Jobs and Careers
ZE
Incident Response Associate (Mid to Senior Level)
ZeroFoxUnited States, United Statesfull_timeVerifiedPosted 11 Mar 2024
About the role
OPPORTUNITY OVERVIEWZeroFox seeks an Incident Response Associate to leverage their experience and skills to deliver cybersecurity guidance and services to customers who are preparing and responding to cyber incidents. In this role, you will use your deep understanding of both existing and emerging threat actors, as well as experience identifying rapidly changing tools, tactics and procedures of attackers. To be successful, you will be skilled at responding to cybersecurity incidents under tight deadlines and be able to explain technical concepts to a non-technical audience. If you’re passionate about cyber security, digital investigations and continuous learning and you possess sound business judgment, strong consulting skills, and current technical skills, this might be a great opportunity for you! As an Incident Response Associate, you will join the ZeroFox Services team, a group of highly skilled individuals working to respond to customers experiencing security incidents. Using our proprietary platform, this role focuses on supporting our Public Sector team by identifying and conducting detailed analysis of cyber risks. Your goal: find the real-time information that will impact our customers, identifying risks and applying the appropriate escalation path.
Equal Opportunity, Diversity & InclusionWe aim to build a team that represents a variety of backgr
Role and responsibilities
- Investigate network intrusions and other cybersecurity incidents to understand the cause and extent of the breach.
- Perform host-based and network-based analysis across all major operating systems and network device platforms.
- Produce high-quality oral and written work products based on analysis.
- Assist with internal practice development and training initiatives.
- Perform malware analysis.
- Develop and refine policies and procedures for forensic and malware analysis.
- Conduct technical investigations including acquisition, triage, and analysis
- Deploy security tools to assist with detecting, responding, containing, and remediating threats.
Required qualifications and skills
- Strong written and oral communication skills; comfortable with providing briefings and presentations.
- Ability to solve problems in fast-paced situations and implement countermeasures.
- Experience writing detections and perform threat hunting using EDR and SIEM technologies.
- Experience with scripting and command-line tools.
- Familiarity with the MITRE ATT&CK framework.
- Ability to provide after-hours support as needed.
Desired qualifications and skills
- Security related certifications preferred (GIAC GCIH, GCFA, CISSP, CEH, etc.)
- SIREN Certification highly preferred
- Hands-on experience in digital forensics and incident response, typically obtained in 3+ years
Benefits
- Competitive compensation
- Community-driven culture with employee events
- Generous time off
- Comprehensive health benefits & 401(k) plan
- Respectful and nourishing work environment, where every opinion is heard and everyone is encouraged to be an active part of the organizational culture
Interested?
- Ready to apply? Visit us at https://www.zerofox.com/careers to find out more and join the best team in the security industry.
- Not ready to apply? Email careers_at_zerofox_dot_com to speak with a member of the team!
Other Information
- This position will report to the Vice President of Response
- This position may entail up to 5% travel
- This role requires occasional work on nights and weekends as needed
Equal Opportunity, Diversity & InclusionWe aim to build a team that represents a variety of backgr
Apply for this role
Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.
Apply Now →Generate Application KitFree account required — sign up in 30s