Ihre Aufgaben
-
Conducting digital forensic investigations and supporting actions in compliance with applicable laws and client policies as part of incident response projects.
-
Solving ad hoc programming challenges with pragmatic approaches
-
Lead technical projects and initiatives with various stakeholders to derive necessary actions, assess risks and constraints.
-
Resolve problems and support cross-organisational efforts
-
Make recommendations to overcome future technical obstacles
-
Help clients understand complicated technical circumstances
-
Document investigation steps and retention, e.g. processes and procedures (collection, processing and analysis)
Ihr Profil
-
Completed relevant technical education with at least 5 years of experience in SOC or Incident Response (DFIR) field.
-
Experience with:
-
Windows and Linux forensics
-
File system and storage forensics
-
THOR log analysis
-
Current IR tools, e.g. ELK, Plaso, Timesketch, GRR, THOR
-
Linux (CLI) and scripting
-
Experience with Advanced Persistent Threats and their TTPs (especially Lateral Movement)
-
Support for ransomware victims
-
Remediation consulting, planning & implementation
-
Willingness to travel
-
German language skills at B2 level and English language skills at C1 level
*Courage to leave a gap: You don't meet our requirements completely? We are still looking forward to your application!
Wir bieten Ihnen
Best Place to Work
-
Culture International team Company events Close team atmosphere Culture of trust Openness and transparency
-
Modern Work Environment Trust-based flex time Remote work Part-time schedules Ergonomic office equipment Accessibility "Bring-your-dog" Sabbaticals
-
Feel good Fruit and vegetables Diverse selection of drinks Daily food allowance Health care Subsidy Urban Sports Club Language courses with Babbel voiio - Employee Assistance Program
-
Financials Market-competitive salary 30 days of vacation Closed on 24th and 31st December Employer-funded pension Continuing education and conferences Holiday-subsidy voluntary service Subsidy BusinessBike Subsidy "Deutschlandticket Job" Shopping discount via Corporate Benefits
The Job
Kontakt
DCSO Deutsche Cyber- Sicherheitsorganisation GmbH
EUREF-Campus 22 10829 Berlin
info@dcso.de +49 30 726219-0