DFIR Specialist
OP Innovate
Rishon LeZion, Center District
The Role
This position involves leading end-to-end incident response engagements, from initial triage and containment through to full recovery. Day to day, the specialist conducts deep forensic analysis across disk, memory, and network artefacts on Windows, Linux, and macOS systems, while also contributing to the development of proactive security mechanisms.
Skills & Experience
Candidates require strong expertise in digital forensics and incident response, including post-incident analysis, persistence mechanism identification, and rootkit detection. Experience analysing advanced evasion techniques such as EDR unhooking, direct syscalls, BYOVD attacks, process hollowing, and living-off-the-land methods is essential to the role.
Who It Suits
This role suits an experienced DFIR professional who thrives in high-pressure, high-severity investigations and takes genuine interest in both reactive and proactive security work. Someone comfortable operating as a technical authority, with a keen eye for attacker tradecraft and a drive to improve organisational resilience, will excel here.





