Job Opportunities API

The Public Ledger of Openings

← Back to the ledger

Senior Associate, Incident Response

S-RM
CompanyS-RM
CategorySecurity
LocationMalaysia
RemoteOn-site (inferred)
EmploymentNot stated
LevelSenior
SalaryNot stated by the employer
Posted13 Aug 2024
Last verified7 Aug 2026
SourceEmployer ATS (greenhouse)
Applications are handled by the employer, not by us.Apply on the employer's site →
Description
Who we are   S-RM is a global intelligence and cyber security consultancy. Since 2005, we’ve helped some of the most demanding clients in the world solve some of their toughest information security challenges. We’ve been able to do this because of our outstanding people. We’re committed to developing sharp, curious, driven individuals who want to think critically, solve complex problems, and achieve success. But we also know that work isn’t everything. It’s about the lives and careers it helps us build. We’re immensely proud of this culture and we invest in our people’s wellbeing, learning, and ideas every day.   The role   Our Incident Response Technical Leads are a critical part of our Cyber Security division's success. As a Technical Lead, and a subject matter expert, you will deploy your incident response expertise in a senior delivery role across our incident response services. You will work across the full lifecycle of security incidents to help our clients respond and recover, including:   Supporting technical incident response from first contact through to closure: you will be the primary technical resource on response cases, deploying your own expertise, creating tailored strategies for response workstreams, and offering guidance to colleagues on your project team. Overseeing host- and network-based incident response investigations: including triage, system recovery, technical evidence collection, and forensics, log, malware and root cause analyses. Technical evidence collection from clients’ environments to prepare for forensic investigations. Providing containment and recovery advice to Client’s during and after cyber incidents. Developing and sharing domain expertise: we will support you in growing your cyber expertise, including sharing your expertise with the wider cyber team through internal initiatives and programs. Occasionally, you may also be required to provide overarching project management support, including coordinating non-technical workstreams, and providing verbal or in-person client updates. Participating in an on-call rotation with the rest of the global cyber team to provide 24x7x365 client incident coverage.   Other features of the role include:   Leadership: As a senior technical lead, you’ll have an opportunity to help lead the rest of the APAC incident response team, act as an escalation point for more junior colleagues, and help ensure work produced by the team meets quality standards. Variety of casework: no day will be the same. Our team responds to a huge variety of incidents for both public and corporate clients. You will have exposure to both regional and international cyber incidents. Range of opportunities: you will have opportunities to broaden your security awareness into testing and advisory projects, in addition to deepening your incident response expertise. Flexible working practices: responding to incidents can be intense, high-pressure work. We are mindful of our team's work/life balance and offer flexible working options to support your wellbeing.   We're looking for:   Direct experience working in an Incident Response or Digital Forensics team is strongly preferred, however, candidates with exposure to working with Incident Response teams, or those in roles reflecting aspects of Incident Response will be considered. Strong domain knowledge across computer systems and networks, including: Windows systems (e.g. Managing domains services, creating standard build templates, using SCCM, moderate PowerShell capabilities, etc.) Networking (e.g. managing firewall rules, providing guidance around network segmentation, DNS, etc.) Virtualisation technologies (e.g. ESXi, Hyper-V, etc.) Endpoint Detection & Response solutions. The candidate must be able to demonstrate experience conducting forensic investigations, in particular