Working within the Information Privacy and Security Office, the Principal Forensic and Incident Response Architect works closely with all IT departments to detect, analyze, contain, and mitigate computer security incidents. This position is expected to lead and participate in incident response activities including but not limited to computer forensic investigations, live response and triage, and electronic discovery. The Principal Forensic and Incident Response Architect will also perform proactive activities including, but not limited to threat hunting, detection engineering, and tabletop exercises. The Principal Analyst will serve as an escalation point for cyber security incidents and provide oversight of cyber security investigations. The Principal Forensic and Incident Response Architect will report to the Director of Incident Response. This position will work in a collaborative effort with IT and business units to ensure that cyber security incidents are handled appropriately to mitigate the impact of a cyber security incident.
PRINCIPLE DUTIES AND RESPONSIBILITIES:
This position responds to and investigates cybersecurity incidents using cutting edge incident response and digital forensic techniques and tools. Performs forensic analysis involving on-premise computer systems and cloud environments. This position will help assist in the recovery of potentially lost or compromised data. When investigating computer security incidents the person in this role collects, preserves, and analyzes digital evidence. In addition, the Principal Forensic and Incident Response Architect documents and reports on findings and recommends next steps. This position will evaluate the organization's digital forensics and threat detection tools to identify gaps in monitoring and procedures around the respective tools. This position works on advanced, complex, technical projects or business issues requiring state of the art technical or industry knowledge. The role will also provide a continuous feedback loop to both security architecture and Security Operations Center (SOC) staff to continuously improve the organization’s incident detection and response capabilities.
EDUCATION AND EXPERIENCE:
CERTIFICATIONS/LICENSURES:
This posting represents the major duties, responsibilities, and authorities of this job, and is not intended to be a complete list of all tasks and functions. It should be understood, therefore, that incumbents may be asked to perform job-related duties beyond those explicitly described above.
Henry Ford Health partners with millions of people on their health journey, across Michigan and around the world. We offer a full continuum of services – from primary and preventative care to complex and specialty care, health insurance, a full suite of home health offerings, virtual care, pharmacy, eye care and other health care retail. With former Ascension southeast Michigan and Flint region locations now part of our team, Henry Ford’s care is available in 13 hospitals and hundreds of ambulatory care locations. Based in Detroit, Henry Ford is one of the nation’s most respected academic medical centers and is leading the Future of Health: Detroit, a $3 billion investment anchored by a reimagined Henry Ford academic healthcare campus. Learn more at henryford.com/careers.
The health and overall well-being of our team members is our priority. That’s why we offer support in the various components of our team’s well-being: physical, emotional, social, financial and spiritual. Our Total Rewards program includes competitive health plan options, with three consumer-driven health plans (CDHPs), a PPO plan and an HMO plan. Our team members enjoy a number of additional benefits, ranging from dental and eye care coverage to tuition assistance, family forming benefits, discounts to dozens of businesses and more. Employees classified as contingent status are not eligible for benefits.
Equal Employment Opportunity / Affirmative Action Employer Henry Ford Health is
committed to the hiring, advancement and fair treatment of all individuals without regard to
race, color, creed, religion, age, sex, national origin, disability, veteran status, size, height,
weight, marital status, family status, gender identity, sexual orientation, and genetic information,
or any other protected status in accordance with applicable federal and state laws.
The Fiber Splicer will be responsible for properly preparing and splicing fiber optic cable within a telecommunications system. RESPONSIBILITIES INCLUDE, BUT ARE NOT LIMITED TO: Prepare fiber cable into new or existing splice enclosure, tray, and splice fiber...
...who supervises and provides care to these patients utilizing the nursing process including the therapeutic use of self.~Follows... ...~Other duties as required.Experience Required~1 year pre/post or Critical Care RN experience required; 2 years of experience preferred...
Acute Sterile Processing Technician - Full TimeNew Grads Encouraged to Apply!MLR is seeking a meticulous and dedicated Certified Sterile Processing... ...Service Technician (CRCST) or equivalent required.Previous experience in sterile processing is a plus.Why Youll Love the Area:This...
...solid understanding of voice and data networks, major operating systems, active directory, and their associated peripherals, along with MITRE ATT&CK TTPs. ~ Must demonstrate knowledge of tactics, techniques, and procedures associated with malicious insider activity,...
...Job Summary: Logistics Specialists are part of a global team that manages logistics processes to deliver product to the right place, at the right time, at the... ...Execute shipments by coordinating with external supply chain partners; suppliers, carriers, and third party consolidators...