CO
We are seeking a Cybersecurity Incident Response & DFIR Expert. In this role, you will be fully responsible for internalizing and leading high-severity incident response and digital forensics capabilities tailored to the Americas time zone.
The position combines rigorous, hands-on technical operations to mitigate critical threats (reactive phase) with designing cyber drills, implementing automations, and hardening response playbooks (proactive phase).
Key Responsibilities
-
Incident Response (IR): Coordinate and lead the containment of critical cyber incidents (Ransomware, advanced intrusions), orchestrating technical teams and assigning tasks under high-pressure scenarios.
-
Digital Forensics (DF): Investigate the root cause, initial access vector, and scope of attacks through deep-dive analysis of logs, system memory, networks, and endpoints.
-
Threat Intelligence & Reporting: Author comprehensive technical digital forensics reports, document lessons learned, and generate Indicators of Compromise (IOCs) and Tactics, Techniques, and Procedures (TTPs).
-
Organizational Resilience: Design and execute cyber attack simulations (cyber drills) and develop technical incident response playbooks.
-
Strategic Communication: Translate complex technical findings into executive-level language to deliver clear briefings to crisis committees and senior leadership (C-Level).
Profile Requirements
-
Education: Bachelor’s degree in Systems Engineering, Cybersecurity, Computer Science, or a related field.
-
Experience: Solid and proven track record in Blue Team, CSIRT, SOC Level 3 positions, or senior consulting roles specializing in DFIR.
-
Languages: Full professional fluency in English (both written and spoken) is an absolute requirement for global reporting and alignment.