Incident Response Intern
Core
Intern supporting incident response engagements by reviewing security events, collecting forensic evidence, and conducting threat hunting.
Role type
Incident Response Intern
Builds
Client cybersecurity posture and incident mitigation reports
Domain
Cybersecurity / Incident Response
Deliverable
client delivery
Required skills
forensic evidence collection, security event analysis, threat hunting, EDR tool usage, SIEM tool usage, basic scripting, networking concepts, cybersecurity concepts, IT concepts
Preferred skills
professional incident response experience, SOC environment experience, cloud platform familiarity, EDR tool experience, SIEM tool experience
Technologies
SentinelOne, CrowdStrike, Carbon Black, Microsoft Defender for Endpoint, Splunk, Elastic, Microsoft Sentinel, AWS, O365, Google Workspace, Bash, PowerShell, Python
Responsibilities
coordinate with team members on incident response engagements, review and analyze security events and incidents, assist in collection of digital forensic evidence, conduct proactive threat hunting activities, review and generate detailed reports based on investigation findings, participate in on-site incident response engagements
Seniority
Intern