Senior DFIR Recovery Specialist

Reposted 18 Hours Ago
Be an Early Applicant
Hiring Remotely in US
Remote or Hybrid
115K-130K Annually
Senior level
Information Technology • Insurance • Professional Services • Software • Cybersecurity
At-Bay combines world-class technology with industry-leading insurance to help clients meet risk head-on.
The Role
The Senior DFIR Recovery Specialist oversees incident response processes, engages with IT and Security teams, provides security expertise, and identifies risk gaps.
Summary Generated by Built In

Why you should join our At-Bay Security team:

At-Bay is a fast-growth InsurSec company (Insurance x Cybersecurity) on a mission to bring innovative products to the market that help protect small businesses from digital risks. As an InsurSec provider, we uniquely combine insurance with mission-critical security technologies, threat intelligence, and human expertise, to bridge the critical security capability gap that exists among SMBs in the community. We believe InsurSec is an $80B market opportunity and we are excited to introduce our Senior Incident Response Recovery Specialist role to the security team in order to help expand our reach and influence in the business and security community, of which we serve 40,000 customers.

The Role:

We seek an experienced Incident Response Recovery Specialist to join the At-Bay Response & Recovery team. The Senior DFIR Recovery Specialist will support the Response & Recovery remediation team and report to our Incident Response Engineer.

Responsibilities:

  • Accountable for overseeing, measuring, and driving efforts to systematically increase the maturity and effectiveness of cyber security incident response and recovery processes, setups, and controls for At-Bay’s Response and Recovery Team.
  • Gains and helps maintain an end-to-end understanding of relevant client landscape (networks, endpoints, platforms, applications, dependencies, cloud services, on-premise setups, etc.).
  • Engages with global and local operational Security & IT teams, collaborates closely with all relevant functions across the client base, and consults with external experts & stakeholders.
  • Provides deep security expertise in the context of reviews of detection measures, post-mortem analysis of cyber incident responses, and IT recovery exercises; supports and helps coordinate major real cyber security events.
  • Provides assurance & evidence for the formal security control objectives in this area and contributes accordingly to the overall needs of At-bay’s clients.
  • Identifies gaps in detection, response, recovery controls, and details and drives security risk reduction activities.

In this role, we value:

  • Great educational background, preferably in the fields of computer science or engineering for technical project managers.
  • Proven working experience as a project administrator in the information technology sector.
  • Solid technical background, with understanding or hands-on experience in Windows, Linux, and OSX
  • Excellent client-facing and internal communication skills.
  • Excellent written and verbal communication skills.
  • Solid organizational skills, including attention to detail and multi-tasking skills.

Required Skills:

  • Play a key role in post-breach firewall reconfiguration, including rule audits, segmentation updates, and blocklist implementations to harden perimeter defenses.
  • Collaborate with threat intel and SOC teams to develop and deploy IOCs and custom firewall rulesets (e.g., Palo Alto, Fortinet, Cisco ASA) during active incident response.
  • Create and execute firewall recovery workflows to ensure secure rollback and containment during ransomware and APT-level incidents.
  • Install/Replace, configure, and optimize network hubs, routers, and switches (e.g., higher-level protocols, tunneling).
  • Develop and implement network backup and recovery procedures.
  • Diagnose network connectivity problems.
  • Implement new system design procedures, test procedures, and quality standards.
  • Install and maintain network infrastructure device operating system software (e.g., windows OS, virtual machines).
  • Integrate new systems into existing network architecture.
  • Monitor network capacity and performance.
  • Skill in writing code in a currently supported programming language (e.g., Java, Python, PowerShell).
  • Patch network vulnerabilities to ensure that information is safeguarded against outside parties.
  • Provide feedback on network requirements, including network architecture and infrastructure.
  • Test and maintain network infrastructure, including software and hardware devices.
  • An understanding of forensic data collection tools and procedures is a plus.

Work location:

  •  USA, Remote ( EST )
  •  Travel 50–75% to client locations primarily along the East Coast; flexibility to travel nationwide as needed.

Our estimated base pay range for this role is $115,000 - $130,000 per year. Base salary is determined by a variety of factors including but not limited to market data, location, internal equitability, domain knowledge, experiences and skills. In general, if the position sparks your interest we encourage you to apply - our team prioritizes talent.

 #LI-CK1

Top Skills

Cisco Asa
Fortinet
Java
Linux
Osx
Palo Alto
Powershell
Python
Windows
Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
HQ: San Francisco, CA
230 Employees
Year Founded: 2016

What We Do

We address digital risk in a way that everyone, from brokers and business owners to CISOs and CFOs, can all understand. We question, analyze, and monitor the risk of every company in our portfolio — not just once, but continuously — so we can educate, advise, and support our brokers and our insureds throughout our partnership. Because digital risk never rests, and neither do we.

To learn more about At-Bay, visit www.at-bay.com.

LinkedIn: https://www.linkedin.com/company/at-bay/mycompany/
Instagram: https://www.instagram.com/keeprisk_atbay/

Why Work With Us

We are proud to be a diverse company and to have expertise from multiple industries driving our culture. We’re committed to building a company culture where people of all identities and backgrounds are empowered to thrive, develop their careers, and bring their full selves to work.

Gallery

Gallery

Similar Jobs

GitLab Logo GitLab

Support Engineer

Cloud • Security • Software • Cybersecurity • Automation
Easy Apply
Remote
United States
2500 Employees

Cloudflare Logo Cloudflare

Sales Director, US Majors Heartland

Cloud • Information Technology • Security • Software • Cybersecurity
Remote or Hybrid
United States
4400 Employees

Kalshi Logo Kalshi

Accountant

Fintech • Payments • Financial Services
Easy Apply
In-Office or Remote
2 Locations
203 Employees
100K-180K Annually

Cox Enterprises Logo Cox Enterprises

Search Engine Optimization Specialist

Automotive • Cloud • Greentech • Information Technology • Other • Software • Cybersecurity
Remote or Hybrid
United States
50000 Employees
21-32 Hourly

Similar Companies Hiring

Standard Template Labs Thumbnail
Software • Information Technology • Artificial Intelligence
New York, NY
10 Employees
PRIMA Thumbnail
Travel • Software • Marketing Tech • Hospitality • eCommerce
US
15 Employees
Scotch Thumbnail
Software • Retail • Payments • Fintech • eCommerce • Artificial Intelligence • Analytics
US
25 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account