
Digital Forensics and Incident Response Analyst
Posted 1 day ago

Posted 1 day ago
This is a fully remote position, open to applicants in Ireland.
• Oversee enterprise incident response and cybersecurity crisis management from detection to recovery.
• Manage investigations across host, network, cloud, identity, and SaaS platforms within Windows, Linux, macOS, Microsoft 365, AWS, Azure, and hybrid settings.
• Conduct advanced threat hunting and compromise assessments utilizing SIEM, EDR, forensic, and threat intelligence tools.
• Formulate containment, eradication, and remediation strategies that align with business risks.
• Create executive briefings, technical documentation, board-ready updates, and post-incident evaluations.
• Collaborate with legal, compliance, privacy, audit, and external parties as necessary.
• Propel the adoption of AI-enhanced workflows to boost investigation speed, reporting quality, and operational effectiveness.
• Provide technical guidance during investigations and influence strategic security choices.
• Aid in capability enhancement and serve as a reliable advisor for cybersecurity risk management and response preparedness.
• Participate in the 24/7 on-call rotation.
• Interact with stakeholders across various regions and time zones.
• Minimum of 5 years in incident response, DFIR, security operations, consulting, or comparable cybersecurity fields.
• Proven experience leading significant cyber incidents such as ransomware, business email compromise, insider threats, cloud breaches, supply chain attacks, or advanced persistent threats.
• Strong capabilities in digital forensics using industry-standard forensic and triage tools.
• Familiarity with Splunk, Microsoft Defender, CrowdStrike Falcon, ServiceNow SIR, and cloud security technologies.
• Understanding of network protocols, detection engineering, log analytics, and threat hunting practices.
• Outstanding verbal and written communication skills for both technical and executive audiences.
• Proven ability to manage multiple priorities in a global enterprise setting.
• Essential experience with forensic tools such as FTK, EnCase, X-Ways, Magnet Axiom, or SIFT.
• Industry certifications like GCFA, GCFE, GCIH, GCIA, CISSP, CISM, Azure Security Engineer, or AWS Security Specialty are highly preferred but not required.
• A Bachelor's degree in Cybersecurity, Computer Science, Information Security, Engineering, Intelligence Studies, or a related field, or equivalent experience, is preferred but not mandatory.
• Capability to participate in a 24/7 on-call rotation.
• Acquire valuable knowledge and experience from diverse, supportive colleagues worldwide.
• Enjoy a respectful and welcoming environment that promotes individuality and encourages innovative thinking.
• Explore vast and limitless career opportunities.
• Eligible for remote or hybrid work arrangements.
• Participate in a 24/7 on-call rotation.
• No travel is required as part of standard daily responsibilities.
• Benefit from AI-assisted preliminary screening with personalized job suggestions, automated interview scheduling, experience-based evaluations, and real-time chatbot responses.
Kryptus SA
SOFTSWISS
Inetum
C4 Group
Get handpicked remote jobs straight to your inbox weekly.