Cyber Incident Responder & CTI Lead

Posted:
9/17/2024, 6:38:10 AM

Location(s):
Pennsylvania, United States ⋅ Ohio, United States ⋅ Virginia, United States ⋅ Pittsburgh, Pennsylvania, United States ⋅ Cincinnati, Ohio, United States ⋅ Arlington, Virginia, United States ⋅ New York, United States ⋅ Columbus, Ohio, United States ⋅ Wisconsin, United States ⋅ New York, New York, United States ⋅ Texas, United States ⋅ Irving, Texas, United States ⋅ Milwaukee, Wisconsin, United States

Experience Level(s):
Senior

Field(s):
IT & Security

Workplace Type:
Remote

We Are

Our Cyber Investigation and Forensic Response (CIFR) practice is rapidly growing, and we are hiring mid to very senior level incident response and threat hunting professionals to work with our F500 enterprise customers. With our recent acquisitions we continue to enhance our incident response, threat hunting, forensics, threat intelligence, and purple teaming capabilities.     

With Accenture Security, you will be part of a specialized team to respond to some of the largest and most complex data breaches around the world, as well as conduct cyber threat hunting in some of the most complex business environments, leveraging a variety of tools and techniques. You will work in a fast paced and highly collaborative environment along with a diverse team of talent, in support of one mission – providing expert incident response services to Accenture customers 

The Work:

  • Lead end-to-end incident response investigations with Accenture’s customers
  • Identify and investigate intrusions to determine the cause and extent of the breach, by leveraging EDR solutions and threat intelligence sources
  • Conduct host forensics, network forensics, log analysis, and malware analysis in support of incident response investigations
  • Conduct threat hunting across customer’s networks with indicators of compromise, hunting for evidence of a compromise
  • Conduct incident response within various Cloud platforms
  • Identify attacker tools, tactics, and procedures to develop indicators of compromise
  • Develop and implement remediation plans in conjunction with incident response
  • Form and articulate expert opinions based on findings and analysis
  • Produce comprehensive and accurate oral and written reports and presentations for both technical and executive audiences
  • Effectively communicate and interface with customers, both technically and strategically, from the executive level to customers, stakeholders, and legal counsel
  • Support leadership in properly scoping engagements with innovative methodical approaches, based on customer requirements
  • Lead engagement delivery from kickoff through remediation, either on premises or remote, depending on the customer requirements
  • On-site, customer travel will be required for this position, with the requirement to travel up to 50%

Here's What You Need:

  • Minimum 4+ years cyber security operations, security monitoring, EDR and SIEM tools and/or Falcon and/or Splunk
  • Minimum 4+ years of experience with Windows and Unix based operating systems and administrative tools
  • Travel may be required for this role.  The amount of travel will vary from 0 to 50% depending on business need and client requirements.
  • Bachelor's degree or equivalent (minimum 12 years) work experience. (If Associate Degree, must have minimum 6 years work experience)

Bonus Points If You Have:

  • Applied knowledge of security controls such as authentication and identity management, security enhanced network architectures and application-based controls (including Windows, Unix, and network equipment)
  • Excellent time management, writing and communication skills
  • Strong analytic, qualitative, and quantitative reasoning skills
  • Bachelor's or Associate degree in Computer Engineering, Computer Science, Cyber Security, Information Security, or related disciplines
  • Security certifications: CISSP, SANS, GIAC (GREM, GCFA, GCIH), OSCP
  • Minimum 5 years of comparable experience
  • Minimum of 3 years of experience working with forensic file system and memory techniques, and the use of the most used toolsets, such as EnCase and FTK Suite
  • Minimum of 3 years of experience working with methods utilized for evidence collection, maintenance of chain of custody and associated documentation, evidence storage and analysis, and evidentiary reporting
  • Minimum of 1 year of experience working with IDA Pro, OllyDbg, and other disassemblers/debuggers
  • Minimum of 1 year of experience with Windows disk and memory forensics
  • Minimum of 1 year of experience with Unix or Linux disk and memory forensics
  • Minimum of 6 months of experience with Static or Dynamic malware analysis
  • Minimum of 6 months of experience monitoring network traffic and protocol analysis using tools such as Wireshark

Pay Transparency Info for Job Postings:

Compensation at Accenture varies depending on a wide array of factors, which may include but are not limited to the specific office location, role, skill set, and level of experience. As required by local law, Accenture provides a reasonable range of compensation for roles that may be hired in California, Colorado, District of Columbia, Maryland, New York or Washington as set forth below.
We accept applications on an on-going basis and there is no fixed deadline to apply.

Information on benefits is here.

Role Location                                    Annual Salary Range

California                                          $73,000 to $220,400

Colorado                                           $73,000 to $190,400

District of Columbia                       $77,700 to $202,700

New York                                          $67,600 to $220,400

Maryland                                          $67,600 to $176,300

Washington                                      $77,700 to $202,700

About Accenture

Accenture is a leading global professional services company that helps the world’s leading businesses, governments and other organizations build their digital core, optimize their operations, accelerate revenue growth and enhance citizen services—creating tangible value at speed and scale. We are a talent- and innovation-led company with 750,000 people serving clients in more than 120 countries. Technology is at the core of change today, and we are one of the world’s leaders in helping drive that change, with strong ecosystem relationships. We combine our strength in technology and leadership in cloud, data and AI with unmatched industry experience, functional expertise and global delivery capability. We are uniquely able to deliver tangible outcomes because of our broad range of services, solutions and assets across Strategy & Consulting, Technology, Operations, Industry X and Song. These capabilities, together with our culture of shared success and commitment to creating 360° value, enable us to help our clients reinvent and build trusted, lasting relationships. We measure our success by the 360° value we create for our clients, each other, our shareholders, partners and communities. Visit us at www.accenture.com

What We Believe 

We have an unwavering commitment to diversity with the aim that every one of our people has a full sense of belonging within our organization. As a business imperative, every person at Accenture has the responsibility to create and sustain an inclusive environment. 

Inclusion and diversity are fundamental to our culture and core values. Our rich diversity makes us more innovative and more creative, which helps us better serve our clients and our communities. Read more here 

Equal Employment Opportunity Statement 
 
Accenture is an Equal Opportunity Employer. We believe that no one should be discriminated against because of their differences, such as age, disability, ethnicity, gender, gender identity and expression, religion, or sexual orientation.
 
All employment decisions shall be made without regard to age, race, creed, color, religion, sex, national origin, ancestry, disability status, veteran status, sexual orientation, gender identity or expression, genetic information, marital status, citizenship status or any other basis as protected by federal, state, or local law. 
 
Accenture is committed to providing veteran employment opportunities to our service men and women. 
 

For details, view a copy of the Accenture Equal Employment Opportunity and Affirmative Action Policy Statement

Requesting An Accommodation 
 
Accenture is committed to providing equal employment opportunities for persons with disabilities or religious observances, including reasonable accommodation when needed. If you are hired by Accenture and require accommodation to perform the essential functions of your role, you will be asked to participate in our reasonable accommodation process. Accommodations made to facilitate the recruiting process are not a guarantee of future or continued accommodations once hired. 
 
If you would like to be considered for employment opportunities with Accenture and have accommodation needs for a disability or religious observance, please call us toll free at 1 (877) 889-9009, send us an email or speak with your recruiter. 
 
Other Employment Statements 
 
Applicants for employment in the US must have work authorization that does not now or in the future require sponsorship of a visa for employment authorization in the United States.   

 

Candidates who are currently employed by a client of Accenture or an affiliated Accenture business may not be eligible for consideration. 
 
Job candidates will not be obligated to disclose sealed or expunged records of conviction or arrest as part of the hiring process. 
 
The Company will not discharge or in any other manner discriminate against employees or applicants because they have inquired about, discussed, or disclosed their own pay or the pay of another employee or applicant. Additionally, employees who have access to the compensation information of other employees or applicants as a part of their essential job functions cannot disclose the pay of other employees or applicants to individuals who do not otherwise have access to compensation information, unless the disclosure is (a) in response to a formal complaint or charge, (b) in furtherance of an investigation, proceeding, hearing, or action, including an investigation conducted by the employer, or (c) consistent with the Company's legal duty to furnish information. 

Accenture

Website: https://accenture.com/

Headquarter Location: Dublin, Dublin, Ireland

Employee Count: 10001+

Year Founded: 1989

IPO Status: Public

Last Funding Type: Grant

Industries: Business Information Systems ⋅ Construction ⋅ Consulting ⋅ Information Services ⋅ Information Technology ⋅ Infrastructure ⋅ Management Consulting ⋅ Outsourcing