Associate/Cybersecurity & Incident Response (Forensic Services practice)
Core
Associate in Cybersecurity & Incident Response (Forensic Services) executing security investigations, digital forensics, malware analysis, and threat hunting for clients facing fraud, waste, abuse, or data breaches.
Role type
Associate IC cybersecurity forensic analyst
Builds
Forensic reports, expert testimony, incident response plans, and technical assessments for legal counsel and corporate clients
Domain
Cybersecurity, Digital Forensics, Incident Response, Threat Intelligence
Deliverable
client delivery
Required skills
digital forensic analysis, malware analysis (static/dynamic), threat hunting, memory forensics, network forensics, evidence handling, chain of custody, technical report writing, automation scripting, incident response procedures, adversary technique analysis
Preferred skills
SANS GIAC certifications (GCFA, GCFE, GNFA, GIME), IACIS certifications (CFCE, CIFR), Magnet MCFE, X-ways X-Pert, collegiate cybersecurity competition experience
Technologies
Python, T-SQL, VBA, Excel, C#, commercial forensic tools, open source forensic tools, physical memory analysis tools, network protocol analyzers
Responsibilities
Execute security and privacy investigations for data security matters; Provide expert digital forensic support for data breaches and fraud; Draft forensic reports and affidavits; Forensically acquire data and images from hosts; Detect and hunt malware across enterprise environments; Track adversary activity via timeline and memory analysis; Provide technical assessments on cybersecurity controls against frameworks (NIST CSF, HIPAA, ISO 27001, SOC2, NERC-CIP)
Seniority
Associate (2-4 years experience), hands-on IC