5 days old

Threat Hunting and Incident Response Consultant-Location Negotiable

Washington, DC 20044

Accenture is a leading global professional services company, providing a broad range of services and solutions in strategy, consulting, digital, technology and operations. Combining unmatched experience and specialized skills across more than 40 industries and all business functions underpinned by the worlds largest delivery network Accenture works at the intersection of business and technology to help clients improve their performance and create sustainable value for their stakeholders. With approximately 469,000 people serving clients in more than 120 countries, Accenture drives innovation to improve the way the world works and lives. Visit us at www.accenture.com.

People in our Client Delivery & Operations career track drive delivery and capability excellence through the design, development and/or delivery of a solution, service, capability or offering. They grow into delivery-focused roles, and can progress within their current role, laterally or upward.

Security professionals apply deep security skills to design, build and protect enterprise systems, applications, data, assets and people for Accenture and our clients.

The Security Specialist apply deep security skills to provide the following Security Services: design, build and protect enterprise systems, applications, data, assets and people for Accenture and our clients. In addition, the role might require providing services to help clients protect their information, infrastructures, applications and business processes against cyber threats.

Job Description

Security and Risk professionals develop and deliver solutions that protect enterprise systems, applications and data by establishing policies, practices and tools that prevent unauthorized access, use, disclosure, modification or disruption.

A professional at this position level within Accenture has the following responsibilities:

Adapts existing methods and procedures to create possible alternative solutions to moderately complex problems.

Understands the strategic direction set by senior management as it relates to team goals.

Uses considerable judgment to determine solution and seeks guidance on complex problems.

Primary upward interaction is with direct supervisor. May interact with peers and/or management levels at a client and/or within Accenture.

Determines methods and procedures on new assignments with guidance.

Decisions often impact the team in which they reside.

Manages small teams and/or work efforts (if in an individual contributor role) at a client or within Accenture.

FusionX is an elite cyber security consulting organization within Accenture Security, specializing in adversary simulation, red teaming, cyber defense consulting, incident response and threat hunting.

Our Cyber Investigation and Forensic Response (CIFR) practice is rapidly growing, and we are hiring mid to very senior level incident response and threat hunting professionals to work with our F500 enterprise customers. With our recent acquisitions we continue to enhance our incident response, threat hunting, forensics, threat intelligence, and red teaming capabilities.

At FusionX, you will be part of a specialized team to respond to some of the largest and most complex data breaches around the world, as well as conduct proactive cyber threat hunting in some of the most complex corporate environments, leveraging a variety of tools and techniques. You will work in a fast paced and highly collaborative environment.

Job Responsibilities:

+ Identify and investigate intrusions to determine the cause and extent of the breach, leveraging threat intelligence sources

+ Hunt for and identify threat actor groups and their techniques, tools, and processes

+ Participate in Hunt missions using threat intelligence, analysis of anomalous log data and anomalous sessions to detect and eradicate threat actors

+ Develop Threat Hunting dashboards and reports to identify potential threats, suspicious/anomalous activity, and malware

+ Identify malicious or anomalous activity based on event data from network flows, EDR and other sources

+ Perform deep dive analysis by correlating data from various sources

+ Provide expert analytic investigative support for critical Incident Response security incidents

+ Maintain proficiency with security standards, tools and practices

+ Produce comprehensive and accurate oral and written reports and presentations for both technical and executive audiences

+ Effectively communicate and interface with client, both technically and strategically from the executive level, to client stakeholders and legal counsel

+ Act as an escalation support for clients Incident Response teams on critical security events

+ On-site, client travel will be required for this position depending on client requirements, up to 50%

Basic Qualifications:

+ Minimum of 5 years of experience in Information Security Incident Response, Cyber Threat Hunting

+ Minimum of 5 years of experience in successful innovative hunts that are completed in a timely manner

+ Minimum of 5 years of experience and thorough understanding of how to identify malicious activity within a network and think outside the box to discover the signal within the noise

+ Minimum of 5 years of experience working across organizational and geographic boundaries

+ Minimum of 5 years of experience and familiarity with EDR security tools for Threat Hunting

+ Minimum of 5 years of experience in performing malware analysis

+ Minimum of 5 years of experience utilizing SIEM tool effectively in triage events and search capabilities

Required Skills:

+ Strong background within Incident Response & Threat Hunting including IOC (Indicators of Compromise) & TTP (Tactics, Techniques & Procedures)

+ Strong knowledge in TCP/IP, cryptographic protocols and algorithms, operating system (MAC\Linux\Windows) internals and operations

+ Deep Understanding of common Attack Vectors DDoS attacks, Phishing, Web Attacks, and Malware

Nice to have:

+ Security certifications: SANS GIAC (GREM, GCFA, GCIH), OSCP

+ Experience in user behavior analytics tools and investigation

+ Experience in Endpoint Detection and Response (EDR) and Network Forensic tools

Professional Skill Requirements

Proven success in contributing to a team-oriented environment Proven ability to work creatively and analytically in a problem-solving environment Desire to work in an information systems environment Excellent leadership, communication (written and oral) and interpersonal skills

Applicants for employment in the US must have work authorization that does not now or in the future require sponsorship of a visa for employment authorization in the United States and with Accenture.

Candidates who are currently employed by a client of Accenture or an affiliated Accenture business may not be eligible for consideration.

Accenture is a federal contractor and an EEO and Affirmative Action Employer of Females/Minorities/Veterans/Individuals with Disabilities.

Equal Employment Opportunity

All employment decisions shall be made without regard to age, race, creed, color, religion, sex, national origin, ancestry, disability status, veteran status, sexual orientation, gender identity or expression, genetic information, marital status, citizenship status or any other basis as protected by federal, state, or local law.

Job candidates will not be obligated to disclose sealed or expunged records of conviction or arrest as part of the hiring process.

Accenture is committed to providing veteran employment opportunities to our service men and women.

Posted: 2019-11-08 Expires: 2019-12-08

Before you go...

Our free job seeker tools include alerts for new jobs, saving your favorites, optimized job matching, and more! Just enter your email below.

Share this job:

Threat Hunting and Incident Response Consultant-Location Negotiable

Washington, DC 20044

Join us to start saving your Favorite Jobs!

Sign In Create Account
Powered ByCareerCast