Deskripsi Pekerjaan
We are seeking a highly skilled and strategic Lead Engineer to join our Cyber Security Office. In this pivotal role, you will spearhead the investigation of complex cybersecurity incidents, ensuring the integrity and security of our digital infrastructure. You will lead the triage and analysis of security breaches, working closely with cross-functional teams to implement containment strategies and conduct rigorous forensic analysis. We are looking for a leader who can drive our incident response capabilities, mentor technical talent, and ensure our organization remains resilient against evolving cyber threats.
This is an opportunity to work in a high-impact environment where your expertise will directly protect sensitive data and maintain operational continuity.
Tanggung Jawab
- Lead and direct investigations into cybersecurity incidents, including malware analysis, phishing attacks, and data breaches.
- Perform comprehensive digital forensics on endpoints, servers, and network traffic to identify the root cause of incidents.
- Develop, maintain, and improve Incident Response (IR) playbooks and standard operating procedures (SOPs).
- Conduct security triage, categorize threats, and coordinate immediate containment strategies to minimize business impact.
- Lead post-incident reviews (PIR) to document technical findings and recommend long-term remediation strategies.
- Collaborate with legal, compliance, and executive teams to handle evidence preservation and regulatory reporting.
- Mentor and guide junior forensic analysts and security engineers on advanced investigation techniques.
Kualifikasi
- Strong background in Digital Forensics and Incident Response (DFIR) with hands-on experience.
- Bachelor’s degree in Computer Science, Cybersecurity, Information Security, or a related technical field.
- Certifications such as CISSP, CISM, CEH, GCFA, or GCIH are highly preferred.
- Proficiency in SIEM tools (e.g., Splunk, QRadar) and log analysis for threat detection.
- Experience with scripting languages (Python, Bash) for automating forensic workflows.
- Deep understanding of network protocols, operating systems (Windows/Linux), and common attack vectors.
- Excellent communication skills to present complex forensic findings to non-technical stakeholders.