Senior DFIR Analyst

Group IB
Argentina
Workplace: RemoteFull timeFunction: Solutions Engineering & Sales EngineeringExperience: 5+ yearsEducation: bachelorsSkills: ["Client/stakeholder management","Incident response decision-making","Forensic analysis","Written and verbal communication","Tooling and automation"]

Lead end-to-end incident response engagements across Latin America, from scoping through executive briefing. Serve as the primary technical point of contact, coordinating analysts while making sound decisions with incomplete data. Conduct host forensics across Windows/Active Directory, Unix/Linux, and macOS; investigate cloud and identity compromises on AWS, Azure/Entra, and GCP; and deliver clear reports and briefings in Spanish and English. Build scripts and tooling to accelerate investigations.

Loading

Loading job details...

Preparing the role view and application actions.

FursaFursa
Group IB
Group IB
1 week ago

Senior DFIR Analyst

âś“ Verified Job

Canonical indexed version, validated from employer's careers page.

Source: Company careers pageValidated by: Fursa AI
Last checked: 19 hours agoStatus: Live

Job Summary

Lead end-to-end incident response engagements across Latin America, from scoping through executive briefing. Serve as the primary technical point of contact, coordinating analysts while making sound decisions with incomplete data. Conduct host forensics across Windows/Active Directory, Unix/Linux, and macOS; investigate cloud and identity compromises on AWS, Azure/Entra, and GCP; and deliver clear reports and briefings in Spanish and English. Build scripts and tooling to accelerate investigations.
Location: Argentina
Workplace: Remote
Employment Type: Full time
Job Function: Solutions Engineering & Sales Engineering
Seniority: Mid level

Key Responsibilities

  • •Own incident response engagements end to end, from scoping through closure across endpoint, cloud, and network evidence.
  • •Coordinate client-facing incident response work and act as the primary technical point of contact.
  • •Conduct host forensics across Windows/Active Directory, Unix/Linux, and macOS environments.
  • •Investigate cloud and identity compromise across AWS, Azure/Entra, and GCP.
  • •Produce written reports and verbal executive briefings in Spanish and English, and support QA by reviewing colleagues’ work.
Travel: Medium travel

Key Requirements

  • •5+ years in DFIR in consulting, MSSP, CERT, or in-house incident response roles.
  • •Demonstrated experience leading investigations end to end with direct client or stakeholder ownership.
  • •Host forensics depth across Windows and Active Directory plus working familiarity with Unix/Linux and macOS.
  • •Cloud incident response experience on at least one major platform (AWS, Azure/Entra, or GCP).
  • •Fluent Spanish and fluent English; willing to travel in-region for onsite client work (~25%).
Experience:5+ yearsDFIRConsultingMSSPCERTIncident response
Education:Bachelor's in Computer Science, Information Security, or a related field
Skills:Client/stakeholder managementIncident response decision-makingForensic analysisWritten and verbal communicationTooling and automation
Certifications:GCFAGCFEGNFAGREMGCIH
Languages:SpanishEnglishPortuguese
Tech Stack:WindowsActive DirectoryUnixLinuxMacOSAWSAzureEntraGCPCloudLog analysisThreat huntingMalware analysisLLMsEndpoint evidenceNetwork evidenceCloud forensicsIdentity compromise

Company Brief

Group IB
Provides cybersecurity solutions and services focused on threat intelligence, fraud protection, digital risk protection, and cyber investigations. Serves enterprises and public-sector organizations with tools to detect, investigate, and respond to cybercrime and online attacks.
Industry: Cybersecurity
Company Size: Enterprise (1,001+ employees)
Growth: Established Company
Headquarters: Singapore, Singapore
Founded: 2003
WebsiteLinkedIn