Digital Forensic and Incident Response Analyst

Merck Sharp & Dohme LLC
Richmond, VA, United States
about 1 month ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Experienced
Experience required
3 years minimum
Compensation
$79,200.0 - $124,700.0
Working hours
Regular working hours
Job source

Tech stack

Agile Methodology Cyber Security Information Leak Prevention Digital Forensics Intrusion Detection Systems Python (Programming Language) Network Security Log Analysis Security Information and Event Management Software Vulnerability Management Mitre Att&ck Malware
+4 more
Cyber Threat Analysis Cybercrime Ddos Vulnerability Analysis

Job description

Digital Forensic and Incident Response (DFIR) Analyst will be a member of our Cyber Fusion Center Team and support our Incident Response function. This position will provide support to security operations through incident triage, event analysis, documentation updates, incident response and other SOC duties assigned. This position supports a 24x7x365 support staff and candidates should be open to working a rotating schedule with non-core hours. This position will be a hybrid working environment with a mix of remote and onsite work., * Responds to IT security incidents according to the IT security incident response policy.

  • Provides guidance to first level responders for handling information security incidents.
  • Actively manage, drives, and provide recommendations on third party remediation efforts.
  • Provides investigation findings for cyber events (intrusions, malware, DDoS, unauthorized access, insider attacks and loss of proprietary information) to the relevant cyber security assurance functions to help improve information security posture.
  • Respond to high-priority requests for information/intelligence from senior stakeholders.
  • Validates and maintains incident response plans and processes to address potential threats.
  • Build strong relationships with business and technology stakeholders.
  • Effectively represent the team and communicate with all levels of organization including senior management and business stakeholders.
  • Identify and develop workflow automation to lower response time and eliminate lengthy procedures during incident investigation.
  • Perform additional analysis of escalations from Incident Response Analysts and conduct case review
  • Develop specific expertise, to discern patterns of complex threat actor behavior, and to communicate an understanding of current and developing cyber threats

Requirements

Education Minimum Requirement:

  • High School Diploma required.
  • Equivalent experience and/or education is accepted in place.

Required Experience and Skills:

  • 3-5 years of experience Incident Response or Cybersecurity (Education and Bootcamps included)
  • Intimate knowledge of the Cyber Kill Chain, MITRE ATT&CK Framework, or other relevant network defense and intelligence frameworks.
  • Advanced knowledge of security technologies, such as, SIEM, EDR Tools, Host and Network Security Tools and Vulnerability Management tools.
  • Excellent written and oral communication skills.
  • Demonstrated ability to work independently and as part of global teams in a fast-paced global environment.

Preferred Experience and Skills:

  • IT Security Certifications (GCIH, CySA+, SANS)
  • Familiarity with Agile methodology.
  • Working knowledge of Software Development Lifecycle Practices.
  • Experience with Python, networking, IDS/IPS., Adaptability, Analytical Thinking, Cyber Threat Hunting, Cyber Threat Intelligence, Data Loss Prevention (DLP), Detail-Oriented, Digital Forensics, Incident Response Management, Insider Threat Mitigation, Log Analysis, Malware Analysis, Security Information and Event Management (SIEM), Security Monitoring, Security Operations, SLA Management, Team Collaboration, Vulnerability Assessments, Vulnerability Management, Written Communication

Benefits & conditions

We are proud to be a company that embraces the value of bringing together, talented, and committed people with diverse experiences, perspectives, skills and backgrounds. The fastest way to breakthrough innovation is when people with diverse ideas, broad experiences, backgrounds, and skills come together in an inclusive environment. We encourage our colleagues to respectfully challenge one another’s thinking and approach problems collectively.

Learn more about your rights, including under California, Colorado and other US State Acts (https://www.msdprivacy.com/us/en/CCPA-notice/)

The salary range for this role is

$79,200.00 - $124,700.00

About the company

Merck & Co., Inc., Rahway, NJ, USA, also known as Merck Sharp & Dohme LLC, Rahway, NJ, USA, does not accept unsolicited assistance from search firms for employment opportunities. All CVs / resumes submitted by search firms to any employee at our company without a valid written search agreement in place for this position will be deemed the sole property of our company. No fee will be paid in the event a candidate is hired by our company as a result of an agency referral where no pre-existing agreement is in place. Where agency agreements are in place, introductions are position specific. Please, no phone calls or emails.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on dejobs.org

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

3:53 min

Applying software development methodologies to incident response

Tobias Dunn-Krahn · LIVE

1:51 min

Rising DDoS attacks and evaluating CDN mitigation strategies

Chris Heilmann +2 · LIVE

4:34 min

Motivational categories behind modern cybercriminal activities

Mauro Verderosa · LIVE

5:11 min

Deploying manual Seccomp profiles to block malware

Dimitrij Klesev +1 · LIVE

1:27 min

Differences between autonomous AI agents and traditional malware

Michele Zuccala Michele Zuccala +4 · WWC Europe 2026

4:01 min

Finding personal fulfillment in the cybersecurity industry

LIVE

Videos

See all

Related articles

See all