Cyber Response

6 months ago


Birmingham, United Kingdom KPMG Full time

Job description

The incident response assistant manager role will be working in the Cyber Response Services (CRS) Team within our Risk Consulting practice, reporting directly into the head of cyber response. Cyber security is one of the areas which KPMG has identified for tremendous investment and growth. Our clients face a challenging cyber threat and look to us to help them understand and respond to that threat.
This is a hands-on and operational management role with opportunities to grow into service line leadership. The successful candidate is expected to manage a broad range of cyber-security incidents as well as perform digital forensics (disk, volatile memory, network packets, logfiles) and help advance KPMG’s incident response processes and methodologies. 
In this role we are looking for a person who can demonstrate strong technical background, significant experience in incident response and digital forensics and is looking to grow into an incident response leadership role as part of a growing team. You will be expected to lead a number of incident response case managers and practitioners, as well as have the opportunity to work with, and learn from, the service leadership as part of your continuous development.
When not responding to incidents, you may be helping our clients to build their in-house incident response capabilities, which could include: building and developing cyber-response tools, authoring and adapting runbooks/playbooks, assessing the incident response maturity, assisting in table-top cyber-scenario exercises. When not engaged in client work, you will be helping to develop our own delivery capability, including operational efficiency, standard operating procedures, team learning and development, tooling and platforms, lab development and orchestration.

Our clients expect that cyber-incidents will be tackled with urgency, therefore, there is an expectation that you will be flexible in terms of working hours. In addition, you should be prepared to travel on short notice for periods up to 2 or 3 weeks at a time.

Responsibilities

• Manage and co-ordinate cyber security incidents for our clients, working closely with the head of cyber response.
• Digital forensics of relevant incident data (disk, volatile memory, network packets, log files). 
• Maintaining a current view of the cyber threat, and being able to advise clients on the threat landscape and attacks which may be relevant to them.
• Manage the development of KPMG’s in house cyber-response tools.
• Assess client incident response capability maturity.
• Help stand-up or improve clients’ own incident response capabilities.
• Production and review of deliverables to a high standard.
• Liaising with clients on delivery, implementation and project issues.
• Ability to generate well-structured responses to bids and requests for proposals.

The Person

Experiences in cyber-security and incident response. For example: You should be able to guide a client through a unstructured incident response process (such as an advanced network intrusion) – managing resources and defining objectives at each stage of the incident response process; scoping and triage, containment, evidence preservation and extraction, eradication, recovery, forensic analysis and investigation.
• A broad understanding of the cyber security threat landscape.
• Strong technical background in computers and networks, and programming skills.
• Significant and proven experience of dealing with cyber security incidents and associated response measures.
• Experience of managing a rapid deployment incident response team.
• Excellent interpersonal, written and communication skills.
• Understanding of a wide range of information security and IT methodologies, principles, technologies and techniques.
• A genuine interest and desire to develop and mention junior team members.
• Strong attention for detail and the ability to manage multiple simultaneous cases.

Qualifications and Skills

The successful candidate will demonstrate competency in computing and networks as well as in cyber-security either by having the relevant work experience, completed a degree or obtained industry relevant certification. Therefore the qualifications below should be seen as means to demonstrate competency and not as a requirement. The desired skill and qualification is provided below: 
• Excellent communication skills (both written and oral) and project management skills.
• Strong IT and network skills – knowledge of common enterprise technologies – Windows and Windows Active Directory, Linux, Cisco, etc.
• Working programming skill-set to be able to author and develop tools. Most in-house security tools in KPMG are written in Python, but we accept that a competent programmer will be able to transfer skillsets across languages.
• Technical proficiency in at least one of these areas: network security/traffic/log analysis; Linux and/or Mac/Unix operating system forensics; Linux/Unix disk forensics (ext2/3/4, HFS+, and/or APFS file systems), advanced memory forensics, static and dynamic malware analysis / reverse engineering, advanced mobile device forensics
• Advanced experience in industry computer forensic tools such as X-Ways, EnCase, FTK, Internet Evidence Finder (IEF) / AXIOM, TZWorks, and/or Cellebrite
• Advanced experience in preservation of digital evidence (including experience preserving cloud data and handling encryption such as BitLocker, FileVault, and/or LUKS)
• Experience with and understanding of enterprise Windows security controls
• (Preferred) Degree level qualified, MSc in Information Security, IT or relevant STEM subjects. 
• (Preferred) General information security certificates such CISSP, CISM or CISA. 
• (Preferred) Incident management certifications such as:
• CREST certified incident manager (CCIM).
• GIAC Certified Incident Handler (GCIH)
• (Preferred) Digital forensics certificates such as:
• CREST certified registered intrusion analyst (CRIA),
• CREST certified network intrusion analyst (CCNIA),
• CREST certified host intrusion analyst (CCHIA),
• CREST certified malware reverse engineer (CCMRE),
• GIAC Certified (Network) Forensic Analyst (GCFA, GNFA)
• (Preferred) A current government security clearance (SC/DV) or willingness to acquire such a clearance will be seen as an advantage.



  • Birmingham, Birmingham, United Kingdom ReRoot Cyber Full time

    Company OverviewReRoot Cyber is a highly respected testing consultancy led by industry-recognised names who are hackers at heart.The company has a 'hacker first' mandate for their team, focusing on making day-to-day responsibilities as easy as possible with a pure focus on value added testing.

  • Cyber Response

    6 months ago


    Birmingham, United Kingdom KPMG-UnitedKingdom Full time

    Job descriptionThe incident response manager role will be working in the Cyber Response Services (CRS) Team within our Risk Consulting practice. Cyber security is one of the areas which KPMG has identified for tremendous investment and growth. Our clients face a challenging cyber threat and look to us to help them understand and respond to that threat. This...


  • Birmingham, Birmingham, United Kingdom ReRoot Cyber Full time

    Company Overview: ReRoot Cyber is a leading independent testing consultancy that empowers its clients with forward-thinking expertise in penetration testing.Our team is led by industry-recognised names who are passionate about making day-to-day responsibilities as easy as possible, focusing on value-added testing. We offer a unique blend of advanced testing...

  • Cyber Response

    6 months ago


    Birmingham, United Kingdom KPMG-UnitedKingdom Full time

    Job descriptionThe incident response assistant manager role will be working in the Cyber Response Services (CRS) Team within our Risk Consulting practice, reporting directly into the head of cyber response. Cyber security is one of the areas which KPMG has identified for tremendous investment and growth. Our clients face a challenging cyber threat and look...


  • Birmingham, Birmingham, United Kingdom ReRoot Cyber Full time

    Career Opportunities at ReRoot CyberWe are seeking an IT Security Consultant to join our team, with a strong background in infrastructure/networking and a desire to continually learn about new technologies. As a key member of our CHECK team, you will be responsible for designing and implementing effective security measures to protect our clients' assets....


  • Birmingham, Birmingham, United Kingdom RSM Full time

    About the RoleWe are seeking an enthusiastic cyber security professional with expertise in penetration testing to join our team at RSM. This is a hybrid role that involves delivering offensive security services, including digital footprint reconnaissance, social engineering, penetration testing, and vulnerability assessments to high-profile clients across...


  • Birmingham, United Kingdom Hays Full time

    Job Title: Cyber Governance Specialist About Us: We are an accountancy and business advisory firm that provides advice and solutions to entrepreneurial organizations.Our Digital & Risk Advisory Services (DRAS) help clients manage business risks through innovative methodologies and technology.Role Overview: Join our dynamic team of internal auditors,...


  • Birmingham, Birmingham, United Kingdom RSM Full time

    About the RoleWe are seeking a Cyber Security Consultant to deliver offensive security services including digital footprint reconnaissance, social engineering, penetration testing and vulnerability assessments to high profile clients across all industries.Our team of specialists delivers a wide range of assurance and advisory cyber security related...


  • Birmingham, United Kingdom Michael Page International Full time

    The Cyber Security manager will prepare and provide a cyber security management plan.16 week contract with an immediate start.Hybrid working with visits to the Birmingham HQ.Client Details Our client is well known across the Transport and Rail industry.Description Dof the Cyber Security Manager: The development and implementation (if necessary), and the...


  • Birmingham, United Kingdom CV-Library Full time

    The Cyber Security manager will prepare and provide a cyber security management plan. 16 week contract with an immediate start. Hybrid working with visits to the Birmingham HQ. Client Details Our client is well known across the Transport and Rail industry. Description Dof the Cyber Security Manager: The development and implementation (if necessary),...

  • Cyber Risk Consultant

    6 months ago


    Birmingham, United Kingdom Gallagher Full time

    About Us: Indulge your passion for problem-solving and embrace the thrill of addressing risk head-on at Gallagher's global brokerage team. Join a family of diverse minds, united by a relentless pursuit of excellence. As part of our team, you'll be the architect of protection, safeguarding businesses and empowering their ambitions. Together, we'll build a...


  • Birmingham, Birmingham, United Kingdom KPMG-UnitedKingdom Full time

    Cyber Strategy Senior Manager RoleThe Cyber Strategy Senior Manager is a pivotal role in the sustainable growth of the Cyber Strategy service area within the UK, supporting the delivery of cyber strategy services within our Financial Services sector. Description of ResponsibilitiesAs a Cyber Strategy Senior Manager, you will deliver the following activities:...


  • Birmingham, United Kingdom Michael Page International Full time

    Job Title: Cyber Security Professional**Company Overview:** Our client is a well-established company in the Transport and Rail industry. They are seeking a Cyber Security Professional to join their team on a 16-week contract.**Salary:** The day rate for this position is approximately £550 per day, making it an attractive opportunity for IT professionals...


  • Birmingham, United Kingdom Hays Full time

    Job Title: Cyber Governance Specialist About Us: We are an accountancy and business advisory firm that provides advice and solutions to entrepreneurial organizations. Our Digital & Risk Advisory Services (DRAS) help clients manage business risks through innovative methodologies and technology. Role Overview: Join our dynamic team of internal...


  • Birmingham, United Kingdom Hays Full time

    Job Title: Cyber Governance Specialist About Us: We are an accountancy and business advisory firm that provides advice and solutions to entrepreneurial organizations. Our Digital & Risk Advisory Services (DRAS) help clients manage business risks through innovative methodologies and technology. Role Overview: Join our dynamic team of internal auditors,...


  • Birmingham, United Kingdom Hays Full time

    Job Title: Cyber Governance Specialist About Us: We are an accountancy and business advisory firm that provides advice and solutions to entrepreneurial organizations. Our Digital & Risk Advisory Services (DRAS) help clients manage business risks through innovative methodologies and technology. Role Overview: Join our dynamic team of internal auditors,...


  • Birmingham, United Kingdom Michael Page International Full time

    The Cyber Security manager will prepare and provide a cyber security management plan. 16 week contract with an immediate start. Hybrid working with visits to the Birmingham HQ. Client DetailsOur client is well known across the Transport and Rail industry. DescriptionDof the Cyber Security Manager:The development and implementation (if necessary), and the...


  • Birmingham, Birmingham, United Kingdom RSM Full time

    About the JobWe are seeking a seasoned cyber security professional to fill this key leadership role. As a Cyber Security Manager, you will play a crucial part in overseeing engagement delivery, planning, and managing projects to ensure high-quality outcomes.The ideal candidate will have a strong background in delivering assurance and advisory services, with...


  • Birmingham, United Kingdom Hays Full time

    Job Title: Cyber Governance SpecialistAbout Us: We are an accountancy and business advisory firm that provides advice and solutions to entrepreneurial organizations. Our Digital & Risk Advisory Services (DRAS) help clients manage business risks through innovative methodologies and technology.Role Overview: Join our dynamic team of internal auditors,...


  • Birmingham, United Kingdom Hays Full time

    Job Title: Cyber Governance Specialist About Us: We are an accountancy and business advisory firm that provides advice and solutions to entrepreneurial organizations. Our Digital & Risk Advisory Services (DRAS) help clients manage business risks through innovative methodologies and technology. Role Overview: Join our dynamic team of internal auditors,...