Associate/Cybersecurity & Incident Response (Forensic Services practice)
Core
Associate in Cybersecurity & Incident Response (Forensic Services) executing security investigations, malware analysis, and digital forensics for clients facing fraud, waste, abuse, or data breaches.
Role type
Associate, hands-on IC forensic analyst
Builds
Forensic reports, expert testimony, incident response plans, and threat intelligence
Domain
Cybersecurity, Digital Forensics, Incident Response, Financial Consulting
Deliverable
production ML models | product features | dashboards & analysis | client delivery
Required skills
Digital forensics, malware analysis, threat hunting, memory forensics, network forensics, evidence handling, chain of custody, technical reporting, automation scripting, incident response lifecycle management
Preferred skills
SANS GIAC certifications (GCFA, GCFE, GNFA, GIME), IACIS certifications, collegiate cybersecurity competition experience, Python/T-SQL/VBA/Excel/C# programming
Technologies
Python, T-SQL, VBA, Excel, C#, SANS GIAC tools, IACIS tools, X-ways X-Pert, memory analysis tools, network protocol analyzers
Responsibilities
Execute security and privacy investigations for data breaches and fraud; Perform forensic acquisition and analysis of disk, file, memory, and log data; Detect and hunt malware across enterprise environments; Create Indicators of Compromise (IOCs) and track adversary activity; Provide technical assessments of cybersecurity controls against frameworks (NIST CSF, HIPAA, ISO 27001, SOC2); Draft forensic reports and affidavits; Testify as an expert witness
Seniority
Associate, entry-level to mid-level IC