Associate Consultant, Cyber Response (Technical incident response) m/w/d
Associate Consultant, Cyber Response (Technical incident response) m/w/d

Associate Consultant, Cyber Response (Technical incident response) m/w/d

Berlin Vollzeit 36000 - 60000 € / Jahr (geschätzt) Kein Home Office möglich
Control Risks

Auf einen Blick

  • Aufgaben: Join our Cyber Response team to tackle cyber incidents and support clients with investigations.
  • Arbeitgeber: Control Risks is a leading global risk management firm based in Berlin.
  • Mitarbeitervorteile: Enjoy hybrid working options, competitive compensation, and a supportive work culture.
  • Warum dieser Job: Dive into a fast-paced role with real impact on cybersecurity and client safety.
  • Gewünschte Qualifikationen: Fluent in German and English, with experience in incident response and technical skills required.
  • Andere Informationen: Flexibility for on-call duties and potential weekend work is essential.

Das voraussichtliche Gehalt liegt zwischen 36000 - 60000 € pro Jahr.

We now require an Associate Consultant to join our Cyber Response team in Berlin. As the Associate Consultant you will be responsible for delivering Control Risks’ cyber response projects to our wide variety of clients. This involves undertaking compromise assessments, business email compromise investigations and assisting with the technical response on complex cases. This role will report to the Associate Director of Cyber Response (Technical) and work closely with the Cyber Crisis Management team. The successful candidate will have an investigative background, a technical skill set and a deep understanding of current and emerging threat actors. This position offers a great opportunity for an existing SOC Analyst or person with similar escalation experience to move into a varied and fast-moving digital forensics incident response (DFIR) role. Please note fluent German as well as English is essential for this position.

Technical response

  • Assisting with host and network-based investigations. Collaborating with the Digital Forensics Incident Response (DFIR) team to deliver the work you are engaged on.
  • Threat hunting using EDR (Endpoint Detection and Response) Tooling to evaluate an attacker\’s spread through a system and network, anticipating and thwarting further attacker activity.
  • Perform live compromise assessments for organisations who suspect a compromise.
  • Detect and hunt unknown live, dormant, and custom malware in memory across multiple systems in an enterprise environment.
  • Demonstrate an understanding of both existing and emerging threat actors, as well as experience identifying rapidly changing tools, tactics and procedures of attackers.
  • Work with the Cyber Threat Intelligence team to identify where they could benefit from the technical information acquired during Cyber Response cases.
  • Advise on the safe technical recovery of an organisations IT systems balancing the need to understand what has happened but speed up recovery.

Reporting

  • Provide situation reports and other significant case related material to the client and the Director of Cyber Response.
  • Provide documentation to the relevant consultants in sufficient time to allow review and feedback, before submitting to a client.

Supporting the growth of the Cyber Response practice

  • Discuss and input into Control Risks’ cyber response methodologies and approaches and tailoring the approach in changing market conditions.
  • This role has a requirement to be on call so a flexibility to work weekends and evenings as required is essential.
  • Identifying potential new areas of growth and opportunity.

Essential

  • Proven experience escalation of incidents.
  • Demonstrated knowledge of common networks, software and hardware used in business environments. A technical degree or relevant qualifications would be very advantageous.
  • Experience in conducting log analysis.
  • Proven experience in responding to cyber-attacks.
  • Demonstrable experience of operating within a Security Operations Centre.
  • Good experience with an EDR tool e.g. SentinelOne, CrowdStrike, Microsoft Defender or similar tool is required.
  • Knowledge and experience of SIEM is essential.
  • Fluent in English (written and spoken).
  • Fluent in German (written and spoken).
  • Excellent presentation skills.
  • Excellent analytical skills.

Preferred Qualifications and specialist skills

  • Strong understanding of MITRE ATT&CK techniques / sub-techniques. The ability to articulate TTPs to clients in non-technical terms.
  • Experience in generating SIGMA rules for host detection, SNORT rules for network detection and YARA Signatures for file and memory artefact identification.
  • Consulting experience would be a plus.

Control Risks offers a competitively positioned compensation and benefits package that is transparent and summarized in the full job offer. Control Risks supports hybrid working arrangements, wherever possible, that emphasize the value of in-person time together – in the office and with our clients – while continuing to support flexible and remote working.

#J-18808-Ljbffr

Associate Consultant, Cyber Response (Technical incident response) m/w/d Arbeitgeber: Control Risks

Control Risks is an exceptional employer, offering a dynamic work environment in Berlin that fosters professional growth and collaboration within our Cyber Response team. With a strong emphasis on employee development, competitive compensation, and flexible hybrid working arrangements, we empower our team members to thrive while tackling complex cyber challenges. Join us to be part of a culture that values innovation, teamwork, and the pursuit of excellence in the ever-evolving field of cybersecurity.
Control Risks

Kontaktperson:

Control Risks HR Team

StudySmarter Bewerbungstipps 🤫

So bekommst du den Job: Associate Consultant, Cyber Response (Technical incident response) m/w/d

✨Tip Number 1

Make sure to familiarize yourself with the latest trends in cyber threats and incident response. Being able to discuss current threat actors and their tactics during your interview will show that you are proactive and knowledgeable.

✨Tip Number 2

Highlight any experience you have with EDR tools like SentinelOne or CrowdStrike. Be prepared to share specific examples of how you've used these tools in past roles, as this will demonstrate your hands-on expertise.

✨Tip Number 3

Since this role requires collaboration with various teams, practice articulating technical concepts in simple terms. This skill will be crucial when discussing complex issues with clients who may not have a technical background.

✨Tip Number 4

Be ready to discuss your flexibility regarding on-call duties. Showing that you understand the demands of the role and are willing to adapt your schedule will make you a more attractive candidate.

Diese Fähigkeiten machen dich zur top Bewerber*in für die Stelle: Associate Consultant, Cyber Response (Technical incident response) m/w/d

Fluent in German and English (written and spoken)
Experience in incident escalation
Knowledge of common networks, software, and hardware in business environments
Technical degree or relevant qualifications
Log analysis experience
Proven experience in responding to cyber-attacks
Experience operating within a Security Operations Centre (SOC)
Proficiency with EDR tools (e.g., SentinelOne, CrowdStrike, Microsoft Defender)
Knowledge and experience with SIEM
Excellent presentation skills
Strong analytical skills
Understanding of MITRE ATT&CK techniques/sub-techniques
Ability to articulate TTPs to clients in non-technical terms
Experience generating SIGMA rules, SNORT rules, and YARA Signatures
Consulting experience

Tipps für deine Bewerbung 🫡

Understand the Role: Make sure you fully understand the responsibilities and requirements of the Associate Consultant position. Highlight your investigative background and technical skills in your application.

Tailor Your CV: Customize your CV to reflect your experience with incident escalation, cyber-attacks, and familiarity with EDR tools. Emphasize any relevant qualifications or degrees that align with the job description.

Craft a Strong Cover Letter: Write a compelling cover letter that showcases your passion for cybersecurity and your understanding of current threat actors. Mention specific experiences that demonstrate your analytical skills and ability to communicate complex information clearly.

Language Proficiency: Since fluency in both German and English is essential, ensure that your application materials are well-written in both languages. This will demonstrate your language skills and attention to detail.

Wie du dich auf ein Vorstellungsgespräch bei Control Risks vorbereitest

✨Showcase Your Technical Skills

Be prepared to discuss your experience with EDR tools and SIEM systems. Highlight specific incidents where you successfully identified and responded to cyber threats, demonstrating your technical expertise.

✨Understand the Threat Landscape

Familiarize yourself with current and emerging threat actors, as well as their tactics, techniques, and procedures (TTPs). Be ready to articulate this knowledge in a way that is understandable to non-technical stakeholders.

✨Demonstrate Your Investigative Background

Share examples from your previous roles that showcase your investigative skills, particularly in incident escalation and compromise assessments. This will help illustrate your fit for the Associate Consultant position.

✨Prepare for Scenario-Based Questions

Expect scenario-based questions that assess your problem-solving abilities in real-world cyber incident situations. Practice articulating your thought process and decision-making steps clearly and confidently.

Associate Consultant, Cyber Response (Technical incident response) m/w/d
Control Risks
Control Risks
  • Associate Consultant, Cyber Response (Technical incident response) m/w/d

    Berlin
    Vollzeit
    36000 - 60000 € / Jahr (geschätzt)

    Bewerbungsfrist: 2027-03-28

  • Control Risks

    Control Risks

    200 - 500
Ähnliche Positionen bei anderen Arbeitgebern
Europas größte Jobbörse für Gen-Z
discover-jobs-cta
Jetzt entdecken
>