- Company Name
- Ankura
- Job Title
- Cyber Security Associate / Senior Associate, Cyber Security & Privacy Practice
- Job Description
-
**Job Title:**
Cyber Security Associate / Senior Associate, Cyber Security & Privacy Practice
**Role Summary:**
Provide end‑to‑end cyber security services for the EMEA Cyber Security & Privacy Practice, covering reactive (incident response, digital forensics, malware analysis) and proactive (security posture assessment, penetration testing, vulnerability management, managed detection & response) functions. Work on client engagements across industries, develop expertise, and support practice growth.
**Expectations:**
- 3+ years of industry or consulting experience with direct client interaction.
- Strong consulting mindset: clear communication, stakeholder management, delivery of actionable recommendations.
- Ability to manage multiple tasks, meet deadlines, and maintain detailed documentation.
**Key Responsibilities:**
1. **Digital Forensics & Incident Response**
- Acquire, preserve, and analyze forensic evidence (logs, memory, disk).
- Conduct malware analysis, host and network investigations (Windows/Linux/Mac).
- Prepare contemporaneous notes, evidence chain‑of‑custody records, and incident reports.
2. **Proactive Security Advisory**
- Evaluate client security programs against frameworks (NIST CSF, ISO 27001, PCI DSS, NIS Directive).
- Perform technical assessments: penetration testing, vulnerability scans, best‑practice audits.
- Assess cloud and hybrid environments, provide risk mitigation recommendations.
3. **General Delivery**
- Develop & present findings, recommendations, and executive summaries.
- Maintain working papers, methodology, and assumptions.
- Collaborate with SMEs, project team, and client contacts; contribute to consulting proposals and engagement plans.
- Manage time effectively to meet internal and client deadlines.
**Required Skills:**
- **Technical** – Digital forensics, malware reverse engineering, network traffic analysis, SIEM, vulnerability assessment tools, penetration testing frameworks, cloud security fundamentals.
- **Analytical** – Evidence documentation, cause‑effect analysis, risk assessment.
- **Consulting** – Client communication (written & oral), stakeholder management, presentation, project coordination.
- **Tool Proficiency** – FTK/EnCase, Volatility, Wireshark, Splunk/ELK, Nessus/SecHub, Metasploit, Kali Linux, Windows Sysinternals, Linux command line.
**Required Education & Certifications:**
- Bachelor’s degree in Cyber Security, Computer Science, Engineering, Computer Forensics, or related field.
- Minimum 3 years of relevant experience; client‑facing consulting exposure preferred.
- Certifications (preferred but not mandatory): CISSP, CISA, CISM, CREST (CEH, GCIH), OSCP/OSCE, PMP, CCNP, GPEN, GWAPT, SANS courses (SEC401, SEN10x).
- Familiarity with NIST CSF, ISO 27001, PCI DSS, NIS, and other regulatory frameworks.
---