Digital Forensics and Incident Response Specialist
Red Alpha Cybersecurity
Singapore
The Role
This position covers the full lifecycle of security incident response, from initial detection and triage through containment, eradication, and recovery. The specialist conducts digital forensic investigations across systems, networks, and endpoints, maintains case documentation, develops response playbooks, and supports proactive threat hunting activities.
Skills & Experience
At least three years in incident response or digital forensics is required, alongside hands-on experience with forensic tooling, SIEM, and EDR platforms. Candidates should hold GCFA, GCIH, or an equivalent recognised certification and be familiar with Windows, Linux, cloud environments, and frameworks including NIST, SANS, and MITRE ATT&CK.
Who It Suits
This role suits a methodical cybersecurity professional who is equally comfortable working a live incident and communicating findings clearly to non-technical stakeholders. Someone who takes ownership of investigations end-to-end, enjoys building structured processes, and is eager to contribute to proactive defence alongside reactive response work will thrive here.
Compare Digital Forensics salaries in Singapore →
Certifications mentioned: GCFA · GCIH · SANS — find training for these on the DFIR Training Finder.





