Remotery

DFIR Consultant

atTokio Marine HCCRemoteUS flagUnited StatesFull-timeConsultantJuniorMid-level$87.4k – $131k/year

Posted Aug 12

This is a fully remote position, open to applicants in United States.

📋 Description

• Conduct triage, acquisition, preservation, and analysis of endpoint, server, cloud, and log evidence to ascertain scope, impact, and root cause.

• Create precise timelines, identify impacted assets and accounts, and clearly document investigative findings in a defensible manner.

• Aid in the analysis of malware, suspicious scripts, persistence mechanisms, credential theft, lateral movement, and data exfiltration activities.

• Employ repeatable methods and validated workflows to ensure the integrity of evidence and the quality of investigations.

• Communicate with internal stakeholders, clients, insurers, legal counsel, and other authorized parties throughout active matters.

• Prepare updates, investigation notes, and report content that translates technical information into actionable business and response guidance.

• Assist in status calls, evidence requests, and coordination of subsequent steps across involved teams.

• Contribute to playbooks, templates, evidence handling protocols, and knowledge articles.

• Identify investigative tasks that can be standardized, automated, or enhanced for scalability.

• Support after-action reviews and capture lessons learned.

• Play a role in developing short-term and long-term plans for the assigned organizational area.

• Write or significantly contribute to investigative reports and documentation.

• Innovate methods to enhance financial performance and operational efficiency.

• Adhere to corporate policies and procedures while assisting in the implementation of cost-effective controls.


⛳️ Requirements

• A minimum of a 4-year bachelor's degree in cybersecurity, Computer Science, Information Technology, or a related field.

• Over 2 years of professional experience in digital forensics, incident response, security operations, or related investigative roles.

• Experience in performing endpoint, server, and cloud log analysis in support of cybersecurity incidents.

• Familiarity with common DFIR tools, evidence handling, and report writing.

• Ability to manage multiple active matters while ensuring quality and meeting deadlines.

• Excellent communication skills to effectively convey complex technical concepts to stakeholders in a clear and concise manner.

• Advanced degrees or certifications (CISSP, CISM, GCFE, GCFA, GREM, GBFA, GCIH, CFCE, CCE) are advantageous.


🏝️ Benefits

• Competitive salary and employee benefit package.

• Strong culture of learning.

• Opportunities for growth.

• 6% 401K match.

• 20 days of PTO plus 2 Floating Days.

• Paid parental leave.

• An opportunity to love what you do.

People also viewed

OpenText9 hours ago

Technical Consultant

GB flagUnited Kingdom OnlyFull-timeConsultant
ApplyView job
Sprout Social, Inc.10 hours ago

Strategic Services Consultant – Implementations

US flagUnited States OnlyFull-timeConsultant$77.6k – $97k/year
ApplyView job
Premier Inc.10 hours ago

Senior Consultant, Advisory Services

US flagUnited States OnlyFull-timeConsultant$90k – $150k/year
ApplyView job
Devoir Software Solutions10 hours ago

Consultant

IN flagIndia OnlyPart-timeConsultant
ApplyView job
CrossCountry Consulting11 hours ago

Senior Netsuite Functional Consultant

PH flagPhilippines OnlyFull-timeConsultant
ApplyView job
Bernoulli Educação12 hours ago

Mid-level Pedagogical Performance Consultant

BR flagBrazil OnlyFull-timeConsultant
ApplyView job

Never miss a great job!

Get handpicked remote jobs straight to your inbox weekly.

Trusted by 7,400+ designers