Digital Forensic Specialist

Group-IB (Posted 11 Jan 22)

ABOUT THE ROLE:

Our forensic and malware analyses have helped victims of infamous hacker groups come out as victors in courts of law. We’ve done 1000+ successful investigations around the globe. To join us, you will need to live, breathe and dream about imaging, looking into a labyrinth of data and connecting the dots to help our clients while understanding the tactics, techniques and procedures used by the criminal to connect the dots to a potential attribution.

TASKS TO SOLVE:

  • Visit clients to collect and formalize sources of digital evidence.

  • Collect and Recover data. Run necessary tools and your scripts for collection forensic artifacts.

  • Identify counter-criminalistic methods and techniques.

  • Reconstruct the most sophisticated cyberattacks based on the collected sources of digital evidence.

  • Conduct root cause analysis and provide recommendations for security improvement.

  • Present your high-level findings to Senior executives.

  • Support or provide expert testimony in depositions, trials, and other proceedings, if required.

  • Consult with and take direction from supervisors, and clients regarding case investigation and status.

  • Contribute to a curriculum and conduct clients’ training sessions and workshops.

  • Develop and broaden forensic skills set through external training and research.

  • Support the mentorship and technical development of Consultants in Digital Forensics.

  • Participate in technical meetings and working groups to address issues related to malware security, vulnerabilities and issues of cybersecurity and preparedness.

  • Highly eloquent with public speaking experiences and the ability to represent Group-IB as a subject matter expert and present knowledge in industry conferences, webinars, and closed door sharing sessions.

APPLY FOR THIS VACANCY IF YOU HAVE THE FOLLOWING QUALIFICATIONS:

  • Bachelor’s degree, preferably in Forensic Computing, Computer Science or Computer Security.

  • Knowledge of Digital Forensic Industry standards, chain of custody procedures, forensic methodologies, best practices and evidence handling.

  • An advanced understanding of complex data collection and preservation principles.

  • An advanced understanding of networking concepts and experience in working with networked systems.

  • An advanced understanding of security appliances including but not limited to IDS, IPS, Firewall, and SIEM systems.

  • An advanced understanding of Microsoft Windows and *nix operating systems.

  • Knowledge and experience with digital forensic hardware/software, such as Magnet AXIOM/IEF, BlackBag BlackLight, Cellebrite UFED, and other related hardware and software.

  • Knowledge and experience with personal computers and server hardware, to include RAID and networked drive storage systems, smartphones, tablets.

  • Experience with cloud infrastructures for the enterprise, such as Amazon Web Services (AWS), G Suite, Office 365, and Azure.

  • Experience with conducting log analysis if Windows Events Logs, Apache, IIS and firewall logs.

  • Proficiency with database querying and analysis.

  • Experience with command line tools (grep, sed, awk, powershell), python, and other programming languages.

  • Proficiency with MS Office Applications, and familiarity with Windows, Macintosh, and Linux operating systems.

  • Experience in conducting forensic imaging and examinations of digital and electronic media, including, but not limited to: computer hard drives, external drives, mobile devices, network devices, and any other device that stores digital evidence.

  • Experience in conducting forensic analysis as part of incident response or incident investigations.

  • Maintaining forensic certifications, GCFE, GCFA, MCFE, or similar.

  • Strong attention to detail and high concern for data accuracy.

  • Comfortable with intermittent period of significant work and travel, evening and weekend hours.

  • Fluency in English.

$4,000~$5,000

Source: https://www.group-ib.com/careers.html#vacancy_195

Last updated