The Cyber Incident Response Team (CIRT) is responsible for conducting investigations (primary) and responding to network intrusions (secondary).
Conducting Investigations (Primary)
Of primary importance, CIRT is responsible for establishing a chain of custody for evidence,
- conducting necessary computer forensics, for case like intellectual property theft, harassment, fraud, Policy violation cases and code of business ethics cases.
- undefined
- CIRT's assistance also extends to mail file reviews and e-mail tracing as needed in support of these investigations. CIRT also provides technical support to Human Resources and Accenture Legal & Commercial offices in conducting internal investigations.
Responding to Network Intrusions and/or Incidents (Secondary)
Second, CIRT is responsible for coordinating with the numerous groups which could be involved in responding to intrusions, as well as conducting follow-up investigations to such incidents.
Roles & Responsibilities:
This position will be responsible for conducting forensic examinations of Accenture computers, mobile devices, and mail files in support of CIRT investigations, and other responsibilities as described below:
- Triage cases coming to CIRT
- Perform cyber incident investigations, determining the cause of the security incident and
- appropriately preserving evidence for potential legal action
- Perform detailed forensic analysis on writable media. Media may include hard disks, external drives, and mobile phones.
- Assess artifacts and close incident vulnerability as appropriate -- preserve technical evidence as appropriate
- Analyze potential infrastructure security incidents to determine if incident qualifies as a legitimate security breach