DFIR Lead

Help AG
Dubai
Workplace: HybridFull timeFunction: Administration & Executive AssistanceExperience: 10+ yearsSkills: ["Leadership","Mentorship","Stakeholder management","Knowledge sharing","Technical reporting"]

Lead Help AG’s DFIR team by managing daily incident response activities and coordinating triage, containment, eradication, and remediation across on-site and off-site engagements. Conduct deep digital forensics to identify root causes, develop and maintain incident response plans, and analyze logs and artifacts from security technologies such as firewalls, IDS/IPS, VPNs, and endpoint tools. Build detections, scripts, and threat-hunting content while mentoring analysts and reporting to customers.

Loading

Loading job details...

Preparing the role view and application actions.

FursaFursa
Help AG
Help AG
13 hours ago

DFIR Lead

✓ Verified Job

Canonical indexed version, validated from employer's careers page.

Source: Company careers pageValidated by: Fursa AI
Last checked: 13 hours agoStatus: Live

Job Summary

Lead Help AG’s DFIR team by managing daily incident response activities and coordinating triage, containment, eradication, and remediation across on-site and off-site engagements. Conduct deep digital forensics to identify root causes, develop and maintain incident response plans, and analyze logs and artifacts from security technologies such as firewalls, IDS/IPS, VPNs, and endpoint tools. Build detections, scripts, and threat-hunting content while mentoring analysts and reporting to customers.
Location: Dubai
Workplace: Hybrid
Employment Type: Full time
Job Function: Administration & Executive Assistance
Seniority: Sr. Manager level

Key Responsibilities

  • •Lead and mentor the DFIR team, managing daily incident response operations and customer engagements.
  • •Coordinate incident response in unknown environments, including triage, containment, eradication, and remediation.
  • •Perform in-depth forensic investigations to determine root cause of incidents and breaches using digital forensic methods.
  • •Develop and maintain incident response plans, best practices, policies, and procedures; create custom plans for specific environments and customers.
  • •Analyze security logs/data and artifacts, develop detection content and incident response tools/scripts, and conduct threat hunts (including Red Team techniques).

Pay and Benefits

Perks:Health InsuranceLearning BudgetTravel Allowance

Key Requirements

  • •A degree in Computer Science, Information Systems, Electrical Engineering, or a closely related field.
  • •10+ years of experience in information security, including security operations, intrusion detection, incident analysis/handling, log analysis, malware analysis, reverse engineering, or threat detection.
  • •2–3+ years of experience as a Senior or Lead Analyst (or equivalent) guiding, mentoring, and teaching other Analysts/Security Professionals.
  • •Hold at least one of: CISSP, GCIA, GCIH, GCFA, GCFE, GREM, or OSCP.
  • •Strong hands-on experience with incident response engagements and digital forensics, including analyzing system/security/application logs and using DF tools/techniques (including custom tooling).
Experience:10+ yearsIncident responseDigital forensicsSecurity operations
Education:
Skills:LeadershipMentorshipStakeholder managementKnowledge sharingTechnical reporting
Certifications:CISSPGCIAGCIHGCFAGCFEGREMOSCP
Tech Stack:PythonPowerShellBashX86X64CC#GoYaraSnortSigmaAntivirusesIDS/IPSFirewallsSwitchesVPNsRAMPacket capturesDisk imagesWindows

Company Brief

Help AG
Provides cybersecurity solutions and managed security services including MDR, SOC, threat intelligence, consulting, and compliance for enterprises across the Middle East and APAC. Offers integration, incident response, and risk-management services for complex IT environments.
Industry: Cybersecurity
Company Size: Large (251 to 1,000 employees)
Growth: Established Company
Headquarters: Dubai, United Arab Emirates
WebsiteLinkedIn