Jobiglo

No results.

Senior Incident Response & DFIR Consultant

Matrix · Kfar Saba

Senior 🇬🇧 English
Incident Response Digital Forensics Windows Active Directory Log Analysis MITRE ATT&CK Microsoft Defender XDR Microsoft Sentinel CrowdStrike Cortex XDR Splunk IBM QRadar Velociraptor KAPE Axiom Microsoft 365 Azure AWS Google Cloud Platform Threat Hunting Penetration Testing Risk Assessment Security Audits

Job description

About the role

2Bsecure is seeking a Senior Incident Response & DFIR Consultant to join its Cyber Consulting team. You will lead investigations of sophisticated cyber attacks, work directly with executive and technical stakeholders, and help clients strengthen their security posture.

Key responsibilities

  • Lead end‑to‑end incident response engagements across enterprise environments.
  • Conduct digital forensics investigations, preserve evidence, and produce technical and executive reports.
  • Analyze endpoints, servers, Active Directory, Microsoft 365, and cloud platforms to uncover attacker activity.
  • Perform log analysis, identify IOCs, and map TTPs using the MITRE ATT&CK framework.
  • Execute proactive threat‑hunting missions to detect hidden threats.
  • Collaborate with customer executives, IT and security teams, and external vendors throughout engagements.
  • Support penetration testing, risk assessments, and security audits as needed.

Required profile

  • 3+ years of hands‑on incident response and digital forensics experience.
  • Proven track record leading investigations for enterprise customers.
  • Strong knowledge of Windows environments, Active Directory, and log analysis.
  • Deep understanding of the MITRE ATT&CK framework.
  • Excellent analytical, problem‑solving, and communication skills.
  • Ability to manage multiple engagements independently.

Required skills

  • Incident Response & Digital Forensics (DFIR)
  • Windows, Active Directory, Log Analysis
  • MITRE ATT&CK framework
  • Microsoft Defender XDR, Microsoft Sentinel
  • CrowdStrike, Cortex XDR
  • Splunk, IBM QRadar
  • Velociraptor, KAPE, Axiom
  • Microsoft 365 investigations
  • Azure, AWS, Google Cloud Platform
  • Threat Hunting
  • Penetration Testing
  • Risk Assessment & Security Audits

Questions fréquentes

Le salaire n'est pas communiqué publiquement par le recruteur. Vous pouvez postuler et négocier directement avec Matrix.
Cliquez sur "Postuler maintenant" en haut de la page. Vous pouvez importer votre CV en 1 clic — Jobiglo extrait automatiquement vos informations et postule pour vous.

Why are you reporting this job?

Thank you for your report. We will review this job.

Apply in 30 seconds

Enter your email to apply. An account will be created automatically.

Apply now →

By continuing, you accept our terms of use.

Already have an account? Login

A question about this job?

Ask it here: you will get the full job summary by e-mail, right away.

💬 Chat with us on Telegram

Published 1 month ago

Expires 1 week from now

77 views · 0 interested

Boost your chances

Upload your CV — we will match you with relevant openings.

Analyzing your CV...

Matrix

Kfar Saba