Current jobs related to Digital Forensics - Newton - CyberArk


  • Newton, United States CyberArk Full time

    About CyberArkCyberArk is the global leader in Identity Security, providing comprehensive security solutions for any identity - human or machine - across business applications, distributed workforces, hybrid cloud workloads, and the DevOps lifecycle.Job DescriptionCyberArk is seeking a skilled and passionate DFIR & Threat Hunting Researcher to join its...


  • Newton, Massachusetts, United States CyberArk Full time

    CyberArk Job DescriptionCyberArk, the global leader in Identity Security, is seeking a skilled and passionate DFIR & Threat Hunting Researcher to join its Global Information Security Team.Key Responsibilities:Conduct digital forensics and threat-hunting activities across CyberArk's global network, endpoints, and cloud environments.Research and develop new...


  • Newton, United States CyberArk Full time

    About CyberArkCyberArk is the global leader in Identity Security, providing comprehensive security solutions for any identity – human or machine – across business applications, distributed workforces, hybrid cloud workloads, and throughout the DevOps lifecycle.Job DescriptionCyberArk is seeking a skilled and passionate DFIR & Threat Hunting Researcher to...

Digital Forensics

2 months ago


Newton, United States CyberArk Full time
About CyberArk

CyberArk is a leading provider of Identity Security solutions, specializing in Privileged Access Management. Our mission is to protect the world's most critical assets from cyber threats.

Job Description

We are seeking a highly skilled and passionate Cyber Security Researcher & Threat Hunter to join our Global Information Security Team. In this role, you will be responsible for conducting digital forensics and threat-hunting activities across our global network, endpoints, and cloud environments.

Key Responsibilities:
  • Digital Forensics and Incident Response (DFIR):
    • Perform in-depth digital forensics analysis on various types of evidence, including disk, memory, network, and cloud artifacts.
    • Support incident response efforts by providing technical expertise, containment, eradication, and recovery guidance.
    • Maintain and operate forensic tools and platforms, ensuring they are up-to-date and reliable.
    • Document and report on forensic findings and recommendations, following established procedures and standards.
  • Threat Hunting:
    • Proactively hunt for malicious activity and indicators of compromise across our network, endpoints, and cloud environments using various data sources and analytical techniques.
    • Develop and refine custom threat-hunting hypotheses, queries, and dashboards based on the latest threat intelligence and trends.
    • Collaborate with the SOC team to validate, escalate, and respond to identified threats.
  • Research and Development:
    • Research emerging threats, attack vectors, threat actors, ATPs, security technologies, and CyberArk products, sharing insights and best practices with the team and the broader security community.
    • Develop and improve tools, scripts, correlation alerts, and automation to enhance the SOC team's DFIR and threat-hunting capabilities.
Requirements:
  • Proven (5+ years) experience in digital forensics and incident response, preferably in a tech company or a security consulting firm.
  • Hands-on experience with industry-standard forensic tools and platforms.
  • Hands-on experience with threat-hunting tools, query languages, and platforms, such as ELK, Splunk, QRadar, KQL, SQL, etc.
  • Strong knowledge of network protocols, operating systems, malware analysis, and cloud security.
  • Ability to automate tasks using a scripting language such as Python & JS.
  • Excellent communication and interpersonal skills.
  • Excellent proficiency in English, both written and verbal, is a must.
  • Curious and creative mindset, with a passion for learning and solving complex problems.
  • Ability to work independently and collaboratively in a fast-paced, dynamic environment and with a multi-region team.