Match Score
Against your primary resumeLogin to See Your Match Score
Create a free account or log in to unlock your CV match score across:
Protocol Intelligence
Data-driven signals on your job's competitivenessLog in to see why each signal reads the way it does.
Job Description
Structured overview of role & requirementsAbout This Role
Conduct and coordinate digital forensic investigations and incident response for ransomware, phishing, malware, insider threats, and related cybersecurity incidents.
Perform endpoint and cloud forensic analysis across multiple platforms including Windows, Linux, macOS, Microsoft 365, Azure, and AWS, ensuring evidence handling and documentation meet legal and compliance standards.
Investigate and respond to security alerts from SIEM, EDR, and other security solutions; perform threat hunting; improve detection coverage; and support malware analysis and IOC enrichment.
Minimum Requirements
Technical expertise in digital forensics and incident response covering ransomware, phishing, malware, insider threats, and account compromise.
Experience conducting forensic investigations across Windows, Linux, macOS, Microsoft 365, Azure, and AWS environments.
Hands-on experience with SIEM and XDR tools such as Microsoft Sentinel, Splunk, Microsoft Defender XDR, CrowdStrike Falcon, SentinelOne, or Cortex XDR.
Degree in a related field or equivalent practical experience; relevant security certifications (e.g., CISSP, GCFA, GCFE, CHFI) preferred. Work Experience Required: Not explicitly mentioned in the JD.
Ideal Candidate Profile
Strong background in digital forensics and incident response with practical skills for endpoint and cloud forensic investigation.
Proficient in using SIEM and XDR platforms for security operations, threat detection, and incident management.
Knowledgeable about MITRE ATT&CK framework, Cyber Kill Chain, attacker TTPs, threat hunting methodologies, and malware analysis techniques.
