Senior Consultant | Cybersecurity - Incident Response | Forensic & Litigation Consulting
Role details
Job location
Tech stack
Job description
Perform a wide range of cybersecurity engagements in a fast-paced, deadline-sensitive environment; summarizing the results accurately and concisely in written reports for a sophisticated client base consisting of top-tier law firms, financial institutions and corporations; managing consultants on engagements which involve teams of investigative researchers; and providing oral reports to clients, when appropriate. Assist leadership in developing strategies to expand the portfolio of services offered and improve the efficiency and consistency of service delivery. Maintain current knowledge of industry trends, threats, methodologies and core technologies in order to assimilate client needs and design appropriate technical solutions. Lead assessment of current threat identification techniques and development of new methodologies and frameworks. Incident analysis, combining sound analytical skills with advanced knowledge of cybersecurity, digital forensics and incident response. Assess client cybersecurity postures against industry-standard best practices and frameworks. Lead modification and enhancement of proposals. This role requires travel to clients and FTI offices. How You'll Grow We are committed to investing and supporting you in your professional development and we have developed a range of programs focused on fostering leadership, growth and development opportunities. We aim to promote continuous learning and individual skills development through on-the-job learning, self-guided professional development courses and certifications. You'll be assigned a dedicated coach to mentor, guide and support you through regular coaching sessions and serve as an advocate for your professional growth. As you progress through your career at FTI Consulting, we offer tailored programs for critical professional milestones to ensure you are prepared and empowered to take on your next role. What You Will Need to Succeed Analytical ability - The applicant should have experience identifying red flags, validating sources, and making judgment calls about the completeness and accuracy of open-source information. The applicant will be responsible for developing investigative plans and strategies for engagements and producing creative solutions to challenging research problems. Strategic planning and resourcefulness.
Requirements
Bachelor's degree or equivalent experience. Experience conducting digital forensics or incident response as a similar role. Specialised experience in cyber incident response and cyber incident management. An understanding of frameworks and standards, such as PCI, HIPAA, GDPR, CCPA, NERC CIP, ISO, NIST, etc. Experience conducting cyber framework assessments or the ability to learn. Technical hands-on experience with capturing and analyzing forensic images from different systems including Windows, Linux, OSX and smartphones. Experience using tools such as Volatility, FTK Imager, Cellebrite, WireShark, EnCase, Axiom, Splunk, ELK, etc. Experience documenting the technical details gathered from forensics analysis into incident reports for wider consumption. Experience using EDR tools such as SentinelOne, Carbon Black et c. Knowledge of chain-of-custody procedures. Understanding of data loss/data theft prevention concepts and technologies. Preferred Qualifications Certifications related to DIFR, i.e., GCFE, GCFA, GREM, GNFA, or a willingness to obtain them. Experience in online learning such as HackTheBox Blue Team labs, etc. Script-ing skills in Python, Bash and PowerShell is a plus.
Benefits & conditions
Our goal is to support the wellbeing of you and your families - physically, emotionally, and financially. We offer market competitive benefits (including pension), supplemented by 15 flexible benefits, to meet your needs. These include health, lifestyle and family friendly options. We also offer professional development programme, wellness, recognition, community volunteering initiatives, and flexible/hybrid working arrangements.