
3 Days Left PD
4 weeks ago
Hyderabad, Telangana, India Genpact Full timeJob DescriptionReady to shape the future of workAt Genpact, we don&rsquot just adapt to change&mdashwe drive it. AI and digital innovation are redefining industries, and we&rsquore leading the charge. Genpact&rsquos AI Gigafactory, our industry-first accelerator, is an example of how we&rsquore scaling advanced technology solutions to help global enterprises...
-
3 Days Left: Lead Generation Specialist
4 weeks ago
Hyderabad, Telangana, India V3 Staffing Full timeJob Title: Lead Generator – Recruitment Industry (India & US Markets)Location: Remote / HybridExperience Required: Minimum 4+ years in Lead GenerationAbout Us:We are a fast-growing recruitment firm specializing in connecting top talent with innovative companies across India and the US. We are now seeking a results-driven Lead Generator to fuel our growth...