Jobs and Careers
BO

CyberSecurity Forensics and Incident Response Analyst

Bosch Group
Pittsburgh, United Statesfull_timeVerifiedPosted 7 Jun 2023
💰 $140,000/yr($125,000/yr$140,000/yr)

About the role

Company Description

The Bosch Group operates in most countries in the world. With over 400,000 associates, a career at Bosch offers a chance to grow an exceptional career in an environment that values diversity, initiative, and a drive for results. If you are interested in working on the cutting-edge of technology, working at Bosch Research is the place for you!

We are committed to quality at Bosch. Our environment celebrates diversity and promotes career progression. We seek highly skilled, creative, results-oriented people who can look at technology from a new perspective and provide surprising insight. We are looking for candidates who want to shape and drive innovation at Bosch.

Bosch Cyber Defense has multiple open positions for passionate, skilled, and experienced cyber forensic and incident response analysts to work as part of a newly formed cyber defense team in Pittsburgh, PA, USA. This is a unique opportunity become part of a global distributed team tasked with protecting the Robert Bosch Group from cybercriminal attacks and threats. We are seeking outstanding professionals at all levels of experience to bring new ideas and deep skills of value to Bosch’s cyber defense organization. These are hands-on roles that will be expected to dive into cyber security incidents, investigate new attacks and vulnerabilities with impact on the global Bosch organization and proactively consider how to prevent the same type of incidents from occurring in the future. The successful candidate will be expected to play a key role in the identification of threats as well as the corresponding response.

Job Description

Our security analysts will be expected to perform a variety of duties during an average day including but not limited to log analysis, incident response, forensics, system/tooling development, and risk assessment, just to name a few. You must thrive in high-pressure situations, think like both an attacker and defender, and drive relevant teams to take the right actions in the right time frames to mitigate risks. Candidates also need to balance technical risks against business needs and be able to articulate risks and mitigations to members of the global team as well as member of leadership at various levels. You should have a good mix of deep technical knowledge and a demonstrated background in information security. The successful candidate will be expected to be an active contributor, should have good written and oral communication skills, cross-team collaboration skills, and should be open to acquiring and applying new skills. Successful candidates:

  • Must also be able to participates in rotating on call schedule and must be able to work collaboratively across physical locations. Having the ability to work outside of normal working hours as required due to critical incidents or emergency calls, will be essential to success in this role
  • Must be willing and able to travel occasionally to Stuttgart, Germany (5-10% travel in a year)

Responsibilities for Cyber Forensics Role

  • Help define requirements and identify gaps for performing remote compromise assessments
  • Capture forensic artifacts such as memory and disk images
  • Pivot on the forensic data working with the global Cyber Threat Intelligence team to determine if the malware is part of a larger campaign, how Bosch is being targeted and take any further remediation required
  • Lead remote compromise assessments and produce final assessment reports
  • Perform live box and dead box forensics to identify compromise and attack vector
  • Provide input for Security Operations Center (SOC) improvement and identify visibility gaps for enterprise monitoring
  • Collect network intrusion artifacts (e.g., PCAP, domains, URI’s, certificates, etc.) and uses discovered data to enable mitigation of potential incidents
  • Collect network device integrity data and analyze for signs of tampering or compromise
  • Analyze identified malicious network and system log activity to determine weaknesses exploited, exploitation methods, effects on system and information
  • Track and document incident response activities and providing updates to leadership through executive summaries and in-depth technical reports
  • Plan, coordinate and direct the inventory, examination and comprehensive technical analysis of computer related evidence
  • Serve as technical forensics liaison to stakeholders and explaining investigation details

Responsibilities Incident Response Role

  • You will work in the Security Incident Response Team (SIRT) to build, develop, and operate a SIRT that will allow us to quickly identify, respond, and protect against threats to our global infrastructure
  • You will assist

Apply for this role

Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.

Apply Now →Generate Application Kit

Free account required — sign up in 30s

Company

Bosch Group

View company profile →