Manage and coordinate the response to security incidents, ensuring prompt detection, containment, eradication, and recovery, at Core42’s state-of-the-art, AI-driven Cyber Fusion Center (CFC). The CFC utilizes forensics, threat detection & response, vulnerability management, vendor & malware analysis, intelligence sharing & analysis, and APD Hunt to proactively seek out cyber threats and prevent them, helping organizations operate with less risk, greater awareness, and more efficiency.
You will leverage your technical expertise and analytical skills to investigate and analyze security incidents, perform forensic analysis, and develop effective countermeasures. Additionally, you will collaborate with internal teams and clients to develop incident response playbooks, conduct training exercises, and enhance incident response capabilities.
Responsibilities
- Lead and coordinate the response to security incidents, including triaging, containment, and eradication activities at Core42’s CFC.
- Conduct thorough investigations into security incidents, utilizing forensic tools and methodologies to gather evidence and identify root causes.
- Develop and maintain incident response playbooks, ensuring they are up to date and align with industry best practices.
- Collaborate with internal teams and Core42 clients to define incident response processes and procedures, and provide guidance on incident handling and remediation.
- Perform post-incident analysis and create detailed reports, including recommendations for improving security controls and incident response effectiveness.
- Stay current with emerging threats, vulnerabilities, and industry trends, contributing to continuous improvement of incident response capabilities.
- Assist in conducting tabletop exercises, simulations, and training sessions to enhance the CFC’s and Core42’s incident response readiness.
Requirements
Minimum Qualifications:
- Bachelor's degree in computer science, information security, or a related field
- Relevant certifications such as GIAC, CISSP, or CISA
- Strong understanding of cybersecurity principles, methodologies, and best practices
- Experience with incident response tools, SIEM platforms, and forensic analysis tools
- Familiarity with security frameworks such as NIST, ISO 27001, or CIS
- Knowledge of scripting or programming languages (e.g., Python, PowerShell)
- Participation in relevant cybersecurity communities and forums
Minimum Experience:
- X years of proven experience in incident response, digital forensics, or a related cybersecurity role in a global IT company
- Proficiency in conducting forensic analysis and utilizing forensic tools and techniques
- Experience in cloud security and knowledge of cloud platforms (e.g., AWS, Azure, GCP)
- Familiarity with AI-driven security technologies and solutions
Work Conditions
- Culture: An open, diverse, and inclusive environment with a global vision that encourages personal growth and focuses on ground-breaking, industry-first innovations.
- Career: Outstanding learning, development & growth opportunities via structured training programs and innovative, high-tech projects.
- Work-Life: A hybrid work policy to strike the perfect balance between office and home.
- Rewards: A competitive remuneration package with a host of perks including healthcare, education support, leave benefits, and more.
Location
Abu Dhabi, UAE