[Remote] Sr. Cyber Analyst, Digital Forensics Incident Response at At-Bay

United States

At-Bay Logo
Not SpecifiedCompensation
Senior (5 to 8 years)Experience Level
Full TimeJob Type
UnknownVisa
Cybersecurity, InsuranceIndustries

Requirements

  • Bachelor’s degree or equivalent
  • Minimum of 4 years of experience in cybersecurity operations, incident response, incident recovery, or another security discipline
  • Willingness to travel as needed to perform job functions
  • Previous digital forensics and incident response experience
  • Strong oral and written communication skills
  • Previous hands-on experience performing digital forensics and incident response, including several of: Business Email Compromise, Ransomware, Digital evidence collection and analysis, Development and analysis of cyber threat intelligence, Leadership of or participation in investigations involving digital evidence, Intrusion detection / cyber threat hunting, Malware analysis, Incident recovery activities such as restoration of data from backups, operation of decryptor tools, etc
  • Previous hands-on experience working in information technology operations (e.g., Network Operations Center, Security Operations Center, Incident Response Team, etc.)
  • Strong knowledge of Windows and Unix/Linux operating systems
  • Expertise in threat hunting, network forensics, and EDR / EPP technologies
  • Preferred requirements
  • Significant undergraduate or graduate coursework in computer science, computer engineering, information systems, or cybersecurity
  • Previous background in law enforcement or government/military with experience leading complex technical investigations
  • Knowledge of cloud environments, including knowledge of cloud security products and services offered by major cloud service providers (e.g., AWS, Azure, Google)
  • Experience in a top-10 cyber consulting firm or leading DFIR provider
  • One or more industry cybersecurity certifications (e.g., GCIH, Security+, CISSP, etc.)

Responsibilities

  • Forensically sound collection, transmission, and storage of digital evidence
  • Analysis of digital evidence to identify indicators of compromise and adversary activity
  • Development of incident timelines and theories of compromise
  • Identification of incident root causes
  • Participation in threat actor negotiations as necessary (e.g., ransom negotiations, etc.)
  • Participation in incident recovery (e.g., restoration of data from backups, reimaging workstations and servers, rebuilding network infrastructure, etc.) activities as necessary
  • Development and delivery of incident reports to document key incident details for engagement stakeholders including executive leaders for insureds, breach coach attorneys, and At-Bay claims management staff as necessary
  • Development and delivery of recommendations to mitigate the risk of future incidents for impacted insureds
  • Development and delivery of incident response training and simulations for targeted insureds

Skills

Key technologies and capabilities for this role

Digital ForensicsIncident ResponseDFIREvidence CollectionIndicators of CompromiseAdversary Activity AnalysisIncident TimelinesRoot Cause AnalysisRansom NegotiationsIncident RecoveryData RestorationIncident ReportingRisk MitigationThreat Intelligence

Questions & Answers

Common questions about this position

What are the minimum experience requirements for this Sr. Cyber Analyst role?

Candidates need a Bachelor’s degree or equivalent and a minimum of 4 years of experience in cybersecurity operations, incident response, incident recovery, or another security discipline.

What key skills are required for the Digital Forensics Incident Response position?

The role requires previous digital forensics and incident response experience, strong oral and written communication skills, hands-on experience in areas like ransomware, digital evidence collection, threat hunting, malware analysis, strong knowledge of Windows and Unix/Linux, and expertise in threat hunting, network forensics, and EDR/EPP technologies.

Is travel required for this job?

Yes, willingness to travel as needed to perform job functions is required.

What is the salary or compensation for this position?

This information is not specified in the job description.

What makes a strong candidate for this DFIR role at At-Bay?

A strong candidate will have hands-on experience in digital forensics and incident response including ransomware, BEC, malware analysis, threat hunting, and incident recovery, plus prior IT operations experience in SOC/NOC and expertise in relevant technologies.

At-Bay

Provides insurance and cybersecurity solutions

About At-Bay

At-Bay provides businesses with solutions to manage cyber risk by combining insurance and cybersecurity technology. The company offers various types of specialty insurance, including Cyber, Tech Errors & Omissions (E&O), and Miscellaneous Professional Liability (MPL). At-Bay's approach integrates these insurance products with advanced cybersecurity services, allowing clients to address their cyber risk comprehensively. Unlike many traditional insurance providers, At-Bay focuses specifically on the intersection of insurance and cybersecurity, which sets it apart in the market. The goal of At-Bay is to help businesses effectively manage and mitigate cyber risks while fostering an inclusive workplace and expanding its global presence.

San Francisco, CaliforniaHeadquarters
2016Year Founded
$284MTotal Funding
SERIES_DCompany Stage
Cybersecurity, Financial ServicesIndustries
201-500Employees

Benefits

Health, dental, & vision
20 days paid vacation
401k
Paid parental leave
Quarterly wellness days & mental health resources
Flexible working hours & remote work
Investment in learning & development
Life insurance & disability

Risks

Shutdown of Relay platform may indicate financial or strategic challenges.
Increase in ransomware incidents could lead to higher claims and insurance payouts.
Dependency on CrowdStrike's technology poses risks if partnership dynamics change.

Differentiation

At-Bay integrates insurance and cybersecurity, offering a unique InsurSec solution.
The company provides comprehensive Cyber, Tech E&O, and MPL insurance coverage.
At-Bay's proprietary cybersecurity solutions include the At-Bay Stance Managed Detection & Response.

Upsides

Expansion of Cyber and Tech E&O coverage taps into larger enterprise markets.
Partnership with CrowdStrike enhances cyber resilience for SMBs with advanced security capabilities.
AI-driven risk assessments improve underwriting and claims processing, reducing costs.

Land your dream remote job 3x faster with AI