job_description.job_card.job_descriptionShift -Wednesday, Thursday, Friday - 7PM-8AM EST - on-site 2 days / wkTop Skills' DetailsIncident Response - GCIH certification or other relevant certifications (GCFA, GCFE, GNFA, ECIH,CHFI, CSIH)Endpoint Detection & ResponseSIEM (Splunk)Essential Job Duties & ResponsibilitiesIdentifies, investigates, and responds to threats.Conducts host and network forensic investigations across a range of environments, including log analysis and malware triage in support of incident response investigations.Take lead on overnight containment action and begin root cause analysisLeveraging forensics tools, techniques, and capacities to support account take over (ATO) investigations.Research security trends and recommend security tool optimization. Engage engineering staff and management for approval and assist in implementation.Ensure SOC Security Tools are working within tolerance levelsMust be able to adjust to a flexible work schedule when necessaryCollects additional context using Threat Intelligence and Security Operations Center data in support of investigation and analysis.Creates actionable after-incident reports for Security management and technical teams.Reports and trends cyber incident activity and account takeover activity.Provide training, mentoring, and subject matter expertise for Security Operations Center (SOC) staff.Maintains Incident response operating procedures, playbooks, tooling, and technical documentation. Completing updates as needed.Works with other areas of the company, finding common ground to ensure a smooth Security Incident Response process.Support projects that drive continuous improvement of the Incident Response programAbility to work outside of normal working hours as required due to critical incidents or emergency calls. About TEKsystems : We're partners in transformation. We help clients activate ideas and solutions to take advantage of a new world of opportunity. We are a team of 80,000 strong, working with over 6,000 clients, including 80% of the Fortune 500, across North America, Europe and Asia. As an industry leader in Full-Stack Technology Services, Talent Services, and real-world application, we work with progressive leaders to drive change. That's the power of true partnership. TEKsystems is an Allegis Group company. The company is an equal opportunity employer and will consider all applications without regards to race, sex, age, color, religion, national origin, veteran status, disability, sexual orientation, gender identity, genetic information or any characteristic protected by law.