Together as defenders united we can successfully reverse the adversary advantage and put an end to cyber attacks.

Senior Incident Response Consultant at Cybereason (Remote)

| Remote
Sorry, this job was removed at 11:02 a.m. (EST) on Tuesday, November 16, 2021
Find out who’s hiring remotely
See all Remote jobs
Apply Now
By clicking continue you agree to Built In’s Privacy Policy and Terms of Use.

Cybereason gives organizations the upper hand by taking an entirely new approach to cybersecurity with AI Hunting, the first AI-powered technology that answers the question “Am I under attack?” proactively, without manual effort.

We are a company that wins as one.  We are daring, always evolving, and never give up.  Most importantly we accept our employee for who they are and embrace people that may not fit the typical mold #UBU.

The Cybereason Incident Response Team is hiring talented and motivated investigators eager to participate in the delivery and development of our advanced suite of high-end response tools and services. Focusing as much on building and developing innovative and industry leading capabilities as on the investigative and strategic engagement of threat actors, this is a role for those who are passionate about pushing the industry forward and raising the bar for Incident Response. The Senior Incident Response Consultant reports to the Incident Response Manager, Americas.

What you will do:

  • Lead and assist with every stage of Incident Response lifecycle, including: scoping, analysis, remediation, reporting, and tactical communications.
  • Conduct log analysis, host forensics, network forensics, and malware triage in support of ongoing Incident Response investigations using Cybereason’s advanced response tooling.
  • Utilize Cybereason’s proprietary IR technology to conduct large-scale investigations across both the EDR and Digital Forensic evidence landscape.
  • Contribute technical content such as playbooks, scripts, and automation tooling to enhance IR processes, investigation workflows, and IR infrastructure.
  • Conduct research into forensic artifacts, behavioural analysis and threat hunting techniques and implement them in the Cybereason IR investigations platform.
  • Develop detection and correlation content within the Cybereason IR investigation platform and EDR.
  • Mentor and advise Junior analysts.
  • Have the freedom to develop and work on ideas you believe will benefit the Cybereason IR team.


  • Bachelor's degree in a technical field, or equivalent practical experience
  • Minimum 8 years of Incident Response or comparable industry experience (threat hunting, threat detection and response, malware analysis, etc)
  • Knowledge and experience of:
    • at least one scripting or development language (such as Python)
    • Investigations of at least one major OS family (Windows, Mac OS, *nix)
  • ...and all of the following:
    • Digital forensics (disk and memory collection & analysis)
    • Network Security Monitoring (NSM), network traffic analysis, and log analysis
    • Static and dynamic malware analysis
    • Threat Hunting with EDR
    • Data Analysis with Jupyter, Pandas, etc
    • Threat Intelligence and adversary tracking
    • Experience writing security oriented Python tooling.

Additional Qualifications:

  • Ability to successfully interface with clients (internal and external).
  • Ability to document and explain technical details in a concise, understandable manner.
  • Ability to manage and balance own time among multiple tasks.
  • Experience with the Golang programming language.
See More
Apply Now
By clicking continue you agree to Built In’s Privacy Policy and Terms of Use.

Where we are

Copley Square has the best selection of food and bars in the city, as well as being a hub for Boston's famous food trucks.

Technology we use

  • Product
  • Sales & Marketing
    • Google AnalyticsAnalytics
    • IllustratorDesign
    • PhotoshopDesign
    • ConfluenceManagement
    • JIRAManagement
    • TrelloManagement
    • HubSpotCRM
    • SalesforceCRM

What are Cybereason Perks + Benefits

Cybereason Benefits Overview

Whether you’re in one of a Cybereason’s beautiful, collaborative offices around the globe or working from home, our people are engaged in a flexible work culture that honors your most productive work environment. Nearly half of all Cybereason employees work remotely, so it’s not just allowed, it’s deeply ingrained into our culture. We are headquartered in the center of the thriving Boston tech community, and offices in Tel Aviv, and Tokyo.

Volunteer in local community
Partners with Nonprofits
Eat lunch together
Daily sync
Open office floor plan
Documented equal pay policy
Unconscious bias training
Diversity manifesto
Diversity Employee Resource Groups
Our UbU advisory board is in place to hold our organization accountable for DEI initiatives.
Hiring Practices that Promote Diversity
Our talent acquisition team uses non-bias tools in our sourcing and hiring efforts.
Health Insurance & Wellness Benefits
Flexible Spending Account (FSA)
Disability Insurance
Dental Benefits
Vision Benefits
Health Insurance Benefits
Life Insurance
Wellness Programs
Mental Health Benefits
Since we are currently working remotely, and we are facing unprecedented times, Cybereason has partnered with the Calm app. Each employee has a free premium subscription.
Retirement & Stock Options Benefits
Roth and Traditional 401(K)
Company Equity
Performance Bonus
Child Care & Parental Leave Benefits
Generous Parental Leave
Flexible Work Schedule
Remote Work Program
Family Medical Leave
Vacation & Time Off Benefits
Unlimited Vacation Policy
Generous PTO
Paid Volunteer Time
Paid Holidays
Paid Sick Days
Perks & Discounts
Beer on Tap
Casual Dress
Commuter Benefits
Company Outings
Game Room
Stocked Kitchen
Some Meals Provided
Happy Hours
Fitness Subsidies
Cybereason currently reimburses its employees up to $50 a month for any exercise membership.
Home Office Stipend for Remote Employees
Cybereason reimburses its employees for home office equipment up to a certain amount.
Professional Development Benefits
Job Training & Conferences
Diversity Program
UbU: Cybereason is solving some of the most complex technology challenges of our time. To fully express their talents, our employees deserve the most open, affirming workplace possible.
Lunch and learns
Cross functional training encouraged
Promote from within
Online course subscriptions available

An Insider's view of Cybereason

How would you describe the company’s work-life balance?

Cybereason does an awesome job at making sure each employee takes time for themselves, especially during these trying times. We've had extra company-wide days off, extended long weekends, and even end the day a little early on Fridays for Happy Hour Trivia! I'm very grateful that our senior leaders truly care about our lives outside of Cybereason.


People Operations Generalist

What's the biggest problem your team is solving?

My team works to solve one of the most difficult issues we face today: keeping people and businesses safe in an increasingly digitized world. Knowing that the work we do matters and brings a positive impact to people’s lives is what keeps us focused each and every day.


VP of North America Sales Engineering

What makes someone successful on your team?

Win as one’ is at our core. In marketing, it’s impossible for one person to drive impact on their own. Our team relies on partnerships and collaboration to reach goals.


VP, Product Marketing

How do you empower your team to be more creative?

I believe in both forgiveness over permission and that anyone who makes a mistake immediately gets air cover while success brings them a spotlight. I want people focused on outcomes and finding ways there, not worrying about coloring inside the lines.


Chief Security Officer/President of Cybereason Government

What is your vision for the company?

We have a lot more peaks we want to conquer, and I want to be there for the wins. This company has what it takes to make a huge difference.


Technical Support Manager

More Jobs at Cybereason