(Trc) Manager
6 days ago
Grade
Experienced
Department
Emerging Tech Risk & Cyber (Security)
Descriptions
The senior incident response manager role will be working in the Cyber Response Services (CRS) Team within our Risk Consulting practice, reporting directly into the head of cyber response. Cyber security is one of the areas which KPMG has identified for tremendous investment and growth. Our clients face a challenging cyber threat and look to us to help them understand and respond to that threat.
**Responsibilities**:
- Manage and co-ordinate cyber security incidents for our clients, working closely with the head of cyber response.
- Digital forensics of relevant incident data (disk, volatile memory, network packets, log files).
- Maintaining a current view of the cyber threat and being able to advise clients on the threat landscape and attacks which may be relevant to them.
- Manage the development of KPMGs in house cyber-response tools.
- Assess client incident response capability maturity.
- Help stand-up or improve clients’ own incident response & Network Security capabilities.
- Project management of engagements to deliver high quality work in a timely manner, including:
- Scoping and costing of engagements
- Financial management of projects
- Engagement and risk management
- Production and review of deliverables to a high standard.
- Liaising with clients on delivery, implementation and project issues.
- Ability to generate well-structured responses to bids and requests for proposals.
- Requirements
- Excellent communication skills (both written and oral) and project management skills.
- Strong IT and network skills - knowledge of common enterprise technologies - Windows and
- Windows Active Directory, Linux, Cisco, etc.
- Working programming skill-set to be able to author and develop tools. Most in-house security tools in
- KPMG are written in Python, but we accept that a competent programmer will be able to transfer skillsets across languages.
- Technical proficiency in at least one of these areas: network security/traffic/log analysis; Linux and/or Mac/Unix operating system forensics; Linux/Unix disk forensics (ext2/3/4, HFS+, and/or APFS file systems), advanced memory forensics, static and dynamic malware analysis / reverse engineering, advanced mobile device forensics
- Advanced experience in industry computer forensic tools such as X-Ways, EnCase, FTK, Internet
- Evidence Finder (IEF) / AXIOM, TZWorks, and/or Cellebrite
- Advanced experience in preservation of digital evidence (including experience preserving cloud data and handling encryption such as BitLocker, FileVault, and/or LUKS)
- Experience with and understanding of enterprise Windows security controls
**Requirements**:
Qualifications and Education requirements
- Minimum qualifications required: B.E/B. Tech or Equivalent
- Excellent communication skills (both written and oral) and project management skills. Abilities: Good soft skills and team player
- (preferred) General information security certificates such CISSP, CISM or CISA.
- (preferred) Incident management certifications such as:
- CREST certified incident manager (CCIM).
- GIAC Certified Incident Handler (GCIH)
- (preferred) Digital forensics certificates such as:
- CREST certified registered intrusion analyst (CRIA),
- CREST certified network intrusion analyst (CCNIA),
- CREST certified host intrusion analyst (CCHIA),
- CREST certified malware reverse engineer (CCMRE),
- GIAC Certified (Network) Forensic Analyst (GCFA, GNFA)
- Experience: 8 - 10 years
-
Petaling Jaya, Malaysia KPMG Full timeA/SA - Cyber Incident Response & Forensic - TRC **Grade**: Experienced **Department**: Emerging Tech Risk & Cyber (Security) **Descriptions**: In this role, we are looking for a person who can demonstrate a good technical background and has a desire to improve and learn new knowledge. When not responding to incidents, you may be helping our clients build...
-
A/sa - Network & Security Consultant - Trc
1 week ago
Petaling Jaya, Malaysia KPMG Full timeA/SA - Network & Security Consultant - TRC **Grade**: Graduate **Department**: Emerging Tech Risk & Cyber (Security) **Descriptions**: At KPMG we are currently seeking a Associate /Senior Associate Network & Security for our Technology Risk & Cyber Consulting practice. This role focuses on managing risk for our clients on their emerging technologies...