Senior Consultant, DFIR (Wed-Sun)
MOXFIVE
United States
The Role
This position involves leading digital forensics and incident response engagements across modern enterprise environments, investigating threat actor activity on endpoints, cloud platforms including AWS, Azure, and GCP, SaaS applications, and identity providers, while supporting clients through active incidents with technical expertise and clear communication.
Skills & Experience
Candidates require deep proficiency in Windows forensic investigations, familiarity with cloud-native forensics, and experience analysing identity-based threats such as account takeovers. Hands-on knowledge of forensic artefacts, custom scripting, and threat intelligence is essential. Experience across AWS, Azure, GCP, and SaaS environments is strongly valued.
Who It Suits
This role suits a seasoned DFIR practitioner who is comfortable leading client-facing engagements under pressure, has handled a high volume of investigations, and is eager to apply their skills to cloud and modern enterprise threats. The Wednesday-to-Sunday schedule suits those who prefer a non-traditional working week.
Typical advertised salary for Incident Response roles in United States: $125,000–$179,000 (median $149,000 — from 108 recent listings analysed by Forensic Focus).
Learn More/Apply





