Digital Forensics & eDiscovery

This mid-level role within a global financial group involves performing digital forensic examinations and eDiscovery in support of Information Security, Legal, Compliance and HR investigations. Day to day, the analyst conducts artifact analysis across Windows, Mac and Linux systems, performs

Principal Analyst

This senior DFIR position requires a minimum of eight years’ hands-on experience across digital forensics and incident response, covering Windows, macOS, Linux/Unix, cloud environments (M365, AWS, Azure) and mobile platforms (iOS/Android). Day-to-day responsibilities include leading high-impact cyber incident investigations, conducting

Senior Consultant Digital Forensics & Incident Response – Forensics

The Role This position involves investigating cyber incidents at the endpoint, network, and log level, conducting digital forensic examinations, analysing system artefacts, and contributing to live-response engagements. The role also includes producing technical documentation and supporting incident response workshops and

Senior Consultant Cyber – Digital Forensic Incident Response

The Role This position involves supporting clients through active cyber incident response engagements, conducting digital forensic investigations into cybercrime and financial fraud, securing court-admissible evidence, and advising on cyber prevention. The role also supports client compliance with regulatory frameworks such

Cyber Response & Recovery Manager (Reactive DFIR) – German Speaking

The Role This hands-on position sits within a cyber advisory practice, focusing on reactive digital forensics and incident response. Day to day, the role involves managing medium to large incident response cases, supporting clients in building internal IR capabilities, contributing

Manager Digital Forensics & Incident Response (DFIR) – Cyber Security

The Role This position leads digital forensic investigations and incident response engagements across endpoint, network, and cloud environments, including M365, Azure, and AWS. Day to day involves analysing cyberattacks, reconstructing attack chains, conducting live-response actions, and delivering clear reporting to

Principal DFIR Analyst

The Role This senior position leads complex digital forensic investigations and incident response operations within a national security operations centre, protecting large-scale healthcare infrastructure. Day to day, the analyst conducts threat hunting, manages major security incidents, drives cloud security operations,

Digital Forensics Analyst

The Role This hybrid position involves conducting network and media forensic investigations, supporting cybersecurity incident response, and performing advanced threat hunting across enterprise infrastructure. Day-to-day work includes malware analysis, IOC sweeps, evidence preservation, insider threat investigations, and preparing detailed technical

Digital Forensics Analyst

The Role This position involves conducting authorised forensic acquisition and analysis across endpoints, servers, cloud platforms, email, and logs. Day to day work includes supporting investigations into insider threats, data exfiltration, and cybersecurity incidents, as well as maintaining chain-of-custody records,

Digital Forensic Analyst I

The Role This position centres on the forensic preservation and collection of data from mobile devices and cloud environments, with both on-site travel and in-office lab work. Day-to-day responsibilities include liaising with legal and IT teams, maintaining chain of custody,

Digital Forensics Analyst

The Role The analyst performs forensic acquisition, preservation, and analysis of data from endpoints, servers, cloud platforms, and corporate systems. Day-to-day work spans investigating insider threats, data exfiltration, and cybersecurity incidents, while maintaining chain-of-custody records, case documentation, and delivering clear

Host Based Cyber Systems Analyst III

Experienced analyst needed to lead host-based forensic investigations for DHS HIRT, conducting evidence acquisition, malware triage, memory analysis, and intrusion reporting across federal civilian networks and critical government systems.

Criminalist I, Digital Forensics (8259) – San Francisco Police Department

The Role This position involves conducting digital forensic examinations on electronic devices and digital media in support of criminal investigations. Working within a law enforcement laboratory setting, the specialist processes, analyzes, and documents digital evidence, producing detailed reports and providing

Principal Incident Response Analyst

The Role This senior position sits within a Threat Detection and Response team, covering hands-on security incident analysis, digital forensic investigations, and proactive threat hunting. The analyst leads containment and remediation efforts, coordinates with cross-functional teams during active incidents, and

Cyber Crime Incident Responder

The Role This position involves investigating and containing sophisticated cyberattacks, including APT campaigns, ransomware, and complex intrusions across national and international engagements. Practitioners conduct forensic analyses to secure digital evidence, analyse attacker infrastructures, and collaborate directly with agencies such as

Senior Security Analyst Digitale Forensik im Security Operations Center (SOC)

The Role The analyst conducts independent digital forensic investigations within a Security Operations Centre environment, securing evidence for disciplinary and criminal proceedings while maintaining full legal compliance. Responsibilities include liaising with law enforcement agencies, coordinating complex incidents, contributing to IT

Fachinformatiker als IT Consultant

Join a specialist DFIR team in Hamburg, handling IT security incidents, conducting forensic analysis and documentation, advising on IT infrastructure, and performing vulnerability assessments and emergency exercises for clients on-site.

Digital Forensics Lead (CBP)

The Role This position leads digital forensics operations supporting a large federal border protection environment, spanning hundreds of ports of entry and associated facilities. Day to day, the work involves preserving and analyzing evidence from compromised or suspect systems, reconstructing

Senior Security Engineer, Digital Forensics

Join a global 24/7 detection and response team to investigate security and privacy incidents, conduct digital forensic analysis, develop forensic tooling, and contribute to large-scale incident response across a major technology organisation.

Consultant IT-Forensik und Incident Response

The Role This position involves supporting clients through active IT security incidents, conducting on-site response, and performing forensic analysis to identify, reconstruct, and counter attacks. Additional responsibilities include vulnerability assessments, emergency exercises, infrastructure advisory work, and producing clear forensic documentation.

Digital Forensics Analyst

The Role The analyst conducts forensic acquisition, preservation, and analysis of data from endpoints, servers, cloud platforms, and corporate systems. Day-to-day work spans insider risk investigations, incident response, eDiscovery support, and producing detailed case documentation including chain-of-custody records, technical reports,

Enquêteur

Digital forensics investigator role within a financial regulatory authority, responsible for collecting, preserving and analysing digital evidence, conducting computer searches, supporting OSINT and eDiscovery activities, and testifying in legal proceedings.

Cyber Security Specialist

This role sits within a dedicated Cyber Security and Reaction Service team, where the successful candidate manages the full lifecycle of incident response for national and international clients. Day to day, this involves reconstructing complex attacks, implementing containment measures, conducting

Lead Digital Investigations Engineer

Lead digital investigations role supporting law enforcement sponsors, conducting forensic analysis of endpoints, mobile devices, cloud environments and networks, handling evidence, producing investigative reports, and assisting with incident response and containment efforts.

Digital Forensics Analyst

The Role This hybrid position involves conducting network and media forensic investigations, supporting cybersecurity incident response, and performing advanced threat hunting across enterprise infrastructure. Day-to-day work includes malware analysis, IOC sweeps, evidence preservation, SOP development, and preparing detailed technical reports

Senior Forensic Developer – HYBRID!

Design and build specialised forensic software supporting federal cybercrime and digital evidence investigations. Responsibilities include file-system parsing, memory analysis, binary reverse engineering, mobile device parsing, and producing court-ready, validated investigative tooling.

Digital Forensic Analyst I with Security Clearance

The Role This position centres on the forensic preservation and collection of data from mobile devices and cloud environments, with both on-site travel and in-office lab work involved. Day-to-day responsibilities include liaising with legal and IT teams, maintaining chain of

Senior Security Consultant, Incident Response, Mandiant

The Role This position involves leading end-to-end incident response engagements, supporting clients through investigation, containment, remediation, and crisis management. Day to day, consultants analyse threats across network, cloud, disk, and memory environments, communicate findings to diverse audiences, and help organisations

Host Based Systems Analyst III

The Role This position supports federal cybersecurity incident response and proactive threat hunting, conducting host-based forensic analysis during both remote and onsite engagements. Day-to-day work includes coordinating data collection, leading forensic teams, analysing digital artefacts, drafting technical reports and executive

Cyber Incident Responder

The Role This position involves responding to and investigating a range of cyber incidents on behalf of clients across multiple sectors, including legal, insurance and law enforcement. The successful candidate manages investigations end to end, applying technical expertise in incident

Senior Digital Forensics and Incident Response Consultant

The Role This position sits within a dedicated incident response team, supporting clients through the full lifecycle of security incidents — from preparation and initial containment through to root cause analysis. Day-to-day work involves analysing attacks on corporate networks and

Senior Consultant Cyber – Digital Forensic Incident Response

Join a global consulting team delivering digital forensic and incident response services, including cyberforensic analysis, court-admissible evidence handling, cybercrime investigation, and regulatory compliance advisory for clients across multiple sectors.

Principal Incident Response Consultant, Google Public Sector

Lead incident response and forensic consulting engagements for US public sector clients, managing breach containment, threat hunting, and remediation while mentoring staff and developing new business opportunities leveraging Google and Mandiant capabilities.

Senior Cybersecurity Incident Responder

Senior DFIR role within a managed SOC environment, leading major incident response engagements, conducting digital forensic investigations, delivering proactive advisory services including tabletop exercises, compromise assessments and threat hunting for commercial and government clients.

Forensic Specialist

The Role This position sits at the intersection of digital forensics and AI research, requiring the specialist to translate real investigative workflows into product requirements, validate detection capabilities against examiner standards, define evidence-handling protocols including chain of custody and audit

Cyber Security Specialist

The Role This position involves managing IT security and compliance incidents for clients across national and international boundaries, handling the full lifecycle of DFIR cases from complex attack analysis through to containment. Day-to-day responsibilities include developing detection and response concepts,

Senior Cybersecurity Incident Responder

Join a CSIRT team delivering digital forensics and incident response engagements, including evidence collection, log analysis, threat hunting, compromise assessments, tabletop exercises, and stakeholder reporting across Australia and New Zealand.

Incident Response Analyst, Digital Forensics & Incident Response

The Role This position involves hands-on technical work across all stages of active incident response engagements, including triage, evidence acquisition, forensic analysis, containment, eradication, and post-incident reporting. The analyst operates under senior direction, collaborating with incident commanders and SOC teams

Cybersecurity Incident Response Commander

The Role This position serves as the primary technical and operational authority for a Digital Forensics and Incident Response function, commanding engagements across ransomware, business email compromise, data exfiltration, and complex multi-vector incidents. The role owns IR processes and playbooks,

Senior Digital Forensics and Incident Response (DFIR) Consultant

The Role This position involves leading complex incident response engagements and conducting forensic investigations across Windows, Unix, and Linux environments. Day-to-day work includes collecting forensic artifacts, analysing logs and memory images, identifying indicators of compromise, building event timelines, and supporting

Cyber Response & Recovery Manager – German Speaker

The Role This is a hands-on reactive digital forensics and incident response (DFIR) position, where the successful candidate manages medium to large cases as a case manager. Between incidents, the role involves supporting client IR capability building, runbook development, tabletop

Digital Forensics and Incident Response (DFIR) Consultant

The Role This position involves hands-on incident response work, including collecting forensic artifacts, analysing disk and memory images, reviewing host and appliance logs, and building event timelines. The consultant engages with insurance partners, legal counsel, and client technical teams to

Cyber Network Defense Analyst (CNDA) – Cloud Forensics

The Role This position involves leading end-to-end forensic investigations across hybrid and multi-cloud environments, including Azure, AWS, and GCP. Analysts correlate telemetry, reconstruct attacker timelines, develop detection logic and hunting scripts, and produce technical and executive-level reports to support federal

Cyber Network Defense Analyst III

The Role This position supports a federal cyber defence programme, conducting Tier 2 and Tier 3 digital forensics and incident response investigations both remotely and on-site. Day-to-day work involves responding to cyber incidents, performing proactive threat hunting, and analysing host-based,

Cyber Network Defense Analyst II

The Role This position supports front-line cyber defence and incident response operations within a federal programme protecting national communications infrastructure. Day to day, analysts conduct Tier 2 and Tier 3 digital forensics and incident response investigations, perform proactive threat hunting,

Incident Response and Forensics Lead

The Role This senior position leads a digital forensics and incident response team within a federal environment, overseeing day-to-day operations, managing service delivery, briefing clients and senior leadership, analyzing intrusion artifacts such as malware, and monitoring emerging threats from external

Digital Forensics Lead

The Role This position leads digital forensics and insider-threat investigations within a 24/7 cybersecurity operations centre, overseeing evidence handling, chain-of-custody procedures, endpoint and network forensic analysis, and malware triage, while maintaining SIEM dashboards, incident response documentation, and mentoring junior team

Digital Forensics Consultant (PST hours Seattle Area preferred)

The Role This position involves conducting forensically sound collections of electronically stored information from computers, mobile devices, servers, cloud repositories, and other digital sources, both onsite and remotely. Practitioners perform forensic analysis supporting investigations and litigation, author detailed reports, and

Senior Forensic Analyst

The Role The analyst conducts forensic evaluations of federal enterprise systems suspected of compromise, working with a high degree of independence on non-repetitive, fixed-duration engagements. Each investigation is unique, requiring rigorous host and network forensic analysis performed under strict legal

AOUSC – Forensic and Malware Lead

The Role This position leads digital forensics and malware analysis operations within a large federal security operations environment. Day to day, the work spans static and dynamic malware analysis, forensic examination of disk and memory artifacts, live system investigation, and

Senior Consultant Digital Forensics & Incident Response – Forensics

The Role This position involves analysing cyber incidents at endpoint, network, and log level, conducting digital forensic investigations, examining system artefacts, supporting live response deployments, assessing suspicious files and scripts, and producing technical documentation alongside incident response workshops and cyber

Digital Forensic Analyst I

The Role This position centres on the forensic preservation and collection of data from mobile devices and cloud environments, with a mix of on-site travel and in-office lab work. Day-to-day responsibilities include liaising with legal and IT teams, managing chain

Senior Cyber Incident Response Investigator

The Role This role centres on managing and resolving serious cyber incidents for organisations globally. Day to day, investigators analyse security intrusions end-to-end, perform host and network forensics, conduct malware analysis, hunt advanced threats, and develop remediation plans, with client-facing

Senior Computer Forensics Analyst

The Role This senior-level position centres on acquiring, preserving, and forensically examining data from Windows and Mac systems, servers, mobile devices, and digital storage media. The analyst manages lab operations and multiple concurrent projects, produces expert-quality reports, and may provide

Digital Forensics Lead (26-091) with Security Clearance

The Role This hybrid position involves leading and conducting digital forensics investigations into cybersecurity incidents affecting agency systems and devices, developing and maturing a forensics programme, and delivering clear analytical reports to senior leadership, including the CISO, based on investigation

Lead Service Manager – Incident Response Analyst

The Role This senior position sits within a managed security services SOC and CSIRT function, leading incident response engagements across a multi-tenant client base. Day to day, the analyst delivers containment, investigation, and remediation for retainer clients, working independently under

Digital Forensics Consultant (PST hours Seattle Area preferred)

The Role This position centres on conducting forensically sound collections of electronically stored information from computers, mobile devices, servers, cloud repositories, and other digital media, both onsite and remotely. Consultants analyse collected data to support investigations and litigation, produce detailed

Digital Forensics and Incident Response Analyst

The Role This position sits within a specialist cyber risk and investigations team, where the analyst serves as a first responder to client-reported cyber incidents. Day-to-day work covers threat investigation, containment, and eradication, alongside supporting internal security operations and contributing

Senior Investigator – DFIR

The Role This senior position focuses on delivering end-to-end incident response engagements, encompassing evidence acquisition, processing, and analysis, through to presenting findings to clients. The role also involves contributing to broader practice operations, including business development, client liaison, and managing

Senior Cybersecurity Incident Responder

The Role This senior position sits within a dedicated incident response team, leading digital forensics and incident response engagements across Australia and New Zealand. Day-to-day work spans reactive incident investigations alongside proactive advisory services such as tabletop exercises, compromise assessments,

Incident Response Lead, DFIR

The Role This founding position leads complex cloud and enterprise incident response investigations, setting best practices and standards for an AI-native DFIR function. The role involves close collaboration with AI engineers who automate routine forensic tasks, allowing the lead to

Cyber Response & Recovery Assistant Manager (Reactive DFIR)

The Role This hands-on position sits within a specialist cyber response team, focusing on reactive digital forensics and incident response. Day to day, the role involves acting as a junior case manager on smaller engagements or supporting senior colleagues on

Senior Cyber Incident Response Investigator

The Role This position involves leading end-to-end cyber incident investigations for organisations globally, performing host, network, and log forensics, conducting malware analysis, and proactively hunting for advanced threats. The work includes developing remediation plans, running tabletop exercises, and collaborating directly

Senior Investigator Digital Forensics, Incident Response (DFIR)

The Role This senior position involves leading complex digital forensics and incident response investigations across cloud, OT, and enterprise environments. Day-to-day work includes memory forensics, malware triage, threat hunting, log analysis, and building attack timelines, while mentoring junior investigators and

Global Director of Autonomous Incident Response and Forensic Analysis

The Role This senior leadership position oversees a 24/7 global incident response and digital forensics function, driving strategy, execution, and continuous improvement. Day to day, the role involves coordinating rapid containment and recovery efforts, managing forensic investigations, producing executive-level reporting,

Digital Forensics SME

The Role This senior position involves leading digital forensics efforts in support of federal law enforcement investigations, cybercrime cases, and national security missions. Day to day, the work spans conducting advanced forensic analysis, designing investigative workflows, preparing technical reports, and

Tier II-III Incident Response Analyst-Senior

The Role This senior position leads advanced cybersecurity incident investigations, coordinating responses to high-impact security events. Day-to-day responsibilities include conducting in-depth forensic analysis, reviewing suspicious code, performing malware analysis, hunting for threats, and gathering cyber threat intelligence across client environments.

Lead Incident Responder – DFIR Specialist

The Role This position involves leading incident response engagements for enterprise clients experiencing active cyber breaches, managing a team of investigators, collecting and analysing digital evidence, scoping technical work, preparing reports and deliverables, and providing on-site support across Australia and

Senior Consultant Digital Forensics & Incident Response – Forensics

The Role This position involves investigating cyber incidents across endpoint, network, and log environments, conducting digital forensic examinations, analysing system artefacts, supporting live-response operations, and producing technical documentation. The consultant also contributes to incident response workshops and cyber resilience assessments

Digital Forensics Consultant (PST hours)

The Role This position involves conducting forensic collections of electronically stored information from computers, mobile devices, servers, cloud repositories, and other digital sources, both onsite and remotely. Consultants analyse data to support investigations and litigation, produce detailed reports and declarations,

Digital Forensic Analyst I with Security Clearance

The Role This full-time position centres on the forensic preservation and collection of mobile device and cloud-stored data, both on-site and remotely. The analyst liaises with legal teams and client IT departments, maintains chain of custody, performs quality checks on

Cyber Incident Response

The Role Three positions are available within a UK Tier 1 cyber response practice: one focused on digital forensics and incident response across disk, memory, network and log sources; one advising clients on security operations, threat intelligence and AI-enabled defence;

Manager Digital Forensics & Incident Response (DFIR) – Cyber Security

The Role This position leads digital forensic investigations across endpoint, network, and cloud environments, analysing cyberattacks and reconstructing attack chains. The role manages the full incident response lifecycle, from initial triage through to executive-level reporting, while also advancing DFIR methodologies,

Experte Computer Incident Response Team (CSIRT)

The Role This position sits within a central IT security function and focuses on identifying, analysing, containing and resolving security incidents. Working closely with technical leadership, the specialist supports the organisation’s day-to-day incident response capability, driving both operational and methodological

Digital Forensics Specialist

The Role This position sits within a Cyber Incident Response Team, supporting active cyber incidents through hands-on forensic analysis across Windows, Linux and macOS endpoints, cloud platforms and identity services. Day-to-day work includes determining root cause, analysing attacker behaviour, producing

Senior Forensic Analyst

The Role The analyst conducts independent forensic evaluations of federal enterprise systems suspected of compromise, performing both host and network analysis under strict legal chain of custody requirements. Each engagement is unique and fixed-duration, with findings that inform immediate incident

Senior Security Engineer, Digital Forensics

The Role This position involves conducting digital forensic investigations, performing security assessments, and monitoring systems for threats and intrusions. Engineers work hands-on with network infrastructure, collaborate with software engineering teams on proactive security measures, and help maintain hardened, resilient environments

Digital Forensics / Malware Analyst

The Role This position involves conducting digital forensic investigations and malware analysis in support of a Federal information security programme. Day-to-day work includes acquiring and examining evidence from endpoints, servers, cloud environments, and removable media, reverse engineering malicious software, maintaining

Cyber Response and Recovery – Assistant Manager (Reactive)

The Role This hands-on position sits within a reactive digital forensics and incident response (DFIR) team, handling live cyber incidents as a junior case manager on smaller engagements or as a team contributor on larger ones. Outside of active incidents,

Senior Cybersecurity Incident Responder

The Role This position sits within a mature cybersecurity defence operations centre, delivering digital forensics and incident response engagements across Australia and New Zealand. Day-to-day work spans reactive incident investigations, tabletop exercises, compromise assessments, threat hunting, breach readiness assessments, and

Digital Forensic Analyst I with Security Clearance

The Role This position centres on the forensic preservation and collection of mobile device and cloud-stored data, conducted both on-site and remotely. Day-to-day work includes liaising with legal teams and client IT departments, maintaining chain of custody, contributing to documented

Senior Forensic Developer

The Role This position centres on designing and building specialised forensic software for federal cybercrime and digital evidence investigations. Day to day, you architect low-level capabilities covering file system parsing, memory analysis, binary dissection, and investigative workflow automation, collaborating with

Forensics Consultant

The Role This position involves guiding clients through all stages of digital forensic investigations, from data collection and processing through to analysis. The consultant manages forensic projects end-to-end across PCs, servers, mobile devices and cloud environments, while advising both clients

Digital Forensics Analyst

The Role This position supports federal law enforcement by conducting digital forensic examinations in a lab environment. Day-to-day work includes seizing and imaging devices, executing on-scene support during search warrants, analysing evidence, producing detailed reports, and providing expert witness testimony

Cyber Response & Recovery – Senior Manager

The Role This senior position sits within a cyber response and risk consulting practice, leading teams through active security incidents while conducting digital forensics across disk, memory, network, and log sources. Beyond incident work, the role involves helping clients mature

Senior Consultant Digital Forensics & Incident Response – Forensics

The Role This position involves investigating cyber incidents across endpoint, network, and log environments, conducting digital forensic examinations, analysing system artefacts, and building timeline reconstructions. The consultant also supports live-response engagements, assists with containment measures, examines suspicious files, and contributes

Senior Digital Forensic Specialist

The Role This position leads forensic investigations and incident response engagements across complex, large-scale environments. Day to day, the work spans compromise assessments, threat hunting, evidence analysis, and guiding clients from initial detection through to containment, remediation, and recovery, alongside

Digital Forensics and Incident Response, Senior Manager

The Role This senior leadership position oversees multiple incident response teams, directing complex digital forensic investigations and cybersecurity incident response engagements. The role involves advising during high-severity incidents, communicating findings to executives and legal stakeholders, managing team performance, and supporting

Digital Forensics SME

The Role This senior position involves delivering advanced digital forensics support to federal law-enforcement and cybercrime investigations. Day to day, the practitioner conducts complex forensic analysis, designs investigative workflows, prepares technical reports, and collaborates with multidisciplinary teams including cryptocurrency analysts

Digital Forensics Analyst

The Role This position involves conducting digital forensic examinations in a law enforcement laboratory environment, supporting federal investigations. Day-to-day work includes acquiring and imaging digital devices, attending search warrant executions, analysing evidence using specialist tools, producing detailed reports, and occasionally

Senior Cybersecurity Incident Responder

The Role This position sits within a dedicated incident response team, delivering digital forensics and incident response engagements for commercial and government clients across Australia and New Zealand. Day-to-day work spans reactive breach investigations, compromise assessments, threat hunting, tabletop exercises,

Digital Forensics & Cyber Incident Responder – Hybrid – London

The Role This position sits within a specialist team that handles real-world cyber security incidents, including ransomware attacks and significant breaches. Day to day, practitioners investigate live incidents, examine forensic evidence, map attacker behaviour, and guide affected organisations through their

Senior Digital Forensic Investigator

The Role This senior-level position leads complex digital forensics and incident response engagements, handling high-stakes cases ranging from financially motivated breaches to state-affiliated espionage. The investigator coordinates with security operations and customer success teams to mobilise rapidly, identify threat sources,

Forensisch IT specialist FIOD

The Role This position sits within a criminal investigation team focused on financial and fiscal fraud. Day to day, the role involves identifying, acquiring and examining digital evidence from complex technical environments, contributing to a data-driven investigative process, and documenting

Digital Forensics Consultant

The Role This position supports litigation matters by preserving, collecting, and analysing digital evidence from computers, mobile devices, servers, and cloud accounts. Day-to-day work includes forensic imaging, chain of custody documentation, artifact analysis, deleted data recovery, and contributing to expert

Computer Forensic Examiner

The Role This position involves conducting end-to-end digital forensic examinations, from collection and imaging through analysis and reporting, across computers, mobile devices, and digital media. The examiner manages complex caseloads independently, maintains rigorous chain of custody, and presents defensible findings

AOUSC – Digital Forensics Analyst

The Role This hybrid position, based in Washington, DC, supports a federal judiciary programme. Analysts conduct digital forensic examinations, performing disk, memory and registry analysis, applying industry-standard tools to investigate and preserve digital evidence in accordance with federal guidelines and

Senior Consultant Digital Forensics & Incident Response – Forensics

The Role This position involves investigating cyber incidents through endpoint, network, and log analysis, conducting digital forensic examinations, analysing system artefacts, and supporting live response engagements. The role also includes malware and script analysis, technical documentation, and contributing to incident

(Senior) Manager – Digital Forensics / Cyber Forensics

The Role This position centres on leading forensic investigations into cyberattacks and economic crime, managing incident response engagements, and conducting in-depth digital and cyber forensic analyses. The role also involves developing innovative service offerings and contributing to business development and

(Senior) Consultant Digital Forensics

The Role This Amsterdam-based position involves working alongside managers and directors as a key driver of Discovery engagements. Day to day, the consultant plays an active role within the Discovery team, contributing to digital forensics investigations and developing deep specialist

Associate – Assurance, Forensic – Cyber Investigations (2027 Graduates)

The Role This position involves supporting digital forensic investigations and eDiscovery engagements across the full EDRM lifecycle, from data collection and processing through to analysis and reporting. Day-to-day work spans incident response, litigation support, and regulatory matters, carried out both

Information Security Incident Response Analyst

The Role The analyst investigates security incidents end to end, conducting host, memory, network, and cloud forensic analysis to reconstruct attacker activity and identify root cause. Day-to-day work includes client communication, containment support, report writing, and participation in an on-call

Digital Forensics eDiscovery Analyst

The Role This contract position sits within a cyber defence team, where the analyst handles eDiscovery and digital forensics across workplace, legal, and regulatory investigations. Day-to-day work spans evidence collection, forensic acquisition of computers and mobile devices, chain-of-custody management, quality

Incident Response Security Consultant, Mandiant

The Role This position involves leading end-to-end incident response engagements, guiding organisations through investigation, containment, remediation, and crisis management. Consultants assess and respond to active threats, advise on cyber risk reduction, and support clients before, during, and after security incidents,

(Senior) Manager – Digital Forensics / Cyber Forensics (m/w/d) in Stuttgart

The Role This position centres on leading digital and cyber forensic investigations into cybercrime and economic crime incidents. Day to day, the role involves managing incident response engagements, conducting forensic analyses using specialist tools, developing innovative service offerings, and contributing

Senior Consultant Digital Forensics & Incident Response – Forensics (w/m/d)

The Role This position involves investigating cybersecurity incidents through endpoint, network, and log-level analysis, conducting digital forensic examinations, analysing system artefacts, supporting live-response engagements, examining suspicious files and scripts, and producing technical documentation alongside incident response workshops and cyber resilience

Senior Cybersecurity Incident Responder

The Role This position sits within a managed security operations centre, focusing on digital forensics and incident response engagements for commercial and government clients. Day to day work spans reactive incident investigations, tabletop exercises, compromise assessments, breach readiness evaluations, threat

E-Discovery & Digital Forensics Lead (Legal Operations)

The Role This position supports legal, HR, and corporate investigations teams by conducting end-to-end forensic examinations, including data acquisition, analysis, and presentation of findings through written reports, visual aids, affidavits, and sworn testimony, while coordinating with outside counsel and technology

Cyber Digital Forensics & Incident Response Manager

The Role This hybrid management position leads a team of digital forensics and incident response analysts operating within a 24×7 on-call model. Day to day, the role involves overseeing service delivery during significant cyber events such as ransomware and malware

Cyber Incident Response & Digital Forensics Assistant Manager

The Role This hands-on position sits within a dedicated cyber response team, delivering incident response and digital forensics services to clients facing active security incidents. The work spans investigation, containment and recovery activities, with regular on-call responsibilities as part of

Digital Forensics and Incident Response Analyst

The Role This senior-level position leads investigations into high-priority cybersecurity incidents, conducting in-depth forensic analysis and coordinating response efforts across teams. The analyst serves as an escalation point for junior colleagues, liaises with law enforcement and third-party vendors, develops detection

Senior DFIR Specialist

The Role This hands-on consulting position involves leading and delivering digital forensics and incident response engagements across enterprise and highly regulated environments. Day to day, practitioners preserve and analyse evidence, investigate active incidents, and guide clients through containment, eradication, and

Cyber Incident Response Manager

The Role This hands-on position centres on managing reactive digital forensics and incident response (DFIR) cases of medium to large scale. When not leading live incidents, the role involves helping clients strengthen their own response capabilities through runbooks, tabletop exercises,

Incident Response Lead

The Role This senior position within a global security operations centre involves leading technical responses to complex cybersecurity incidents around the clock. Day to day responsibilities include coordinating containment and recovery activities, conducting advanced investigations across endpoints, networks, and cloud

Senior Cybersecurity Incident Responder

The Role This position sits within a cybersecurity incident response team, leading digital forensics and incident response engagements across Australia and New Zealand. Day-to-day work spans reactive incident investigations alongside proactive advisory activities such as tabletop exercises, compromise assessments, threat

Chef de file de la réponse aux incidents

The Role This senior position sits within a global security operations centre, providing round-the-clock coverage across the organisation. Day to day, it involves leading technical responses to complex cybersecurity incidents, coordinating investigations, and driving containment, eradication, and recovery activities in

Cyber Response & Recovery – Senior Manager

The Role This senior position sits within a specialist cyber response team, leading incident response cases and conducting digital forensics across disk, memory, network, and log data. Between incidents, the role involves helping clients strengthen their own response capabilities through

Cyber Incident Response Manager

The Role This position involves leading technical analysis during cyber security incidents and data breaches, managing client engagements from initial response through to recovery. Day-to-day work includes producing investigation reports, developing detection content for SecOps environments, and coordinating across threat

Senior Investigator Digital Forensics, Incident Response (DFIR)

The Role This senior-level position involves leading complex digital forensic investigations and incident response engagements across cloud, OT, and enterprise environments. Day-to-day responsibilities include memory forensics, malware triage, threat hunting, log analysis, timeline development, and mentoring junior investigators across concurrent

Cyber Digital Forensics & Incident Response Manager

The Role This hybrid position leads a team of digital forensics and incident response analysts operating within a 24×7 on-call model, overseeing service delivery during significant cyber events such as ransomware attacks and security breaches. Day-to-day responsibilities include managing client

Tier 3 Digital Forensics and Incident Response Analyst

The Role This senior-level position leads investigations into high-priority cybersecurity incidents, coordinating cross-functional teams and serving as the primary escalation point for junior analysts. Day-to-day responsibilities include alert triage, root cause analysis, detection rule tuning, threat research, post-incident review, and

Senior Consultant Digital Forensics & Incident Response – Forensics (w/m/d)

The Role This position involves investigating cyber incidents across endpoint, network, and log levels, analysing system artefacts, and constructing timeline analyses. The consultant supports live-response engagements, secures relevant data, assists with containment measures, examines suspicious files, and contributes to incident

Manager Digital Forensics & Incident Response (DFIR) – Cyber Security (w/m/d)

The Role This position leads digital forensic investigations and incident response engagements across endpoint, network, and cloud environments. Day to day, the work spans analysing cyberattacks, reconstructing attack chains, conducting live-response actions, and delivering clear management reporting from initial triage

Senior Consultant, Digital Forensics

The Role This position involves leading forensic investigations from start to finish, including evidence collection, forensic imaging, artifact analysis, and timeline reconstruction. The consultant produces defensible reports for legal and regulatory proceedings, supports litigation matters, conducts risk assessments, and develops

Cyber Incident Responder

The Role The position involves supporting clients who are actively experiencing cyberattacks, working as part of a dedicated team to investigate and contain incidents. Day to day, this means conducting analyses using endpoint detection, network sensors, and manual techniques when

Senior Cyber Incident Responder

The Role This position involves supporting clients through active cyber attacks, leading and guiding a team during major cyber incidents. Day to day, the work spans hands-on cyber incident response and digital forensics, requiring direct client engagement and the ability

Digital Forensics Examiner

The Role Working across laboratory, remote, and on-site environments throughout the United States, the examiner collects and preserves digital evidence, conducts forensic acquisitions, performs artifact and timeline analysis, recovers deleted data, and produces clear, defensible reports for attorneys, investigators, and

International Digital Forensics and Incident Response (DFIR) Expert

The Role This position involves leading and supporting end-to-end cyber incident response engagements for international clients, spanning triage, forensic investigation, recovery, and lessons learned. Day-to-day work includes examining endpoints, cloud platforms and enterprise systems, producing technical reports, and collaborating with

Digital Forensics Lead (#26-091)

The Role This hybrid position supports a federal health research agency’s cybersecurity team, leading and conducting digital forensics investigations across agency systems and devices. Day-to-day responsibilities include maturing the organisation’s forensics programme and delivering clear, actionable investigation reports to senior

Lead Digital Investigations Engineer

The Role This position involves conducting digital investigations across a range of scenarios including cybersecurity incidents, insider threats, and policy violations. Day-to-day work includes collecting, preserving, analysing, and documenting digital evidence from endpoints, servers, mobile devices, cloud environments, network sources,

Cyber Incident Response Analist

The Role This position focuses on responding to active cyber incidents, conducting forensic analysis of digital artefacts, and detecting threats before they escalate. Day to day work involves investigating attacks carried out by sophisticated advanced persistent threat groups and supporting

Senior Consultant Cyber – Digital Forensic Incident Response (m/w/d)

The Role This position involves supporting clients in responding to and investigating cyberattacks, conducting digital forensic analyses, securing evidence in a legally admissible manner, and advising on cyber prevention. The role also includes ensuring client compliance with relevant security standards

Senior Digital Forensics and Incident Response Consultant (w/m/x)

The Role This senior position involves supporting clients through all phases of security incidents, from preparation and active response through to root cause analysis. Day to day, consultants apply recognised incident response standards and best practices, working closely with affected

(Senior) Cyber Security Expert (m/w/d) DFIR, Adversary Operations & Assessments

The Role This position sits within a cyber security and incident response team, supporting national and international clients through complex security incidents. Day-to-day work spans digital forensic investigations, attack reconstruction along the kill chain, penetration testing, adversary operations including red

Senior Digital Forensics and Incident Response Consultant (w/m/x)

The Role This position sits within a dedicated incident response team, supporting clients through the full lifecycle of security incidents — from preparation and initial detection through to containment, remediation, and root cause analysis — applying recognised industry standards and

(Senior) Manager – Digital Forensics / Cyber Forensics (m/w/d) in Berlin

The Role This position involves leading digital and cyber forensics investigations, responding to cyber incidents, and uncovering the details behind cybercrime and economic crime. The successful candidate manages project workstreams, applies computer forensic methods, develops innovative service offerings, and contributes

Senior Director | Digital Forensics & Investigations

The Role This London-based position leads complex digital forensics and investigations engagements, advising corporations, law firms and governments on regulatory matters, litigation support and data disputes. Day to day, the work involves directing evidence-driven technical projects, acting as a trusted

Cyber Response, Senior Associate / Assistant Manager

The Role This position sits within a cyber incident response team, focusing on investigating breaches such as ransomware and business email compromise. Day-to-day work spans digital forensics, log analysis, root-cause investigation, and supporting clients through containment and recovery, with outputs

Associate Principal Incident Responder

The Role This position leads and coordinates incident response engagements across the APAC region, investigating high-impact security incidents within operational technology environments. Day to day involves determining root cause, assessing operational impact, driving containment and recovery, and advising customers through

Forensic Technology Senior Consultant (eDiscovery)

The Role This position sits within a forensic technology practice, where the consultant leads and delivers complex eDiscovery engagements spanning litigation, regulatory investigations, and corporate inquiries. Day to day work involves managing project workflows across the full electronic discovery lifecycle,

Solutions Expert

The Role Based in a dedicated forensics lab in Singapore, this position involves conducting digital forensic examinations on mobile devices and computers, deploying investigative solutions on-site and remotely, maintaining real-time case records, preparing formal reports, and supporting customers through incidents