Principal Cloud Incident Response Consultant

2 months ago


Atlanta, Georgia, United States Iconma, LLC Full time

The Principal Cloud Incident Response Consultant is responsible for maturing the organization's Advanced Cloud Incident Response capabilities, especially around Azure/365 and/or AWS.

Objective is to bring advanced external expertise to the organization to consult on routine cyber investigations, escalations, and incidents, especially around Cloud.

This role will be expected to be both a strong communicator and skilled hands-on practitioner.

In order to make an application, simply read through the following job description and make sure to attach relevant documents.

The role will also deliver specific deliverables including, but not limited to:
Maintain Cloud Platform Response Guides
Create detailed Knowledge Base Entries
Uncover malicious activity
Enumerate and request specific cloud privileges for monitoring & IR functions.
Enhance existing SOC Runbooks for the cloud.
Contribute to tuning of cloud alerts.

Requirements:
The selected candidate must demonstrate an understanding of the most popular cloud concepts. The candidate must demonstrate an understanding of key cloud resources and logs used to facilitate incident response and forensics.

This role must have a strong knowledge of cloud (Azure, AWS) to effectively threat hunt and respond to advanced attacks.

The ability to quickly identify nefarious artifacts versus benign activity will be a key skill for this position. This role must have problem solving skills for structured, unstructured, and complex situations.
Following is a summary of the essential functions for this job.
Extensive hands-on experience conducting cyber incident investigations in Azure/M365 environments (AWS will be considered as well)
Strong ability to express their skills and knowledge in both verbal and written forms.
Experience developing high-quality deliverables about deep technical concepts.

Conduct cyber investigations for escalated and challenging computer security incidents using computer forensics, network forensics, root cause analysis and/or malware analysis.

Participate in the creation and maintenance of use cases for recurring investigation/incident triggers in support of the 24/7 Cybersecurity Threat Operations and Cybersecurity Threat Management program.

Participate in the creation and maintenance of playbooks used in response for investigation/incident triggers in support of 24/7 Cybersecurity Threat Operations and Cybersecurity Threat Management program.

Interface with other teams in Information Security (e.g.

network operations, Cyber Threat Operations Center (CTOC), vulnerability management) along with information and liability risk officers and technology management to help guide cyber security investigations and incidents.

Identify new threat tactics, techniques and procedures used by cyber threat actors.
Proactively engage in threat hunting activities to proactively search for threats in the enterprise environment.

Plus/Nice to Have Skills/Prior Experiences:
Experience working in cloud environments, namely Microsoft Azure
Industry certifications in general technology and security (e.g. Network+, Security+, CySA+, AWS Certified Cloud Practitioner, Microsoft Azure Fundamentals, etc.)
Industry certifications in cyber forensics and incident response, such as GIAC Cloud Forensics Responder (GCFR), Certified Forensic Computer Examiner (CFCE), GIAC Certified Forensic Examiner (GCFE), GIAC Certified Forensic Analyst (GCFA), GIAC Certified Incident Handler (GCIH), GIAC Reverse Engineering Malware (GREM), and other related credentials
Demonstrated technical leadership experience
Strong SOC experience, Cloud Incident, Threat Management, forensic

As an equal opportunity employer, ICONMA provides an employment environment that supports and encourages the abilities of all persons without regard trace, color, religion, age, sex, national origin, disability status, genetics, protected veteran status, sexual orientation, gender identity or expression, or any other characteristic protected by federal, state, or local laws.

Surya Singh

M:

Estimated Salary:
$20 to $28 per hour based on qualifications.

  • Atlanta, Georgia, United States Incident IQ Full time

    Incident IQ Technical Sales Consultant Job DescriptionCompany Overview:Based in Atlanta, Incident IQ is a software-as-a-service (SaaS) platform dedicated to enhancing service management for K-12 educational institutions. Our innovative solutions are designed to streamline various workflows, including IT asset management, help desk operations, facilities...


  • Atlanta, Georgia, United States Genpact Full time

    **About Genpact**Genpact is a global professional services and solutions firm delivering outcomes that shape the future. Our 125,000+ people across 30+ countries are driven by our innate curiosity, entrepreneurial agility, and desire to create lasting value for clients.**Our Purpose**Powered by our purpose – the relentless pursuit of a world that works...


  • Atlanta, Georgia, United States Nuvei Full time

    SOC Analyst at NuveiNuvei stands at the forefront of the fintech industry, delivering cutting-edge payment solutions to enterprises across the globe. We are committed to maintaining the highest standards of security and are in search of a proficient SOC Analyst to enhance our dynamic team.Key Responsibilities:Monitor security alerts and respond to potential...


  • Atlanta, Georgia, United States Apex Systems Full time

    Job Title: Sr. SOC AnalystLocation: RemoteHours:Flexible scheduling to meet business needs, including 1 Sunday to Wednesday and 1 Wednesday to SaturdayContract Length: 18 MonthsResponsibilities:Incident Response:• Characterize and analyze alerts to understand potential threats and prioritize incident response efforts.• Perform event correlation using...


  • Atlanta, Georgia, United States Motion Recruitment Full time

    We just partnered with a company in the consulting space that is looking to add a Principal Software Engineer, specifically with Java, to their team. You would be coming in to work with their main client who is one of the largest fast food chains down here in Atlanta. They are looking to add someone with extensive experience with AWS and Java- ideal...


  • Atlanta, Georgia, United States STONE Resource Group Full time

    This is a fulltime opportunity and is not open to C2C, C2H, OPT or Visa considerations. Candidates MUST be local to Atlanta. NO vendor support of any kindPosition Overview:We are in search of a highly proficient and seasoned Lead Cloud Solutions Engineer to become a vital member of our innovative team at STONE Resource Group. The successful applicant will...


  • Atlanta, Georgia, United States Net2Source Inc. Full time

    Job SummaryWe are seeking a highly skilled Akamai Consultant to join our team at Net2Source Inc. as a key member of our technology division. The ideal candidate will have extensive experience in Akamai Suite and a strong background in cloud security, digital experience, and IT tooling systems.Key ResponsibilitiesTools Support - Provide expert-level support...


  • Atlanta, Georgia, United States Incident IQ Full time

    Job OverviewIncident IQ Senior Technical RecruiterCompany BackgroundBased in Atlanta, Incident IQ is a software-as-a-service (SaaS) platform dedicated to enhancing service management within K-12 educational institutions. Our innovative solutions streamline various workflows, including IT asset management, help desk ticketing, facilities maintenance, and...


  • Atlanta, Georgia, United States Incident IQ Full time

    Job OverviewIncident IQ Senior Technical RecruiterCompany BackgroundBased in Atlanta, Incident IQ is a software-as-a-service (SaaS) platform designed specifically for K-12 educational institutions. Our innovative solutions are reshaping K-12 operational workflows, including IT asset management, help desk ticketing, facilities maintenance, and Human Resources...


  • Atlanta, Georgia, United States Tech Spot Consulting Llc Full time

    Job OverviewWe are looking for a Cloud Infrastructure Security Specialist to enhance the security of our cloud network operations. This role is fully remote and will focus on managing cloud-native network access controls across Azure and Google Cloud Platform (GCP) using Infrastructure as Code (IaC) automation through Terraform.Key Responsibilities:Oversee...


  • Atlanta, Georgia, United States Incident IQ Full time

    Job OverviewPosition: Senior RecruiterCompany BackgroundIncident IQ, headquartered in Atlanta, is a software-as-a-service (SaaS) platform dedicated to enhancing service management for K-12 educational institutions. Our innovative solutions streamline various workflows, including IT asset management, help desk operations, facilities maintenance, and Human...


  • Atlanta, Georgia, United States Incident IQ Full time

    Job OverviewIncident IQ Senior Technical RecruiterCompany OverviewIncident IQ, headquartered in Atlanta, is a cutting-edge SaaS platform dedicated to service management tailored for K-12 educational institutions. Our innovative solutions are reshaping workflows across various domains such as IT asset management, help desk operations, facilities maintenance,...


  • Atlanta, Georgia, United States Incident IQ Full time

    Job OverviewIncident IQ Senior RecruiterCompany BackgroundIncident IQ, headquartered in Atlanta, is a SaaS service management platform dedicated to K-12 educational institutions. Our innovative solutions are designed to enhance various workflows, including IT asset management, help desk ticketing, facilities maintenance, and Human Resources service delivery....


  • Atlanta, Georgia, United States Noblesoft Technologies Full time

    Job DescriptionRoleOracle EPM Technical ConsultantJob SummaryNoblesoft Technologies is seeking an experienced Oracle EPM Technical Consultant to join our team. As a key member of our consulting team, you will be responsible for providing technical expertise and leading clients through the entire cloud application service implementation lifecycle for Oracle...


  • Atlanta, Georgia, United States ASK Consulting Full time

    Job OverviewImportant Note: All candidates must be directly contracted by ASK Consulting on their payroll and cannot be subcontracted. We are unable to provide sponsorship at this moment.Position Title: Cloud Security Operations SpecialistWork Arrangement: HybridContract Duration: 4 months (Potential for extension)Compensation: $85.71 per hourRole Summary:We...


  • Atlanta, Georgia, United States GreenSky Full time

    OverviewHeadquartered in Atlanta, Georgia, GreenSky is a leading U.S. financial technology company Powering Commerce at the Point of Sale for a growing ecosystem of merchants, consumers, and banks. Our highly scalable, proprietary, and patented technology platform enables merchants to offer frictionless promotional payment options to consumers at the...


  • Atlanta, Georgia, United States Pyramid Consulting, Inc Full time

    We are seeking a skilled Cloud Security Engineer for a significant contract opportunity. This role offers the potential for long-term engagement and involves working in a hybrid environment.Job ID:Compensation: $84/hour. Employee benefits include health insurance (medical, dental, vision).Essential Qualifications:Experience with CNAPP tools (Palo Alto Prisma...


  • Atlanta, Georgia, United States Catapult Solutions Group Full time

    Job Description**Job Title:** Cloud Security Engineer**Company:** Catapult Solutions GroupWe are seeking a highly skilled Cloud Security Engineer to join our team and play a critical role in managing and enhancing cloud security operations across Azure, AWS, and OCI environments. This position is essential for ensuring the security, compliance, and efficient...


  • Atlanta, Georgia, United States Tech Tammina LLC Full time

    Job OverviewPosition: Senior Cloud Security ArchitectCompany: Tech Tammina LLCLocation: RemoteContract Duration: Long-termCompensation: Competitive Market RateKey Competencies:Prisma Cloud, AWS, Kubernetes/AnthosImplementation of Preventative Controls in cloud environmentsContainer Security Controls review and enforcementCore Responsibilities:Take ownership...


  • Atlanta, Georgia, United States Truist Full time

    The position is described below. If you want to apply, click the Apply Now button at the top or bottom of this page. After you click Apply Now and complete your application, you'll be invited to create a profile, which will let you see your application status and any communications. If you already have a profile with us, you can log in to check status.Need...