Senior Incident Response Consultant

1 week ago


Riyadh, Saudi Arabia Google Full time

**Minimum qualifications**:

- Experience with network and log forensic analysis, malware triage analysis, and disk and memory forensics.
- Experience with enterprise security architecture and security controls.

**Preferred qualifications**:

- Bachelor's degree in Computer Science, a related technical field, or equivalent practical experience.
- Certifications in Cloud Platforms (e.g. Google Cloud Platform).
- Experience with Cloud incident response or forensics, Cloud incident response or forensics.
- Ability to communicate investigative findings and strategies to technical staff, executive leadership, legal counsel, and internal and external clients.
- Excellent written/verbal communication skills, with the ability to develop documentation and explain technical details in a concise manner.
- Exceptional time management skills.

**About the job**:
Mandiant Services provides incident response, assessment, transformation, managed detection and response, and training services with direct tactical support. Our Senior Incident Response Consultants resolve security incidents quickly, effectively, and at scale with complete incident response including investigation, containment, remediation, and crisis management.

Part of Google Cloud, Mandiant is a recognized leader in dynamic cyber defense, threat intelligence and incident response services. By scaling decades of frontline experience, Mandiant helps organizations to be confident in their readiness to defend against and respond to cyber threats.

**Responsibilities**:

- Collaborate with internal and customer teams to investigate and contain incidents. Conduct host forensics, network forensics, log analysis, and malware triage in support of incident response investigations.- Recognize and codify attacker Tools, Tactics, and Procedures (TTPs) and Indicators of Compromise (IOCs).- Build scripts, tools, or methodologies to enhance Mandiant’s incident investigation processes that can be applied to current and future investigations.
- Develop and present comprehensive and accurate reports, trainings, and presentations for technical and executive audiences.
- Utilize Mandiant technology to conduct investigations and examine endpoint and network-based sources of evidence.

Google is proud to be an equal opportunity workplace and is an affirmative action employer. We are committed to equal employment opportunity regardless of race, color, ancestry, religion, sex, national origin, sexual orientation, age, citizenship, marital status, disability, gender identity or Veteran status. We also consider qualified applicants regardless of criminal histories, consistent with legal requirements. See also Google's EEO Policy and EEO is the Law. If you have a disability or special need that requires accommodation, please let us know by completing our Accommodations for Applicants form.



  • Riyadh, Ar Riyāḑ, Saudi Arabia Innovative Solutions SA Full time

    Key ResponsibilitiesAs a Digital Forensics and Incident Response Consultant, you will be responsible for performing security assessments, developing threat detection strategies, and implementing response plans.You will also work collaboratively with client teams to enhance their security posture and ensure effective incident response processes are in...


  • Riyadh, Saudi Arabia Google Full time

    **Minimum qualifications**: - 5 years of experience leading Incident Response investigations, analysis, or containment actions. - Experience with network and log forensic analysis, malware triage analysis, and disk and memory forensics. - Experience with enterprise security architecture and security controls. **Preferred qualifications**: - Bachelor's...


  • Riyadh, Saudi Arabia RSA Full time

    The IR Consultant will predominantly assist Customers during cybersecurity incidents working in synergy with other IR team members and providing expert advice about how to investigate, contain and mitigate an ongoing attack. - The IR Consultant will also support with pre - and post-sale opportunities to help demonstrate threat hunting skills, while also...


  • Riyadh, Ar Riyāḑ, Saudi Arabia Fortinet, Inc. Full time

    Fortinet, Inc. is seeking a highly skilled Cybersecurity Risk Manager to join our proactive services team. As a key member of our team, you will be responsible for assessing customers' security posture, identifying vulnerabilities, and developing effective incident response plans.The ideal candidate will have a strong background in cybersecurity consulting,...


  • Riyadh, Ar Riyāḑ, Saudi Arabia GO Telecom - قو للاتصالات Full time

    We are seeking an Incident Response Manager to join our team at GO Telecom - قو للاتصالات. As a key member of our team, you will be responsible for developing and implementing incident response plans to ensure timely and effective responses to network incidents.Responsibilities:Incident Response Planning: Develop and implement incident response...


  • Riyadh, Ar Riyāḑ, Saudi Arabia Penta Consulting Full time

    Role SummaryThis is an exciting opportunity to join Penta Consulting's security operations team as a XSOAR Engineer. You will work closely with our clients to implement and optimize XSOAR solutions, ensuring their security operations are running smoothly.Key Accountabilities:Lead the design, development, and implementation of XSOAR playbooks and security...


  • Riyadh, Ar Riyāḑ, Saudi Arabia NETS-International Group Full time

    About the RoleThis is an exciting opportunity for a skilled Cybersecurity Incident Responder to join our team and contribute to our mission of protecting our clients' networks and systems from cyber threats.You will be responsible for investigating cybersecurity incidents, analyzing digital evidence, and developing and implementing incident response plans....


  • Riyadh, Ar Riyāḑ, Saudi Arabia Securera Full time

    As a Cybersecurity Coordination Lead at Securera, you will play a critical role in ensuring the smooth operation of our cybersecurity services. Your primary responsibility will be to orchestrate security incident response efforts and facilitate the integration of devices into our SIEM system.With your strong background in security operations and technical...


  • Riyadh, Ar Riyāḑ, Saudi Arabia NETS-International Group Full time

    NETS-International Group is a global leader in providing innovative solutions and systems integration. We empower the future by delivering integrated approaches and committing to excellence. Our service portfolio covers three verticals: infrastructure, digital, and managed solutions. We offer a range of services, including access networks, enterprise data...


  • Riyadh, Saudi Arabia Innovative Solutions Full time

    **Company Description**: Innovative Solutions (IS) is a leading pure-player Cybersecurity company established in 2003. With headquarters in Riyadh and presence in Al Khobar, Jeddah, Dubai, and Abu Dhabi, our mission is to bring trust to cyberspace and ensure your business is secured. We offer a wide range of cybersecurity solutions and services including...


  • Riyadh, Ar Riyāḑ, Saudi Arabia Innovative Solutions SA Full time

    Threat Detection and Response ConsultantCompany DescriptionInnovative Solutions (IS) is a leading pure-player Cyber security company in the GCC established in 2003, headquartered in Riyadh with a presence in Al Khobar, Jeddah, Dubai, and Abu Dhabi. Our Cybersecurity Solutions and Services encompass Advisory Services, Technical Assurance, Solution Deployment,...


  • Riyadh, Ar Riyāḑ, Saudi Arabia Palo Alto Networks Full time

    About the PositionPalo Alto Networks' Unit 42 is seeking a seasoned Consulting Director to lead our proactive cybersecurity consulting services. This role requires a professional with extensive experience in cybersecurity consulting, team leadership, and stakeholder engagement.In this position, you will oversee the delivery of our threat-led and...


  • Riyadh, Ar Riyāḑ, Saudi Arabia Ejada Systems Limited. Full time

    Job Summary: Ejada Systems Limited is seeking a highly skilled SOC Team Lead to lead daily operations, manage incident responses, and develop strategies to enhance the company's cybersecurity posture.Key Accountabilities:Oversee daily operations of the SOC team to ensure effective incident detection, response, and mitigation.Develop and implement incident...


  • Riyadh, Ar Riyāḑ, Saudi Arabia Maximus KSA | ماكسيموس السعودية Full time

    Key ResponsibilitiesThe Digital Forensics and Incident Response Expert will be responsible for investigating and analyzing security incidents, identifying root causes, and providing recommendations for prevention.Digital Forensics: Analyze digital evidence to identify the source and scope of a security incident.Incident Response: Collaborate with IT and...


  • Riyadh, Saudi Arabia CCDS Full time

    CCDS is a company that offers info-tech and next-gen cybersecurity services and solutions to improve enterprise security for the growing number of security threats out there. As a Cyber Incident Response Specialist, you will be responsible for overseeing security incidents and ensuring resolution in a timely and efficient manner. You will be tasked with...


  • Riyadh, Saudi Arabia ITShield Full time

    IT Shield is hiring 6 SOC L2 Incident response (IR) in one of STC Groups to join immediately. **Details**: - Location: Jeddah, On-site - Contract: One year, renewable - Who can Apply? Male only, any nationalities - Notice period: immediately, 2 weeks (max) **Key Responsibilities**: - Work closely with the information security departments and other...


  • Riyadh, Saudi Arabia Talent Pal Full time

    Assist in the investigation of cyber security incidents such as cybercrime, fraud, and data breaches. - Utilize digital forensics tools and techniques to extract, analyze, and preserve digital evidence. - Conduct data analysis using a variety of tools and techniques, including log analysis, network analysis, and memory analysis. - Document and report...


  • Riyadh, Ar Riyāḑ, Saudi Arabia Securera Full time

    About the Role">We are seeking an experienced SOC Supervisor to join our team at Securera. The successful candidate will have strong leadership skills, experience in security technologies, and the ability to respond to incidents.">Key Accountabilities:">Lead a team of security professionals in responding to incidents and maintaining the security...


  • Riyadh, Ar Riyāḑ, Saudi Arabia Itsecurityct Full time

    About Us">At IT Security C&T, we deliver cutting-edge security solutions to our clients in the MENA region.">Job Overview">This role involves working as part of a 24x7 security operation team, responsible for monitoring and managing all information security incidents and risks. The successful candidate will have a strong technical background and excellent...


  • Riyadh, Ar Riyāḑ, Saudi Arabia Innovative Solutions SA Full time

    About the Role:We are seeking an experienced Threat Detection and Response Consultant to join our team at Innovative Solutions. As a key member of our cybersecurity team, you will be responsible for providing expert guidance and support to clients in detecting and responding to cybersecurity threats.Your primary focus will be on conducting security...