664,245open jobs
38,805companies
99,560added this week
Browse all
Location
In office
Seniority
Staff
Employment
Full-Time
Overview
Company
Impact
Profile match

G42

G42 is an Emirati artificial intelligence and cloud computing group founded in Abu Dhabi in 2018, and the central vehicle for the United Arab Emirates' ambition to become a significant AI power. It spans data centres and sovereign cloud through Core42, applied AI and the Arabic-language Jais models through Inception, analytics through the listed Presight, healthcare through M42 and satellite services through Space42. After United States scrutiny of its Chinese technology ties, the group divested those holdings and took a one and a half billion dollar investment from Microsoft in 2024, aligning itself with American infrastructure and building the Condor Galaxy supercomputers with Cerebras.

Overview:

As a Lead Incident Responder in the Incident Response & Forensics Team within a high-impact and operationally critical cyber defence environment, you live and breathe blue team operations. Your technical expertise in digital forensics and cyber incident response is well complemented by your integrity and passion for cyber security and technology in general.

You work well in a team of highly motivated and skilled blue teamers, but you can also achieve your work independently in different engagements and scenarios.

You enjoy taking on new challenges in a fast paced and dynamic working environment. You are a team player who is always willing to help out where required, with a humble and positive attitude.

Responsibilities:

Serve as technical & coordination lead on active incident response engagements

English communication skills and stakeholder management skills are a MUST, to coordinate technical staff and communicate investigation progress to clients

Execute and coordinate threat hunting activities in support of incident response engagements and SOC activities

Perform host and/or network-based forensics across Windows, Mac, and Linux platforms.

Execute digital forensic investigations supporting cyber incident response engagements

Contribute to process documentation and continuous service improvement activities

Lead the production of detailed reports and technical briefs, effectively communicate tasks, methodology and guidance to customers

Perform Quality Assurance activities over reports created by more junior members of the team

Explain technical findings in a manner that can be easily understood by technical and non-technical staff

Demonstrate industry thought leadership through creating and developing internal brown-bag sessions

Lead team research activities in search of service improvement tasks

Help maintain the client-fostered DFIR Forensics Lab

Be the team’s subject matter expert on at least two of the following verticals: host forensics, network forensics, mobile forensics, malware analysis, OT/ICS Incident Response, cloud forensics, threat hunting

Ability to achieve tasks independently within the team after initial 2 months. Flexible schedule that is open to changing situations and opportunities, as is typical with incident response. You must be a team player, with a humble and approachable nature who is willing to go the extra mile.

Technical Skills : -

Strong understanding of blue team operations and threat hunting

Sound understanding of network protocols, TCP/IP etc. Sound understanding of Microsoft Windows

Sound understanding of Linux and OSX

Sound forensic skills across multiple operating systems

Strong understanding of network analysis tools like Bro/Zeek, Rita or Suricata

Ability to perform analysis of system and network devices logs

Sound understanding of the capabilities of static and dynamic malware analysis

Sound understanding of enterprise systems, technologies, and infrastructure

Strong understanding of targeted attacks and able to create customized tactical and strategic remediation plans for compromised organizations

Strong understanding of current threats, vulnerabilities, and attack trends

Strong understanding of ATT&CK framework

Sound understanding of AI security processes & ability to use AI properly within IR investigations

Excellent organisational skills, ability to prioritise, and ability to work independently

Qualifications:

Certifications/Qualifications/Skills : -

Good attention to detail and reporting accuracy, excellent stakeholder management & communication skills; excellent English language skills, both spoken and written

GIAC Certified in a minimum of one discipline (two desired): GNFA, GCIH, GCIA, GCFE, GCFA, GDAT, etc

Or equivalent (eLearnSecurity .etc)

Previous experience performing digital forensics is A MUST

Previous experience performing malware analysis is desirable

Bachelor's degree in Computer Science or Engineering desirable, but not mandatory

Free account
Stop reading job ads. Get the ones that fit.
One free account turns this page into a shortlist built around your stack, your level and your pay.
Match on every job. Stack, seniority, pay and location, scored against your profile.
664,245 open roles. Read straight off company career pages, refreshed every day.
Unlimited applications. Every one you send is tracked in one place, on-site or on a company board.
3 tailored CVs a month. Rewritten for the exact job you are applying to. Included free.
Create a free account Continue with Google
Free forever. No card. Under a minute.

Your match

How well do you fit this role?
Two answers are enough for a real match. No account needed.
Check my fit
Answers stay in this browser until you create an account.

Recommended for you based on this role

Similar stack
Same company
In your city
$146k – $245k per year • Equity • In office • Full-Time • 8+ years exp • Bachelor's Degree • Alpharetta
Python
JavaScript
SQL
PowerShell
AI/ML
Model Context Protocol
Prompt Engineering
Red Teaming
DevOps
Terraform
CI/CD
Git
Cybersecurity
MITRE ATT&CK
Google SecOps
Management
Agile
Apply
$63k – $111k per year (Estimated) • Remote/Hybrid • Full-Time • 8+ years exp • Warsaw
DevOps
Terraform
Azure
CI/CD
Kubernetes
Bicep
Cybersecurity
Microsoft Sentinel
Microsoft Defender
MITRE ATT&CK
Microsoft Entra ID
Apply
$88k – $121k per year • In office • TS/SCI • Full-Time • 2+ years exp • Los Angeles
Python
PowerShell
Bash
DevOps
AWS
Cybersecurity
Crowdstrike
Elastic SIEM
MITRE ATT&CK
Microsoft Entra ID
Apply
$87k – $157k per year • Remote/Hybrid • TS/SCI • Full-Time • 8+ years exp • Bachelor's Degree • Washington
Python
PowerShell
DevOps
Splunk
Azure
AWS
Cybersecurity
MISP
VirusTotal
MITRE ATT&CK
Cyber Kill Chain
Diamond Model
Recorded Future
Anomali
ThreatConnect
Apply
$26k – $62k per year (Estimated) • Remote/Hybrid • Moscow
Cybersecurity
MITRE ATT&CK
OWASP Top 10
Apply
$90k – $188k per year (Estimated) • Remote/Hybrid • Full-Time • 14+ years exp • Bachelor's Degree • Abu Dhabi
AI/ML
Fine-tuning
Prompt Engineering
AI Agents
RAG
LLMOps
Knowledge Graph
LLM Guardrails
Edge AI
DevOps
Azure
Apply
$76k – $172k per year (Estimated) • In office • Full-Time • 3+ years exp • Bachelor's Degree
Cybersecurity
Suricata
Zeek
MITRE ATT&CK
Apply
In office • Full-Time • 10+ years exp • Bachelor's Degree
Python
PowerShell
Apply
$153k – $294k per year (Estimated) • In office • Full-Time • 10+ years exp • Bachelor's Degree
AI/ML
AI Agents
DevOps
GCP
Apply
In office • Full-Time • Bachelor's Degree
AI/ML
AI Agents
DevOps
GCP
Azure
AWS
Apply
See all jobs
This is one of many
664,245 more open roles from verified company boards, updated every day.