At-Bay Logo

At-Bay

Senior DFIR Recovery Specialist

Reposted 13 Days Ago
Easy Apply
Remote or Hybrid
Hiring Remotely in US
115K-130K Annually
Senior level
Easy Apply
Remote or Hybrid
Hiring Remotely in US
115K-130K Annually
Senior level
The Senior DFIR Recovery Specialist oversees incident response processes, engages with IT and Security teams, provides security expertise, and identifies risk gaps.
The summary above was generated by AI

Why you should join our At-Bay Security team:

At-Bay is a fast-growth InsurSec company (Insurance x Cybersecurity) on a mission to bring innovative products to the market that help protect small businesses from digital risks. As an InsurSec provider, we uniquely combine insurance with mission-critical security technologies, threat intelligence, and human expertise, to bridge the critical security capability gap that exists among SMBs in the community. We believe InsurSec is an $80B market opportunity and we are excited to introduce our Senior Incident Response Recovery Specialist role to the security team in order to help expand our reach and influence in the business and security community, of which we serve 40,000 customers.

The Role:

We seek an experienced Incident Response Recovery Specialist to join the At-Bay Response & Recovery team. The Senior DFIR Recovery Specialist will support the Response & Recovery remediation team and report to our Incident Response Engineer.

Responsibilities:

  • Accountable for overseeing, measuring, and driving efforts to systematically increase the maturity and effectiveness of cyber security incident response and recovery processes, setups, and controls for At-Bay’s Response and Recovery Team.
  • Gains and helps maintain an end-to-end understanding of relevant client landscape (networks, endpoints, platforms, applications, dependencies, cloud services, on-premise setups, etc.).
  • Engages with global and local operational Security & IT teams, collaborates closely with all relevant functions across the client base, and consults with external experts & stakeholders.
  • Provides deep security expertise in the context of reviews of detection measures, post-mortem analysis of cyber incident responses, and IT recovery exercises; supports and helps coordinate major real cyber security events.
  • Provides assurance & evidence for the formal security control objectives in this area and contributes accordingly to the overall needs of At-bay’s clients.
  • Identifies gaps in detection, response, recovery controls, and details and drives security risk reduction activities.

In this role, we value:

  • Great educational background, preferably in the fields of computer science or engineering for technical project managers.
  • Proven working experience as a project administrator in the information technology sector.
  • Solid technical background, with understanding or hands-on experience in Windows, Linux, and OSX
  • Excellent client-facing and internal communication skills.
  • Excellent written and verbal communication skills.
  • Solid organizational skills, including attention to detail and multi-tasking skills.

Required Skills:

  • Play a key role in post-breach firewall reconfiguration, including rule audits, segmentation updates, and blocklist implementations to harden perimeter defenses.
  • Collaborate with threat intel and SOC teams to develop and deploy IOCs and custom firewall rulesets (e.g., Palo Alto, Fortinet, Cisco ASA) during active incident response.
  • Create and execute firewall recovery workflows to ensure secure rollback and containment during ransomware and APT-level incidents.
  • Install/Replace, configure, and optimize network hubs, routers, and switches (e.g., higher-level protocols, tunneling).
  • Develop and implement network backup and recovery procedures.
  • Diagnose network connectivity problems.
  • Implement new system design procedures, test procedures, and quality standards.
  • Install and maintain network infrastructure device operating system software (e.g., windows OS, virtual machines).
  • Integrate new systems into existing network architecture.
  • Monitor network capacity and performance.
  • Skill in writing code in a currently supported programming language (e.g., Java, Python, PowerShell).
  • Patch network vulnerabilities to ensure that information is safeguarded against outside parties.
  • Provide feedback on network requirements, including network architecture and infrastructure.
  • Test and maintain network infrastructure, including software and hardware devices.
  • An understanding of forensic data collection tools and procedures is a plus.

Work location:

  •  USA, Remote ( EST )
  •  Travel 50–75% to client locations primarily along the East Coast; flexibility to travel nationwide as needed.

Our estimated base pay range for this role is $115,000 - $130,000 per year. Base salary is determined by a variety of factors including but not limited to market data, location, internal equitability, domain knowledge, experiences and skills. In general, if the position sparks your interest we encourage you to apply - our team prioritizes talent.

 #LI-CK1

Top Skills

Cisco Asa
Fortinet
Java
Linux
Osx
Palo Alto
Powershell
Python
Windows

Similar Jobs

An Hour Ago
Remote or Hybrid
San Diego, CA, USA
131K-230K Annually
Senior level
131K-230K Annually
Senior level
Artificial Intelligence • Cloud • HR Tech • Information Technology • Productivity • Software • Automation
This role involves managing sales pipeline and forecasts, designing compensation plans, analytics reporting, and supporting cross-functional teams to enhance sales operations.
Top Skills: AnaplanCRMExcelPower BIVaricent
An Hour Ago
Remote or Hybrid
Boston, MA, USA
Senior level
Senior level
Artificial Intelligence • Cloud • HR Tech • Information Technology • Productivity • Software • Automation
As an Advisory Solution Consultant, you will lead technical sales, develop solutions for Retail and Hospitality clients, and support sales activities. This includes collaborating with teams, conducting workshops, and providing product demonstrations to meet customer needs.
Top Skills: Ai-Enhanced TechnologyCloud Software SolutionsServicenow
An Hour Ago
Remote or Hybrid
Santa Clara, CA, USA
124K-192K Annually
Junior
124K-192K Annually
Junior
Artificial Intelligence • Cloud • HR Tech • Information Technology • Productivity • Software • Automation
The role involves building high-quality software, collaborating with product owners, integrating AI into work processes, and enhancing existing products while following best practices for software architecture and processes.
Top Skills: AngularJavaJavaScriptReactVue

What you need to know about the Austin Tech Scene

Austin has a diverse and thriving tech ecosystem thanks to home-grown companies like Dell and major campuses for IBM, AMD and Apple. The state’s flagship university, the University of Texas at Austin, is known for its engineering school, and the city is known for its annual South by Southwest tech and media conference. Austin’s tech scene spans many verticals, but it’s particularly known for hardware, including semiconductors, as well as AI, biotechnology and cloud computing. And its food and music scene, low taxes and favorable climate has made the city a destination for tech workers from across the country.

Key Facts About Austin Tech

  • Number of Tech Workers: 180,500; 13.7% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: Dell, IBM, AMD, Apple, Alphabet
  • Key Industries: Artificial intelligence, hardware, cloud computing, software, healthtech
  • Funding Landscape: $4.5 billion in VC funding in 2024 (Pitchbook)
  • Notable Investors: Live Oak Ventures, Austin Ventures, Hinge Capital, Gigafund, KdT Ventures, Next Coast Ventures, Silverton Partners
  • Research Centers and Universities: University of Texas, Southwestern University, Texas State University, Center for Complex Quantum Systems, Oden Institute for Computational Engineering and Sciences, Texas Advanced Computing Center

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account