Responsibilities:
- Perform forensic analysis for cyber incidents
- Collect and analyze artifacts from compromised systems to reconstruct the attack timeline
- Identify the methods and tools used by attacker and understand how the attack occurred
- Determine the full scope of cyber incident
- Provide solutions to prevent future incidents
- Link the attack to a known threat group and identify potential attacker location
- Write forensic investigation report
- Conduct in-depth analysis of malware (including static and dynamic analysis) and uncover its capabilities
- Write detailed malware analysis report
- Stay up-to-date on the latest exploitation/attack techniques
Required Skills and Qualifications:
- At least 3 years of experience in cyber security
- Strong understanding of assembly language (ASM)
- Experience with reverse engineering tools, such as IDA Pro, x32dbg/x64dbg, WinDbg, Ghidra, GDB, dnSpy, etc.
- Programming experience with languages (e.g. C, C++, Python), scripting languages (e.g. PowerShell, JavaScript, VBS)
- Knowledge of common cryptographic methods and algorithms (e.g. AES, DES, RSA), hashing, and encoding techniques
- Strong knowledge of Windows and Linux operating systems
- Strong knowledge of virtualization technologies and sandboxing techniques
- Strong understanding of code obfuscation and de-obfuscation
- Knowledge of most common networking protocols such as TCP/IP, DNS, HTTP(S), etc.
- Ability to work collaboratively in a team and independently
- Good communication skills
Education– Bachelor or higher degree in computer science or related fields.
Wage ranges are based on various factors including the labor market, job type, and job level. Exact salary offers will be determined by factors such as the candidate's subject knowledge, skill level, qualifications, experience, and geographic location.