Since 2004, Mandiant has been a trusted partner to security-conscious organizations. Effective security is based on the right combination of expertise, intelligence, and adaptive technology, and the Mandiant Advantage SaaS platform scales decades of frontline experience and industry-leading threat intelligence to deliver a range of dynamic cyber defense solutions. Mandiant’s approach helps organizations develop more effective and efficient cyber security programs and instills confidence in their readiness to defend against and respond to cyber threats.
FireEye Mandiant Security Transformation Services helps organizations build an effective security operations program that minimizes organizational risk and reduces the impact of security breaches. Our Consultants offer recommendations grounded in first-hand experience and based on a security model that maps directly to our clients strategic goals, aligning security programs to support an Adaptive Defense strategy.
As a motivated and experienced Cyber Defense Consultant, you will utilize your customer service skills to help customers assess, design, and build their own advanced threat detection capability and help to continually improve our own program methodology. In this role, you will leverage your strong consulting skills to lead multiple projects focusing on security event monitoring, cyber threat intelligence and/or computer incidence response under tight deadlines.
What You Will Do:
- Assess client incident response capabilities and internal programs
- Provide guidance on building and/or maturing information security programs, remediation, detecting and responding to computer security incidents, and implementation of tools and technologies used for enterprise security
- Evaluate client needs, coordinate design for a solution, and clearly communicate the value proposition of complex and highly technical subjects
- Lead long-term transformation engagements as needed with multiple workstreams
- Implement and/or assess existing security controls
- Provide expert level knowledge of tools and technologies used for enterprise security
- Interface with clients to address concerns, issues or escalations; track and drive to closure any issues that impact the service and its value to clients
Note that this position can be supported from remotely and we are focusing on the Southeast US Region
Requirements:
- 3+ years of providing expert experience building information security programs to include hands-on implementation and/or assessment of security controls
- 3+ years of providing expert in-depth knowledge in collecting, analyzing, and escalating security events; responding to computer security incidents, and/or collecting, analyzing, and disseminating cyber threat intelligence
- 3+ years of experience in Incident Response and/or Security Operation Center development and practices
- 3+ years of experience in security frameworks such as the MITRE ATT&CK framework
- 3+ years of experience with the critical tools used in security event analysis, incident response, computer forensics, malware analysis, or other areas of security operations.
- Understanding of security controls for common platforms and devices, including Windows, Unix, Linux, and network equipment
Additional Qualifications:
- Must be eligible to work in the US without sponsorship
- Ability to travel up to 50%
- Provide expert level knowledge of tools and technologies used for enterprise security
- Proven ability and understanding of the components that comprise a successful information security program