Manager, Incident Response (Remote - Canada)

  • Ottawa
  • Mandiant

Company Description

Since 2004, Mandiant has been a trusted partner to security-conscious organizations. Effective security is based on the right combination of expertise, intelligence, and adaptive technology, and the Mandiant Advantage SaaS platform scales decades of frontline experience and industry-leading threat intelligence to deliver a range of dynamic cyber defense solutions. Mandiant’s approach helps organizations develop more effective and efficient cyber security programs and instills confidence in their readiness to defend against and respond to cyber threats.

Job Description : What You Will Do :

  • Recommend and document specific counter-measures and mitigating controls
  • Assist with scoping prospective engagements, participating in engagements from kickoff through full remediation, and mentoring less experienced staff
  • Identify, market, and develop new business opportunities
  • Articulate Mandiant’s capabilities in marketing discussions, proposal efforts, and capability briefings
  • Develop comprehensive and accurate reports and presentations for both technical and executive audiences
  • Utilize Mandiant technology to conduct large-scale investigations and examine host and network-based sources of evidence.
  • Supervise staff, provide feedback and coaching, and grow their technical and consulting skills
  • Improve Mandiant’s business processes and incident response methodologies.

Qualifications : Minimum Requirements :

  • 8+ years of incident response and/or information security experience

  • 2+ years of management experience

  • Technical experience in at least three of the following areas:

  • Windows disk and memory forensics

  • Network Security Monitoring (NSM), network traffic analysis, and log analysis

  • Unix or Linux disk and memory forensics

  • Static and dynamic malware analysis

  • Applied knowledge in at least one scripting or development language (such as Python)

  • Thorough understanding of enterprise security controls in Active Directory / Windows environments

  • Must be eligible to work in Canada without sponsorship

Desired Qualifications :

  • Ability to leverage project management skills to effectively budget, scope, and execute engagements
  • Ability to manage multiple projects and manage tight deadlines
  • Prior training and public speaking engagement experience
  • Ability to lead a team of highly technical security professionals
  • Ability to prepare and review customized contracts for security consulting services
  • Willingness to travel up to 30%