CSL is looking for a highly technical and detail-oriented leader in the DFIR space that specializes in digital forensics, malware analysis, threat detection, and the fast-paced excitement of supporting incident response activities. As the leader of our Digital Forensics and eDiscovery team, you will be responsible to support and grow a global team, own the strategy and direction for the people, processes, and technology to fulfill your mission, and partner deeply with our Security Operations, Data Loss Prevention, and Threat Intelligence teams to help CSL defend itself from cyber attacks. You will direct the adoption of new tools and technologies to further your goals. The position holder: Leads a global team to apply security incident handling processes for CSL to successfully support the cybersecurity and information security incident response process to: Prepare for Identify Contain Eradicate Recover from cybersecurity events The role will lead a global team of digital forensics, incident response and eDiscovery analysts that will: Work closely with the Director, Security Operations to develop and implement a cybersecurity threat analysis structure of common attack techniques to evaluate an attacker's spread through a CSL system, platform and or network. Develop and maintain a continuous upskilling program for your team to increase skills and overall capability maturity Identify and implement tools to determine attack types and choose appropriate defenses and response tactics for each Derive Indicators of Compromise (IOCs) from malicious activity to strengthen incident response, threat detection, and intelligence efforts Conduct in-depth forensic analysis of various operating systems Examine traffic using common network protocols to identify patterns of activity or specific actions that warrant further investigation Detect and hunt for adversary tools, tactics, and procedures (TTPs) across an enterprise environment Partner with Compliance, Legal, Privacy, and other teams to perform internal investigations pertaining to eDiscovery matters Demonstrates thought leader-level abilities with, and/or a proven record of success directing efforts in the following areas: Network Analysis Computer Memory Analysis Endpoint Analysis Cyber Incident Lifecycle NIST 800-61 Lead and supervise teams to create an atmosphere of trust and seek diverse views to encourage improvement and innovation, answer questions and provide direction to less-experienced staff, coach staff including providing timely meaningful written and verbal feedback Reports to Executive Director, Enterprise Monitoring & Cyber Resilience Direct Reports – This role will manage a team of Forensics, eDiscovery, Incident Response and Threat Hunting SME’s and may have Project Managers, Project Coordinators, Security Architects, and vendors or managed service providers as direct and indirect reports based on security project portfolio.
Stand Out From the Crowd
Upload your resume and get instant feedback on how well it matches this job.
Job Type
Full-time
Career Level
Mid Level