Uncubed
   

Senior Incident Response Investigator - Location Negotiable

Accenture, VA - Arlington, USA

Accenture drives innovation to improve the way the world works and lives.


Job Functions  

·                Lead end-to-end incident response investigations with Accenture’s customers 

·                Identify and investigate intrusions to determine the cause and extent of the breach, by leveraging EDR solutions and threat intelligence sources  

·                Conduct host forensics, network forensics, log analysis, and malware analysis in support of incident response investigations 

·                Conduct threat hunting across customer’s networks with indicators of compromise, hunting for evidence of a compromise 

·                Conduct incident response within various Cloud platforms    

·                Identify attacker tools, tactics, and procedures to develop indicators of compromise 

·                Develop and implement remediation plans in conjunction with incident response  

·                Form and articulate expert opinions based on findings and analysis 

·                Produce comprehensive and accurate oral and written reports and presentations for both technical and executive audiences 

·                Effectively communicate and interface with customers, both technically and strategically from the executive level, to customers stakeholders and legal counsel 

·                Support leadership in properly scoping engagements with innovative methodical approaches, based on customer requirements 

·                Lead engagement delivery from kickoff through remediation, either on premises or remote, depending on customer requirements 

·                On-site, customer travel will be required for this position, with the requirement to travel up to 50% 

 

Desired Skills  

·                Expert knowledge of forensic file system and memory techniques and use of the most commonly used toolsets, such as EnCase and FTK Suite 

·                Deep technical knowledge of methods utilized for evidence collection, maintenance of chain of custody and associated documentation, evidence storage and analysis, and evidentiary reporting  

·                Experience with IDA Pro, OllyDbg, other disassemblers/debuggers 

·                Thorough understanding of cyber security operations, security monitoring, EDR and SIEM tools, to include Endgame, Falcon, and Splunk 

·                Detailed knowledge of Windows & Unix based operating systems and administrative tools  

·                Windows disk and memory forensics 

·                Unix or Linux disk and memory forensics 

·                Static and dynamic malware analysis 

·                Network traffic and protocol analysis utilizing tools such as Wireshark 

·                Applied knowledge of security controls such as authentication and identity management, security enhanced network architectures and application based controls (including Windows, Unix, and network equipment)  

·                Excellent time management, writing and communication skills 

·                Strong analytic, qualitative, and quantitative reasoning skills 

 

Nice Skills to Have 

·                Bachelor's Degree in Computer Engineering, Computer Science, Cyber Security, Information Security or related disciplines  

·                Security certifications: CISSP, SANS GIAC (GREM, GCFA, GCIH), OSCP 

Minimum 5 years of comparable experience 



What We Believe


We have an unwavering commitment to diversity with the aim that every one of our people has a full sense of belonging within our organization. As a business imperative, every person at Accenture has the responsibility to create and sustain an inclusive environment.


Inclusion and diversity are fundamental to our culture and core values. Our rich diversity makes us more innovative and more creative, which helps us better serve our clients and our communities. Read more here


Equal Employment Opportunity Statement


Accenture is an Equal Opportunity Employer. We believe that no one should be discriminated against because of their differences, such as age, disability, ethnicity, gender, gender identity and expression, religion or sexual orientation.


All employment decisions shall be made without regard to age, race, creed, color, religion, sex, national origin, ancestry, disability status, veteran status, sexual orientation, gender identity or expression, genetic information, marital status, citizenship status or any other basis as protected by federal, state, or local law.


Accenture is committed to providing veteran employment opportunities to our service men and women.


For details, view a copy of the Accenture Equal Opportunity and Affirmative Action Policy Statement.


Requesting An Accommodation


Accenture is committed to providing equal employment opportunities for persons with disabilities or religious observances, including reasonable accommodation when needed. If you are hired by Accenture and require accommodation to perform the essential functions of your role, you will be asked to participate in our reasonable accommodation process. Accommodations made to facilitate the recruiting process are not a guarantee of future or continued accommodations once hired.


If you would like to be considered for employment opportunities with Accenture and have accommodation needs for a disability or religious observance, please call us toll free at 1 (877) 889-9009, send us an email or speak with your recruiter.


Other Employment Statements


Applicants for employment in the US must have work authorization that does not now or in the future require sponsorship of a visa for employment authorization in the United States.


Candidates who are currently employed by a client of Accenture or an affiliated Accenture business may not be eligible for consideration.


Job candidates will not be obligated to disclose sealed or expunged records of conviction or arrest as part of the hiring process.


The Company will not discharge or in any other manner discriminate against employees or applicants because they have inquired about, discussed, or disclosed their own pay or the pay of another employee or applicant. Additionally, employees who have access to the compensation information of other employees or applicants as a part of their essential job functions cannot disclose the pay of other employees or applicants to individuals who do not otherwise have access to compensation information, unless the disclosure is (a) in response to a formal complaint or charge, (b) in furtherance of an investigation, proceeding, hearing, or action, including an investigation conducted by the employer, or (c) consistent with the Company's legal duty to furnish information.

About Accenture

Work where you’re inspired to explore your passions, where your talents are nurtured and cultivated. Innovate with leading-edge technologies on some of the coolest projects you can imagine. And get the tools you need to keep learning and growing so you stay continually ahead of the game while making a difference in the world. With approximately 442,000 people serving clients in more than 120 countries, Accenture drives innovation to improve the way the world works and lives.


Be a Better Accenture Candidate

Learn skills and get an insider's look at Accenture when you watch classes taught by their top employees.

Want to learn more about Accenture? Visit Accenture's website.