Especialista en DFIR
Core
Detect, analyze, and respond to security incidents and conduct digital forensics investigations to identify the origin, scope, and impact of compromises.
Role type
Digital Forensics & Incident Response (DFIR) Specialist
Builds
Incident response playbooks, forensic reports, and threat intelligence for internal security operations.
Domain
Cybersecurity / Digital Forensics
Deliverable
production ML models | product features | dashboards & analysis | research | client delivery | infrastructure | physical/clinical work
Required skills
Incident response (detection, containment, eradication, recovery), Digital forensics analysis, Malware analysis, SIEM/EDR/IDS-IPS management, Log and network traffic analysis, Technical English (reading/writing), Scripting (Python, PowerShell, Bash), Windows/Linux/Network OS knowledge
Preferred skills
GCFA certification, CHFI certification, Analytical thinking, Detail orientation, Ability to work under pressure
Technologies
SIEM, EDR, IDS/IPS, Python, PowerShell, Bash, Windows, Linux
Responsibilities
Lead and execute security incident response activities, Perform forensic analysis on endpoints, systems, and networks, Analyze malware and suspicious artifacts, Manage and correlate security events from multiple sources, Prepare detailed technical reports and executive summaries, Collaborate with internal IT, legal, and compliance teams
Seniority
Mid-level, hands-on IC