Principal Incident Response Consultant

4 months ago


Doha, Qatar IBM Full time

Introduction
As a Senior Incident Response Consultant at IBM X-Force Incident Response, you will be responsible for handling and coordinating cyber incidents across our clients' enterprise environments. During a cyber incident, Senior IR Consultants are responsible to ensure engagement objectives are met or exceeded, and coordinate and lead junior consultants in the response effort. A Senior Incident Response Consultant can communicate effectively with analysts, technical teams, and other stakeholders to deliver excellence in responding to and resolving incidents. You are expected to be both a technical expert but also able to orchestrate the analysis tasks of interest to a diverse body of stakeholders, many of whom will not have a strong technical background.

Your Role and Responsibilities
The consultant has strong knowledge of:

- processes for collecting, packaging, transporting, and storing electronic evidence while maintaining chain of custody.
- cyber attack stages (e.g., reconnaissance, scanning, enumeration, gaining access, escalation of privileges, maintaining access, network exploitation, covering tracks).
- cloud service models (e.g., IaaS, PaaS and SaaS) and how those models can limit digital forensics and incident response.
- malware analysis concepts and methodologies.
- adversarial tactics, techniques, and procedures.

Required Technical and Professional Expertise
Hands-on experience in Incident Management roles that required the ability to convey complex technical matters with analysis tasks and other relevant teams (Threat Intelligence, Malware Analysis, etc.).
Considerable expertise leading incident response investigations, from triage/kickoff through to post-incident remediation.

Highly skilled in:

- identifying, capturing, containing, and reporting malware.
- recognizing and categorizing types of vulnerabilities and associated attacks.
- using endpoint detection and response (EDR) tools (e.g., Crowdstrike, Cortex, Carbon Black) to detect and respond to security incidents at scale.
- using log management and event correlation tools (e.g., Splunk, ELK, QRadar).
- analyzing memory dumps to extract information.
- using forensic tool suites (e.g., X-Ways, EnCase, Sleuthkit, FTK).
- recognizing and interpreting malicious activity within network evidence sources.
- conducting forensic analyses across multiple operating system platforms (e.g., Windows, Linux, macOS).
- preparing written reports and oral presentations for technical, executive, and legal audiences.

Prior experience in a client-facing Incident Response consultancy role.
Fluent in English and Arabic.

Preferred Technical and Professional Expertise
- Relevant industry certifications (e.g., GCFE, GCFA, CISSP, etc.)

About Business UnitIBM Consulting is IBM’s consulting and global professional services business, with market leading capabilities in business and technology transformation. With deep expertise in many industries, we offer strategy, experience, technology, and operations services to many of the most innovative and valuable companies in the world. Our people are focused on accelerating our clients’ businesses through the power of collaboration. We believe in the power of technology responsibly used to help people, partners and the planet.

Being an IBMer means you’ll be able to learn and develop yourself and your career, you’ll be encouraged to be courageous and experiment everyday, all whilst having continuous trust and support in an environment where everyone can thrive whatever their personal or professional background.

Our IBMers are growth minded, always staying curious, open to feedback and learning new information and skills to constantly transform themselves and our company. They are trusted to provide on-going feedback to help other IBMers grow, as well as collaborate with colleagues keeping in mind a team focused approach to include different perspectives to drive exceptional outcomes for our customers. The courage our IBMers have to make critical decisions everyday is essential to IBM becoming the catalyst for progress, always embracing challenges with resources they have to hand, a can-do attitude and always striving for an outcome focused approach within everything that they do.

Are you ready to be an IBMer?

Restlessly reinventing since 1911, we are not only one of the largest corporate organizations in the world, we’re also one of the biggest technology and consulting employers, with many of the Fortune 50 companies relying on the IBM Cloud to run their business.

At IBM, we pride ourselves on being an early adopter of artificial intelligence, quantum computing and blockchain. Now it’s time for you to join us on our journey to being a responsible technology innovator and a force for good in the world.



  • Doha, Qatar Palo Alto Networks Full time

    Company Description At Palo Alto Networks®, everything starts and ends with our mission: Being the cybersecurity partner of choice, protecting our digital way of life. We have the vision of a world where each day is safer and more secure than the one before. These aren’t easy goals to accomplish - but we’re not here for easy. We’re here for better....


  • Doha, Qatar ENT Full time

    The Incident Response Analyst is responsible for handing security incidents received/escalated from the SOC Analyst and performs a business impact analysis on the security incident. This function may add contextual information to the security incident, perform additional analysis and based on the business impact will recommend the response actions and...


  • Doha, Qatar Techpace Full time

    Job Description: We are seeking a highly skilled and experienced Incident Response and Digital Forensics Engineer to join our cybersecurity team. As an Incident Response and Digital Forensics Engineer, you will be responsible for investigating security incidents, performing digital forensics analysis, and coordinating incident response efforts. You will work...


  • Doha, Qatar Ooredoo Group of Companies Full time

    About Us Ooredoo is a dynamic global Telecommunications player operating in 10 countries serving more than 138 million customers. Ooredoo Qatar employs approximately 1,600 people driving Ooredoo to be the number one choice for world-class communications services in Qatar, and it is a team that you can be part of! About the Business Unit CEO's office works...


  • Doha, Qatar Palo Alto Networks Full time

    Company Description** Our Mission** At Palo Alto Networks® everything starts and ends with our mission: Being the cybersecurity partner of choice, protecting our digital way of life. We have the vision of a world where each day is safer and more secure than the one before. These aren’t easy goals to accomplish - but we’re not here for easy. We’re...


  • Doha, Qatar Microsoft Full time

    With over 18,000 employees worldwide, the Microsoft Customer Experience & Success (CE&S) organization is responsible for the strategy, design, and implementation of Microsoft’s end-to-end customer experience. Come join CE&S and help us build a future where customers come to us not only because we provide industry-leading products and services, but also...


  • Doha, Qatar Qatar Airways Full time

    **About Role** **Role and Responsibilities** - Assist and/or lead investigations in active security incident scenarios, supporting the organization through the Incident Response lifecycle - Provide expertise in the triage, escalate and respond to potential security events & incidents and provides support to security teams - Must also be able to participate...


  • Doha, Qatar Qatar Airways Full time

    **About Role** **Role and Responsibilities** - Assist and/or lead investigations in active security incident scenarios, supporting the organization through the Incident Response lifecycle - Provide expertise in the triage, escalate and respond to potential security events & incidents and provides support to security teams - Must also be able to participate...


  • Doha, Qatar Talent Pal Full time

    **About Role** **Role and Responsibilities** - Assist and/or lead investigations in active security incident scenarios, supporting the organization through the Incident Response lifecycle - Provide expertise in the triage, escalate and respond to potential security events & incidents and provides support to security teams - Must also be able to participate...


  • Doha, Qatar Oracle Full time

    ASAP Senior Principal Consultant-230003LP **Applicants are required to read, write, and speak the following languages***: English **Preferred Qualifications** As a ASAP front office consultant here at oracle, you're expected to exhibit skills including: - Working experience on ASAP provisioning (in Telecom domain) - Ability to do simple troubleshooting -...


  • Doha, Qatar Brunel Full time

    Brunel is a global provider of flexible workforce solutions and expertise, connecting specialists with clients across the globe. We deliver innovative services like Recruitment (people, talent, and training), Logistics (global mobility and travel), Technical Services (project support and setup) and Consultancy to our clients both globally and...


  • Doha, Qatar قطر للطاقة Full time

    **Company** QatarEnergy is a state-owned public corporation established byEmiri Decree No. 10 in 1974. It is responsible for all phases of the oiland gas industry in the State of Qatar.The principal activities of QatarEnergy, its subsidiaries and jointventures are the exploration, production, local and international saleof crude oil,natural gas and gas...


  • Doha, Qatar IQVIA Full time

    Job Overview We are currently seeking a Manager and/or Associate Principal at IQVIA, you will be responsible for managing or leading multiple consulting projects and ensuring on-time and on-budget delivery for clients in the pharmaceutical or related industries. Essential Functions - Managing project teams including both internal and external resources in...


  • Doha, Qatar Brunel Full time

    **About this role** - Accountable for managing all high level emergency incidents with multi-agency involvement and making strategic decisions of national and international Importance to mitigate the effects of the incident on the population, multi-national companies and the national economy; - Accountable for the operation, maintenance and management of a...


  • Doha, Qatar قطر للطاقة Full time

    **Company** QatarEnergy is a state-owned public corporation established byEmiri Decree No. 10 in 1974. It is responsible for all phases of the oiland gas industry in the State of Qatar.The principal activities of QatarEnergy, its subsidiaries and jointventures are the exploration, production, local and international saleof crude oil,natural gas and gas...

  • Principal Consultant

    2 weeks ago


    Doha, Qatar Ericsson Full time

    **About this opportunity** We are now looking for a Principal Consultant with a deep understanding of 5G and Cellular technology and how it will support our CSPs to provide this innovation platform to both consumers and the Enterprise segment. The Ericsson MMEA Consulting Team is proactively engaging with our Key Customers and act as advisors to the...


  • Doha, Qatar قطر للطاقة Full time

    **Company** QatarEnergy is a state-owned public corporation established byEmiri Decree No. 10 in 1974. It is responsible for all phases of the oiland gas industry in the State of Qatar.The principal activities of QatarEnergy, its subsidiaries and jointventures are the exploration, production, local and international saleof crude oil,natural gas and gas...


  • Doha, Qatar قطر للطاقة Full time

    **Company** QatarEnergy is a state-owned public corporation established byEmiri Decree No. 10 in 1974. It is responsible for all phases of the oiland gas industry in the State of Qatar.The principal activities of QatarEnergy, its subsidiaries and jointventures are the exploration, production, local and international saleof crude oil,natural gas and gas...

  • Lead, Threat Detection

    7 months ago


    Doha, Qatar قطر للطاقة Full time

    **Company** QatarEnergy is a state-owned public corporation established byEmiri Decree No. 10 in 1974. It is responsible for all phases of the oiland gas industry in the State of Qatar.The principal activities of QatarEnergy, its subsidiaries and jointventures are the exploration, production, local and international saleof crude oil,natural gas and gas...


  • Doha, Qatar Hedisa Constructions Full time

    **Requirements**: - Taproot Teamlead certification - 10+ years experience **Role Description** This is a full-time on-site role as an Incident Investigation Coordinator at ViTO Energy, Engineering & Construction located in Ras Laffan. As an Incident Investigation Coordinator, you will be responsible for conducting thorough investigations into incidents...