[Hiring] Senior Digital Forensic Investigator @eSentire

This description is a summary of our understanding of the job description. Click on 'Apply' button to find out more. Role Description The Senior Digital Forensic Investigator serves as a tactical arm of eSentire’s Incident Response team. Main function of this role is to drive deep expertise and experience in incident response, and digital forensics engagements. • Handle the most volatile and complex casework while ensuring optimum quality of service and responsiveness. • Casework spans from financially motivated data breaches to state-affiliated espionage and ideology-driven attacks. • Operate in close coordination with eSentire’s SOC and Customer Success Management teams. • Drive fast mobilization, source identification, containment, and quantification of informational losses in response to cyber attacks. • Be available outside regularly scheduled work hours, including weekends and holidays. • Encourage team members to catch up on personal business when not busy. Responsibilities • Drive deep domain expertise in cyber incident response and digital forensics engagements. • Serve as case lead in the most demanding and volatile cyber investigations. • Be a tactical force multiplier for all open and active investigations. • Overlay with Customer Service Management and SOC teams to optimize quality of service. • Own and manage all aspects of assigned incident response engagements. • Be responsive to the customer’s voice and feedback. • Strive for attention to detail and excellence in service delivery. • Assist in scoping assignment activities as needed. • Continually research and develop new methods and approaches to improve service delivery. • Provide support and mentoring to junior level staff. • Work rotating shifts and be available on an on-call basis as required. • Be prepared to work for extended periods outside of regularly scheduled hours, including weekends and holidays. • Be prepared to travel for short periods and work onsite at client locations throughout the United States and Canada, as required. Requirements • Four-year degree in a relevant discipline and eight to ten years of DFIR experience. • Experience acting in an IR consultant capacity, particularly in the investigation and remediation of polymorphic trojans and modern ransomware variants. • Conducting cloud-based investigations in AWS, GCP, Azure, and SaaS environments. • Mastery of threat hunting using forensics at scale tooling and conducting web-based intrusion investigations. • Extensive experience in one or more mainstream forensics tools such as EnCase, FTK, Axiom, X-Ways, etc. • In lieu of education requirements, a military or law enforcement background with ten or more years of relevant work experience is acceptable. • Demonstrable expertise in Digital Forensics Incident Response Investigations. • Strong working knowledge of information security fundamentals. • Working knowledge and hands-on experience with cybersecurity tools and technologies including: • Endpoint Detection and Response (EDR): CrowdStrike, SentinelOne, arenaflex Defender for Endpoint (MDE) • Security Information and Event Management (SIEM): Splunk, Sumo Logic, IBM QRadar, arenaflex Sentinel • Firewall & VPN Logging Analysis: FortiGate, SonicWall, Meraki, WAF • Mass Forensic Triage Tools: Velociraptor, KAPE, Hayabusa • Active Directory Analysis Tools • Security consulting and/or case investigation background preferred. • Excellent written and verbal communication, listening and client management skills. • Ability to articulate complex IT technical information to customers in a non-technical fashion. • Self-motivated, strong analytical skills and detail-oriented. • Demonstrated presentation skills. Benefits • Comprehensive health benefits. • Flexible vacation plan. • Participation in the company-wide equity program. Accommodation If you have any accessibility requirements during the recruitment process, please reach out to our HR team at talentacquisition@esentire.com and any accommodation needs will be addressed upon request. Your talents and unique perspectives are valued, and we look forward to the opportunity to work together to build a more inclusive future. Apply tot his job

Back to blog

Common Interview Questions And Answers

1. HOW DO YOU PLAN YOUR DAY?

This is what this question poses: When do you focus and start working seriously? What are the hours you work optimally? Are you a night owl? A morning bird? Remote teams can be made up of people working on different shifts and around the world, so you won't necessarily be stuck in the 9-5 schedule if it's not for you...

2. HOW DO YOU USE THE DIFFERENT COMMUNICATION TOOLS IN DIFFERENT SITUATIONS?

When you're working on a remote team, there's no way to chat in the hallway between meetings or catch up on the latest project during an office carpool. Therefore, virtual communication will be absolutely essential to get your work done...

3. WHAT IS "WORKING REMOTE" REALLY FOR YOU?

Many people want to work remotely because of the flexibility it allows. You can work anywhere and at any time of the day...

4. WHAT DO YOU NEED IN YOUR PHYSICAL WORKSPACE TO SUCCEED IN YOUR WORK?

With this question, companies are looking to see what equipment they may need to provide you with and to verify how aware you are of what remote working could mean for you physically and logistically...

5. HOW DO YOU PROCESS INFORMATION?

Several years ago, I was working in a team to plan a big event. My supervisor made us all work as a team before the big day. One of our activities has been to find out how each of us processes information...

6. HOW DO YOU MANAGE THE CALENDAR AND THE PROGRAM? WHICH APPLICATIONS / SYSTEM DO YOU USE?

Or you may receive even more specific questions, such as: What's on your calendar? Do you plan blocks of time to do certain types of work? Do you have an open calendar that everyone can see?...

7. HOW DO YOU ORGANIZE FILES, LINKS, AND TABS ON YOUR COMPUTER?

Just like your schedule, how you track files and other information is very important. After all, everything is digital!...

8. HOW TO PRIORITIZE WORK?

The day I watched Marie Forleo's film separating the important from the urgent, my life changed. Not all remote jobs start fast, but most of them are...

9. HOW DO YOU PREPARE FOR A MEETING AND PREPARE A MEETING? WHAT DO YOU SEE HAPPENING DURING THE MEETING?

Just as communication is essential when working remotely, so is organization. Because you won't have those opportunities in the elevator or a casual conversation in the lunchroom, you should take advantage of the little time you have in a video or phone conference...

10. HOW DO YOU USE TECHNOLOGY ON A DAILY BASIS, IN YOUR WORK AND FOR YOUR PLEASURE?

This is a great question because it shows your comfort level with technology, which is very important for a remote worker because you will be working with technology over time...