CSL is looking for ahighly technical anddetail-orientedleader in the DFIR spacethat specializes in digitalforensics,malware analysis,threatdetection,and the fast-pacedexcitement ofsupporting incident responseactivities.
As the leader of our Digital Forensics and eDiscovery team, you will be responsible to support and grow a global team, own the strategy and direction for thepeople, processes, and technologyto fulfill your mission,andpartner deeply with our Security Operations,Data Loss Prevention, and Threat Intelligenceteams to help CSL defend itself fromcyberattacks. You will direct the adoptionof new tools and technologies to further your goals.
The position holder:
Leads a global team to apply security incident handling processesfor CSL tosuccessfullysupportthe cybersecurityand information securityincident response process to:
- Preparefor
- Identify
- Contain
- Eradicate
- Recover
from cybersecurity events
The role willlead a global team ofdigital forensics, incident responseand eDiscovery analyststhat will:
- Work closely with the Director, Security Operations to develop and implementacybersecurity threat analysisstructure of common attack techniques to evaluate an attacker\'s spread through aCSLsystem, platformandornetwork.
- Develop andmaintaina continuous upskilling program for your team to increase skills and overall capability maturity
- Identifyand implement toolstodetermineattack typesandchooseappropriate defensesand response tactics for each
- Derive Indicators of Compromise (IOCs) frommaliciousactivityto strengthen incident response,threat detection, andintelligence efforts
- Conduct in-depth forensic analysisof various operating systems
- Examine traffic using common network protocols toidentifypatterns of activity or specific actions thatwarrantfurther investigation
- Detect and huntforadversary tools, tactics, andprocedures (TTPs) across an enterprise environment
- PartnerwithCompliance, Legal,Privacy, and other teams to perform internal investigationspertaining toeDiscovery matters
Demonstrates thought leader-level abilities with, and/or a proven record ofsuccessdirecting efforts in the following areas: Network Analysis ComputerMemory Analysis Endpoint Analysis Cyber Incident Lifecycle NIST 800-61 Lead and supervise teams to create an atmosphere of trust and seek diverse views to encourage improvement and innovation, answer questions and provide direction to less-experienced staff, coach staff including providingtimelymeaningful written and verbal feedback
Reports toExecutive Director, Enterprise Monitoring & Cyber Resilience
Direct Reports ?This rolewill manage a team of Forensics,eDiscovery,Incident Responseand Threat HuntingSME?s andmayhaveProject Managers,Project Coordinators, Security Architects, and vendorsor managed service providersas directand indirectreportsbased onsecurityproject portfolio.
Main Responsibilities and Accountabilities:
Participatesin thehiring,growth,and development of juniorincident response staff in the areas of threat hunting, forensic analysis,eDiscovery,litigation hold,incident resolution and return to operations. Mentors and directsspecially assignedincident responseproject managers and their teamsand program management staff,and actively role modelsexpected project managementand leadershipbehaviors and processes designed to improve project results and the performance of the team.
Position Qualifications and Experience Requirements:
Required:College degree, preferably in a related technical subject; or advanced degree in business or industry-related subject or equivalent related work experiencein cybersecurity and manufacturing.
Preferred: Anadvanced degree (MS) in a relevant discipline (or equivalent)including cybersecurity,managementinformation systems, and related technologies related to manufacturing cybersecurity.
Project management certification / training desirable/ CISSP, CISM, CISO,GIAC-GCED,GIAC-GCIH, and/orGIAC-CFEcertification preferred.
Essential Experience:
- 8+yearsdemonstratedexperience leading global, multi-functionalDigital Forensics/CybersecurityIncident Responseteams(bio-pharma manufacturingenvironmentpreferred but notmandatory)
- Strong leadership, consultative, communication, and conflict management skills to influence project leaders and stakeholders, including non-specialists, at all levels in the organization and achieve teamobjectiveswhilemaintaininga positive team environment.
- The ability to train, mentor, and develop project managers in project management methodologies and their application; the ability to manage in a matrix environment.
- The ability to work on complex problems where analysis ofsituationor data requires an in-depth evaluation ofvarious factorsto achievebestresults.
- The ability to clearly communicate complex issues to senior management so that critical issues are understood quickly and can be addressedimmediately.
- Strong strategic planning, quantitative, and decision analysis capabilities.
- Strong project management and integration skills; ability to coordinate all aspects of a project or program.
- Demonstrated experience in developing, managing, and controllingcross functionalproject budgets.
- 8+years? experience usinga formalproject managementmethodology,techniquesand tools.
- Proficiencyand use of enterprise computer applications including the Microsoft suite of products and project managementsoftware.
Desired Experience:
- Experience in biopharmaceutical industry
- Experience in crafting enterprise incident response programs for a global company ? process and technicaldefinition.