Search

Cybersecurity Forensics Analyst - DT #5 - Remote

PublishedPublished: 6/14/2022
Technology

Job Description

Job DescriptionCybersecurity Forensics Analyst

Location: Remote

Duration: 1–2 Weeks with potential extension

Position Overview

We are seeking a skilled Cybersecurity Forensics Analyst to support corporate cybersecurity investigations, threat analysis, and incident response activities. The analyst will investigate suspicious activity, security alerts, and potential security breaches while using forensic and threat intelligence techniques to determine the scope, impact, and root cause of incidents.

The ideal candidate will have strong experience across SIEM/SOAR, EDR/XDR, network and endpoint forensics, threat intelligence, malware analysis, and security investigation methodologies.

Key Responsibilities

  • Investigate suspicious activities, security alerts, and potential cybersecurity breaches.
  • Analyze endpoint, network, application, and authentication logs.
  • Perform forensic analysis to determine the scope, impact, and nature of security incidents.
  • Identify Indicators of Compromise (IOCs) and attacker techniques.
  • Analyze evidence to identify patterns of malicious or unauthorized activity.
  • Support SOC and Incident Response teams during security investigations.
  • Conduct threat analysis and correlate security events across multiple data sources.
  • Apply MITRE ATT&CK techniques to understand and document adversary behavior.
  • Perform malware analysis and investigate potentially malicious files and artifacts.
  • Develop detailed investigation reports documenting findings, evidence, and recommendations.
  • Prepare concise executive-level summaries for security leadership and stakeholders.
  • Recommend security improvements based on investigation findings and observed attack patterns.
  • Assist with threat intelligence and ongoing security monitoring activities.

Key Technical Skills Security Monitoring & Response

  • SIEM / SOAR
  • EDR / XDR
  • Security alert investigation
  • Incident response

Digital Forensics

  • Endpoint forensics
  • Network forensics
  • Log analysis
  • Authentication and application log analysis
  • Digital evidence analysis

Threat Analysis

  • Threat intelligence
  • MITRE ATT&CK
  • Indicators of Compromise (IOCs)
  • Attacker technique analysis
  • Malware analysis

Scripting & Automation

  • Scripting for security investigation and automation
  • Data collection, analysis, and correlation

Required Qualifications

  • Proven experience in cybersecurity investigations and digital forensics.
  • Strong understanding of security monitoring and incident investigation processes.
  • Hands-on experience with SIEM/SOAR and EDR/XDR technologies.
  • Experience performing endpoint and network forensic investigations.
  • Strong log-analysis and event-correlation skills.
  • Experience identifying IOCs and attacker behaviors.
  • Knowledge of MITRE ATT&CK and modern attack techniques.
  • Experience with malware analysis and threat intelligence.
  • Strong analytical and problem-solving skills.
  • Excellent technical documentation and communication abilities.
  • Ability to produce both detailed technical reports and concise executive summaries.
  • Ability to work independently in a remote environment.
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...