Company Description Since 2004, Mandiant has been a trusted partner to security-conscious organizations. Effective security is based on the right combination of expertise, intelligence, and adaptive technology, and the Mandiant Advantage SaaS platform scales decades of frontline experience and industry-leading threat intelligence to deliver a range of dynamic cyber defense solutions. Mandiant’s approach helps organizations develop more effective and efficient cyber security programs and instills confidence in their readiness to defend against and respond to cyber threats. **Job Description**: **What You Will Do**: - Lead large, client-facing projects while mentoring/training junior team members - Conduct host forensics, network forensics, log analysis, and malware triage in support of incident response investigations - Utilize Mandiant technology to conduct large-scale investigations and examine endpoint and network-based sources of evidence - Recognize and codify attacker tools, tactics, and procedures in indicators of compromise (IOCs) that can be applied to current and future investigations - Build scripts, tools, or methodologies to enhance Mandiant’s incident investigation processes - Develop and present comprehensive and accurate reports, trainings and presentations for both technical and executive audiences - Work with clients security and IT operations teams to implement remediation plans in response to incidents **Qualifications**: **Minimum Requirements**: - 5+ years of experience in incident response, security operations, consulting or similar - Experience with at least three of the following: - Windows disk and memory forensics - Network Security Monitoring (NSM), network traffic analysis, and log analysis - Unix or Linux disk and memory forensics - Static and dynamic malware analysis - Experience and understanding of enterprise security controls in Active Directory/Windows environments - Experience building scripts, tools, or methodologies to enhance investigation processes - Experience leading external client engagements - Must be able to work in Colombia without sponsorship **Additional Qualifications**: - Ability to travel up to 30%, when travel resumes - Effectively communicating investigative findings and strategies to technical staff, executive leadership, legal counsel, and internal and external clients - Effectively develop documentation and explain technical details in a concise, understandable manner - Strong time management skills to balance time among multiple tasks, and lead junior staff when required