Senior DFIR Analyst

Group IB
Chile
Workplace: RemoteFull timeFunction: Solutions Engineering & Sales EngineeringExperience: 5+ yearsSkills: ["Client management","Decision-making","Analytical thinking","Communication","Quality assurance"]

Lead end-to-end incident response engagements across Latin America, owning scoping through executive briefings while coordinating analysts and making decisions with incomplete data. Perform host forensics across Windows/Active Directory, Unix/Linux, and macOS, and investigate cloud and identity compromise across AWS, Azure/Entra, and GCP. Deliver actionable written reports and briefings in Spanish and English, review quality, and build scripts/tooling to accelerate investigations.

Loading

Loading job details...

Preparing the role view and application actions.

FursaFursa
Group IB
Group IB
1 week ago

Senior DFIR Analyst

âś“ Verified Job

Canonical indexed version, validated from employer's careers page.

Source: Company careers pageValidated by: Fursa AI
Last checked: 19 hours agoStatus: Live

Job Summary

Lead end-to-end incident response engagements across Latin America, owning scoping through executive briefings while coordinating analysts and making decisions with incomplete data. Perform host forensics across Windows/Active Directory, Unix/Linux, and macOS, and investigate cloud and identity compromise across AWS, Azure/Entra, and GCP. Deliver actionable written reports and briefings in Spanish and English, review quality, and build scripts/tooling to accelerate investigations.
Location: Chile
Workplace: Remote
Employment Type: Full time
Job Function: Solutions Engineering & Sales Engineering
Seniority: Mid level

Key Responsibilities

  • •Own incident response engagements across Latin America from scoping through closure and provide end-to-end leadership.
  • •Serve as the primary technical point of contact for the client and coordinate analysts on each case.
  • •Conduct host forensics across Windows/Active Directory and Unix/Linux/macOS environments, and investigate cloud and identity compromise across AWS, Azure/Entra, and GCP.
  • •Perform log analysis, threat hunting, and malware triage; recognize and codify attacker tools, tactics, and procedures.
  • •Produce written reports and verbal briefings for technical teams and executives in Spanish and English, review colleagues’ work, and develop scripts/tooling to improve investigation speed.
Travel: Medium travel

Pay and Benefits

Perks:Learning Budget

Key Requirements

  • •5+ years in DFIR in consulting, MSSP, CERT, or in-house incident response.
  • •Demonstrated ability to lead investigations end to end with direct client or stakeholder ownership.
  • •Host forensics depth across Windows and Active Directory, plus working familiarity with macOS and Unix/Linux.
  • •Cloud incident response experience on at least one platform (AWS, Azure/Entra, or GCP).
  • •Fluent Spanish and English for writing reports and briefing executives; willingness to travel ~25% for onsite client work.
Experience:5+ yearsDFIRIncident responseConsultingMSSPCERT
Education:
Skills:Client managementDecision-makingAnalytical thinkingCommunicationQuality assurance
Certifications:GCFAGCFEGNFAGREMGCIHCEHCISSPOSCP
Languages:SpanishEnglishPortuguese
Tech Stack:DFIRIncident responseWindowsActive DirectoryUnix/LinuxMacOSAWSAzure EntraGCPLog analysisThreat huntingMalware triageLLMsScriptsTooling

Company Brief

Group IB
Provides cybersecurity solutions and services focused on threat intelligence, fraud protection, digital risk protection, and cyber investigations. Serves enterprises and public-sector organizations with tools to detect, investigate, and respond to cybercrime and online attacks.
Industry: Cybersecurity
Company Size: Enterprise (1,001+ employees)
Growth: Established Company
Headquarters: Singapore, Singapore
Founded: 2003
WebsiteLinkedIn