Senior Incident Response Engineer

September 29

Apply Now
Logo of Abacus Group

Abacus Group

Abacus Group is a global IT and cybersecurity managed service provider offering a one-stop shop for financial services firms to manage all of their IT and security needs. Clients benefit from our best-in-breed technology and specialized cybersecurity services delivered through a single integrated platform backed by our expertise serving the financial sector. Abacus Group is a partner that proactively helps firms adapt to the ever-changing threat and regulatory landscape with a unique understanding of the challenges facing the financial services industry. https://www.abacusgroupllc.com/

501 - 1000 employees

📋 Description

• Provide escalated remote support and project delivery to Incident Response clients, including backups, workstation, Active Directory, network, and hypervisor restoration, migrations, upgrades, and security toolset deployment • Collaborate on project planning, project design, preparation of deliverables, timelining, and contingency planning • Perform advanced systems configuration, management, and maintenance across Microsoft-related technologies, virtualization, backup and disaster recovery, and remote access solutions • Leverage diagnostic tools; review event logs, Syslogs, monitoring data, and memory dumps to troubleshoot and determine root cause • Restore and reimage virtual servers from images and various backup solutions and rebuild ESX and Hyper-V hosts and domain controllers • Deploy and configure security-enhancing solutions for systems and applications (including MFA and endpoint protection) • Maintain billable utilization targets and record complete change details, time worked entries, and work notes in ServiceNow in real time • Follow project and change management processes; communicate status internally and externally and take ownership for client experience • Participate in incident response on-call rotation for incoming IR projects; assist in initial triage and establishment of access for project kick-off • Flex into infrastructure project delivery during periods of lower IR activity (infrastructure migrations, systems upgrades, toolset implementation and configuration)

🎯 Requirements

• Ideally a four-year degree in a relevant field • Vendor-level certifications such as Microsoft MCSE, VMWare VCP (VMware VCP) preferred • Network-related certifications such as Cisco CCNA/CCNP are a big plus • At least 5 years of experience delivering IT projects or support working with systems and virtualization • At least 1 year of experience administering and/or implementing systems in cloud infrastructure such as Azure or AWS • Highly developed knowledge of Windows OS (including Windows 10 and Windows Servers), failover clustering, VMware or Hyper-V, and server hardware • Strong knowledge of Active Directory, Windows/Linux, Storage Area Networks, Exchange, O365, SCCM, MDT, and SQL Server • Experience with backup and disaster recovery solutions for desktops and servers • Solid understanding of networking concepts, switching, network firewalls, wireless security technologies, VPN, Dynamic VPN & IPsec tunnels, and Cisco device ecosystem • Ability to use diagnostic tools: review event logs, Syslogs, monitoring data, and memory dumps • Willingness to participate in incident response on-call rotation (1 week out of every 4 weeks) and work evenings, weekends, and holidays as required • Ready to be an effective remote worker with a dedicated private home office and private internet connection of at least 50MBPS • Open to travel and being present at client sites when a project requires

🏖️ Benefits

• Generous annual leave entitlement plus bank holidays (pro-rata if part-time working hours apply) • Gym discount • Life insurance • Comprehensive travel insurance for you and your family in line with scheme rules • Confidential well-being and counselling support • Competitive Compensation • Contributory pension scheme • Company events • Private Medical and Dental Insurance

Apply Now

Similar Jobs

September 24

Lead Red Team cyber security testing for global veterinary business. Simulate real-world attacks, manage testing strategy, and mentor internal testers.

Cloud

Cyber Security

September 19

Lead offensive security testing across Sporty's web, mobile and API platforms. Drive remediation with DevOps and product squads and mentor engineers.

JavaScript

Python

Go

September 19

Senior Security Engineer building insider threat detections and automations for Coinbase, protecting customer assets and employees.

Python

SQL

September 16

Incident Response Security Engineer at ClickHouse securing cloud OLAP database services. Build detection, automate response, maintain logging, and handle security incidents across products.

AWS

Azure

Cloud

Google Cloud Platform

Open Source

Python

SQL

Go

September 11

Provide technical support and incident resolution for Prisma Cloud customers at Palo Alto Networks, troubleshooting cloud-native environments and coordinating root-cause fixes with engineering and product teams.

Ansible

AWS

Azure

Cloud

Cyber Security

Docker

Google Cloud Platform

Kubernetes

Linux

Python

TCP/IP

Terraform

Built by Lior Neu-ner. I'd love to hear your feedback — Get in touch via DM or support@remoterocketship.com