Senior Consultant, Digital Forensic and Incident Response (DFIR) (Remote)

Elkridge, Maryland, United States

Surefire Cyber

Surefire Cyber delivers a swifter, stronger response to cyber incidents such as ransomware, email compromise, malware, data theft, and other threats.

View all jobs at Surefire Cyber

Apply now Apply later

About Surefire Cyber

Surefire Cyber is redefining the incident response model by delivering a swifter, stronger response to cyber incidents such as ransomware, email compromise, malware, data theft, and other threats. Our client-centric approach reduces stress and provides clients the confidence needed to prepare, respond, and recover from cyber incidents – and fortify their cyber resilience after an event.

Surefire Cyber’s approach and delivery are designed by industry veterans who have worked shoulder-to­shoulder with law firms, insurance carriers, brokers, law enforcement, and impacted organizations in responding to cyber incidents. We are marshaling this experience to address the industry’s persistent challenges of efficiency, predictability, and transparency

Job Title: Senior Consultant, Digital Forensics and Incident Response (DFIR)  

Location:  Remote, USA 

Compensation: $90K-$120K, 20% annual bonus 

About You 

You are an experienced cybersecurity professional with advanced knowledge in the specialty of Digital Forensics and Incident Response (DFIR).  You have former client-facing, forensic analysis, and investigation experience. Your passion lies in identifying, analyzing, and mitigating security incidents, demonstrating a solid grasp of the ever-evolving threat landscape. 

You have a proven track record of conducting forensic analysis and have worked independently on small to medium investigations. You approach investigations with analytical proficiency, and an experienced perspective, while consistently yielding high quality results. 

Job Description 

Surefire Cyber is actively seeking a Senior Consultant for our dynamic Digital Forensics and Incident Response team. This opportunity is a full-time position remote opportunity on our team that embraces a collaborative environment, a competitive salary, equity in the company, excellent benefits, and fosters continuous professional development.  

In this role, you will represent Surefire Cyber as a skilled technical and consulting resource for clients across diverse industries during active incident response engagements. You will leverage your experience and technical skills to detect and analyze intrusions and offer guidance to clients to navigate through high-pressure response situations with clear communication and after-hours support as needed. 

Responsibilities 

  • Demonstrate a commitment to learning and contribute valuable insights, actively seeking guidance when necessary. 
  • Contribute to client-facing incident response engagements, working with other team members to guide clients through the entire incident response lifecycle from detection to recovery. 
  • Conduct advanced forensic analysis to precisely identify the scope and impact of security incidents, including malware analysis and reverse engineering when necessary. 
  • Lead the forensic investigations on small to medium investigations such as Business Email Compromises and Ransomware engagements, leveraging the expertise of Engagement Leads and Principal Consultants on advanced and more complex investigations. 
  • Provide mentorship and assist less experienced team members by sharing your knowledge and expertise to help others grow in their roles. 
  • Identify, articulate, and explain attack vectors, threat tactics, and attacker techniques to guide mitigation and prevention efforts. 
  • Convey complex forensic findings to technical and non-technical stakeholders clearly and understandably.
  • Provide comprehensive supporting evidence for written reports detailing incident findings, and analysis.
  • Collaborate with internal teams, external partners, and clients to refine and document incident response processes and best practices.
  • Engage in research and development activities to stay up to date with the latest forensic tools, techniques, and methodologies.  
  • Contribute to the development of internal processes and support broader organizational initiatives.
  • Provide after-hours (on-call/weekend rotational) support as required to address critical incidents and maintain continuous coverage. 

Requirements 

  • Bachelor’s degree in Cybersecurity, Computer Science, Information Technology, related degree, industry certifications, or former professional experience as a Senior Forensic Consultant, Senior Cybersecurity Consultant, or as a Senior Incident Responder. 
  • Proficiency in common digital forensic artifacts and tools such as ELK, Axiom, Encase, FTK (Forensic Toolkit), Open-Source, or other comparable tools. 
  • Professional experience with network analysis and intrusion detection tools. 
  • In-depth knowledge of cybersecurity principles and best practices. 
  • Excellent problem-solving skills and attention to detail. 
  • Ability to work effectively under pressure, manage multiple competing priorities, and meet tight deadlines. 
  • Exceptional communication skills, both written and verbal.  
  • Eagerness to mentor, share, and expand knowledgebase.  
  • Ability to provide after-hours (on-call/weekend rotational) support as required to address critical incidents and maintain continuous coverage. 

Expertise in all these areas is not required, but you should be excited by the opportunity to learn new things and comfortable with working with other team members to expand your knowledge base and experience. We at Surefire Cyber invite you to apply even if you do not feel you have mastery in all the requirements listed on the job description and welcome a further discussion.   

Interview Process 

  • Submit Application Online   
  • Preliminary phone interview with the People Team (approx., 30 minutes)
  • Technical Virtual interview with Forensic Team (approx., 60 minutes)
  • Virtual interview with Engagement Leads (approx., 45 minutes)
  • Virtual interview with Chief Delivery Officer (approx., 45 minutes)
  • Virtual interview with CEO (approx., 30 minutes) 

  #LI-Remote 

Benefits of Joining Surefire Cyber

  • Competitive compensation plan and total rewards package for team members
  • Remote workforce
  • Generous paid time off plan and floating holidays
  • Paid parental leave
  • Employer paid premiums for both team members and their dependents for medical, dental, and vision
  • Comprehensive health, vision, dental, 401K matching program, disability, Flexible Spending Accounts (FSA), Health Savings Account (HSA), Life and AD&D benefits.
  • Professional development and career advancement opportunities
  • We prioritize employee growth and development through a robust performance management platform to provide ongoing coaching, clear feedback, recognition, and opportunities for career growth.

Surefire Cyber is an Equal Opportunity Employer that does not discriminate on the basis of actual or perceived race, color, creed, religion, national origin, ancestry, citizenship status, age, sex, or gender (including pregnancy, childbirth, and pregnancy-related conditions), gender identity or expression (including transgender status), sexual orientation, marital status, military service and veteran status, physical or mental disability, genetic information, or any other characteristic protected by applicable federal, state or local laws and ordinances.

Apply now Apply later
  • Share this job via
  • 𝕏
  • or
Job stats:  1  0  0

Tags: Computer Science DFIR ELK EnCase Forensics Incident response Intrusion detection Malware Reverse engineering

Perks/benefits: 401(k) matching Career development Competitive pay Equity / stock options Flex hours Flexible spending account Flex vacation Health care Insurance Medical leave Parental leave Salary bonus Startup environment

Regions: Remote/Anywhere North America
Country: United States

More jobs like this

Explore more career opportunities

Find even more open roles below ordered by popularity of job title or skills/products/technologies used.