20 Sep
|
Accenture Infrastructure and Capital Projects
|
Ontario
20 Sep
Accenture Infrastructure and Capital Projects
Ontario
We Are: Accenture Security is one of the fastest growing areas of our business, and our global Cyber Investigation and Forensic Response (CIFR) practice is at the heart of how we help clients prepare for, respond to, and recover from the most consequential cyber incidents. We deliver around-the-clock incident response services to our expanding portfolio of enterprise customers across the globe, providing expertise to multinational clients and shaping thought leadership inside and outside the firm.
You Are: A hands-on technical leader who excels in complex investigations. You have deep expertise in digital forensics, incident response, and threat analysis, and you have the composure to apply it under pressure during active incidents. You are equally comfortable briefing clients in the boardroom and performing deep analysis. You take ownership of investigations, mentor the people around you, and you raise the bar on what world-class incident response looks like.
The Work: Conduct complex forensic analysis including advanced memory forensics, malware triage, encrypted artifact recovery, and anti-forensics detection
Perform host and network digital forensics, log analysis, and threat hunting in support of incident response investigations
Leverage EDR solutions, cloud platforms (AWS, Azure, GCP), and threat intelligence to identify attacker Tactics, Techniques and Procedures (TTPs)
Conduct incident response within various Cloud, OT, and traditional enterprise environments
Develop indicators of compromise and contribute to comprehensive attack timelines
Create automation tools and scripts that improve team efficiency and investigation capabilities
Mentor and train 2-4 investigators across multiple cases, building team capability
Provide quality assurance on investigator findings before Primary Investigator review
Lead medium to large workstreams (20-50+ systems) with minimal oversight
Support Primary Investigators with technical decision-making and investigation strategy
Translate strategic investigation direction into tactical tasks for team execution
Effectively communicate and interface with customers, both technically and strategically, to customer stakeholders and legal counsel throughout the engagement lifecycle
Author comprehensively written client reports on investigative findings with defensible conclusions
Present technical findings in client calls when appropriate
Support Accenture leadership in properly scoping engagements with innovative methodical approaches
Travel may be required for this role.
The amount of travel will vary depending on business need and client requirements. Here’s What You Need: Bachelor's degree or equivalent work experience
Minimum 4-6 years of DFIR experience with demonstrated expertise in complex investigations
Ability to obtain federal government security clearances as required by client engagements
Strong knowledge of enterprise incident response, digital forensics and cyber incident investigation processes
Expert-level familiarity with common DFIR toolsets (Volatility, X-Ways, FTK, EnCase, Autopsy, etc.)
Deep DFIR knowledge of Microsoft Windows, GNU/Linux and MacOS operating systems
Advanced experience with memory forensics and malware analysis
Proven ability to derrive attacker TTPs and develop indicators of compromise
Experience leading investigation workstreams and mentoring junior team members
Strong understanding of enterprise environments, Active Directory, and common attack patterns
Excellent project management, analytical, and client-facing communication skills
Ability to solve complex forensic challenges that require advanced techniques
Experience with threat hunting on both endpoint and network
Proven track record of producing accurate, defensible, well-documented analysis
Knowledge of eradication techniques, monitoring improvements, and protection capabilities
Ability to develop and implement dynamic remediation plans in conjunction with incident response engagements
Bonus Points If: You have experience with Cloud environments (AWS, Azure, GCP) and cloud-native forensics
You have experience with OT and ICS environments
You have proficiency in scripting and programming languages (Python, PowerShell, Bash)
You have experience with reverse engineering and sandboxing technologies
You have advanced malware analysis capabilities (unpacking, deobfuscation, behavior analysis)
You have made contributions to open-source DFIR tools or methodologies
You have active participation in the security community (conferences, publications, training development)
You hold security certifications such as GCFA, GCFE, GREM, GCIH, CEH, or similar
You hold advanced certifications (SANS 500-level, OSCP, OSCE)
Compensation at Accenture varies depending on a wide array of factors, which may include but are not limited to the specific office location,
role, skill set, and level of experience. As required by local law, Accenture provides a reasonable range of compensation, based on full-time
employment, for roles that may be hired as set forth below.
The recruiting efforts for this position are intended to fill a brand new position.
The base pay range shown below is intended as a guideline to reflect the majority of offers for this role. It does not represent a maximum limit - in some cases, actual compensation may exceed the range where appropriate.
Information on benefits is here:
Role Location Annual Salary Range
British Columbia/Ontario $75,400 to $125,400
About Accenture
Accenture is a leading global professional services company that helps the world's leading businesses, governments and other organizations build their digital core, optimize their operations, accelerate revenue growth and enhance citizen services - creating tangible value at speed and scale. We are a talent- and innovation-led company with approximately 791,000 people serving clients in more than 120 countries. Technology is at the core of change today, and we are one of the world's leaders in helping drive that change, with robust ecosystem relationships. We combine our strength in technology and leadership in cloud, data and AI with unmatched industry experience, functional expertise and global delivery capability. Our broad range of services, solutions and assets across Strategy & Consulting, Technology, Operations, Industry X and Song, together with our culture of shared success and commitment to creating 360° value, enable us to help our clients reinvent and build trusted, lasting relationships. We measure our success by the 360° value we create for our clients, each other, our shareholders, partners and communities.
Visit us at www.accenture.com
Equal Employment Opportunity Statement
We believe that no one should be discriminated against because of their differences. All employment decisions shall be made without regard to age, race, creed, color, religion, sex, national origin, ancestry, disability status, military veteran status, sexual orientation, gender identity or expression, genetic information, marital status, citizenship status or any other basis as protected by applicable law. Our rich diversity makes us more cutting-edge, more competitive, and more creative, which helps us better serve our clients and our communities.
#J-18808-Ljbffr
📌 Senior Investigator - Digital Forensics & Incident Response (Ontario)
🏢 Accenture Infrastructure and Capital Projects
📍 Ontario