Cyber Incident Responder/ Forensic Analyst
eTRANSERVICES
Maryland
The Role
This position centres on investigating cyber incidents through the analysis of logs, endpoint artifacts, and network data. Day to day, the analyst collects and preserves digital evidence, documents findings and timelines, and supports containment and remediation efforts, coordinating closely with response leadership and engineering teams during active events.
Skills & Experience
Candidates need at least three years in incident response, cyber defence, or digital forensics, alongside a relevant degree. Hands-on experience with SIEM, EDR, case management, and forensic tooling is essential. Preferred certifications include GCFA, GCIH, GCFE, CySA+, or Security+. Federal suitability clearance eligibility is required.
Who It Suits
This role suits a technically grounded analyst who is comfortable working across both investigative and operational functions under pressure. Someone who enjoys translating complex evidence into clear, actionable documentation and is willing to support surge operations when incident volumes demand additional capacity will thrive here.
Typical advertised salary for Incident Response roles in United States: $125,000–$179,000 (median $149,000 — from 108 recent listings analysed by Forensic Focus).
Compare Incident Response salaries in United States →
Certifications mentioned: GCFA · GCFE · GCIH · Security+ · CySA+ — find training for these on the DFIR Training Finder.





