International Contract Bench, Incident Response (DFIR)
Core
Support high-impact digital investigations involving sophisticated cyber threats and real-world security incidents by analyzing live response data and forensic artifacts.
Role type
Contract Incident Response (DFIR) Specialist
Builds
Forensic analysis and threat intelligence reports for active security incidents
Domain
Cybersecurity, Digital Forensics, Incident Response
Deliverable
client delivery
Required skills
Incident response, digital forensics, network analysis, cloud-native investigations, threat intelligence, adversary behavior analysis
Preferred skills
Experience with Windows, macOS, and Linux forensic artifacts, knowledge of AWS/GCP/Azure environments
Technologies
Windows, macOS, Linux, AWS, GCP, Azure, SaaS applications
Responsibilities
Perform incident response and digital forensic investigations involving active threat activity and security breaches; Analyze live response data and forensic artifacts to identify malicious activity, determine attack methods, and support investigations; Investigate Windows, macOS, and Linux environments using appropriate forensic techniques and tooling; Analyze business email compromise (BEC), account takeover, and other identity-related incidents; Conduct network analysis to identify suspicious activity, attacker behavior, and relevant indicators of compromise; Support investigations across cloud-native environments, including AWS, GCP, Azure, and SaaS applications
Seniority
Mid-Senior, Contract/Consultant