DFIR , Forensics , SOC, VAPT

Posted 2 Days Ago
Be an Early Applicant
Goregaon West, Mumbai Suburban, Maharashtra, IND
In-Office
Mid level
Cloud • Information Technology • Consulting • Cybersecurity
The Role
Investigate and respond to cybersecurity incidents involving malware, data exfiltration, privilege abuse, and advanced persistent threats. Collect and analyze digital evidence from endpoints, servers, cloud, email, and mobile devices using forensic tools. Perform malware analysis, reverse engineering, IOC development, and MITRE ATT&CK mapping. Coordinate with IT, SOC, Legal, Risk, and compliance stakeholders, maintain chain of custody, produce investigation reports, support eDiscovery, and improve detection controls and SOC procedures.
Summary Generated by Built In

Job Title: DFIR Analyst (Digital Forensics, Forensic Investigation, and Incident Response)

Department: Security Command Centre
Reports To: Director or SOC Head
Location: Goregaon West, Mumbai
Job Type: Full-Time

 

Job Summary:

We are seeking an experienced and detail-oriented DFIR Analyst to join our cybersecurity team. This role focuses on digital forensics, forensic investigations, and incident response activities. The ideal candidate will investigate and analyze security incidents, perform in-depth forensic examinations of digital systems, and support legal and compliance processes as needed. This position is critical in uncovering root causes, supporting recovery, and improving our organization’s threat resilience.

 Key Responsibilities:

1.     Incident Response

  • Lead or support the containment, eradication, and recovery of cybersecurity incidents including malware infections, data exfiltration, privilege abuse, and APT activity.
  • Coordinate with stakeholders across IT, SOC, Legal, and Risk during active incidents.
  • Document incident timelines and create post-mortem reports with root cause analysis.

2.     Forensic Investigation & Digital Forensics

  • Collect, preserve, and analyze digital evidence in a forensically sound manner, ensuring chain of custody.
  • Conduct forensic investigations of compromised endpoints, servers, cloud systems, email, and mobile devices.
  • Use forensic tools (e.g., EnCase, FTK, X-Ways, Autopsy, Sleuth Kit, Volatility, Velociraptor) to analyze disk, memory, registry, browser artifacts, system logs, and deleted files, for all digital assets.
  • Support internal investigations involving fraud, data leakage, IP theft, or employee misconduct.
  • Work with multiple compliance departments to produce evidence reports and contribute to eDiscovery when required.

3.     Threat Analysis

  • Perform static and dynamic malware analysis and reverse engineering.
  • Develop Indicators of Compromise (IOCs), analyze TTPs using MITRE ATT&CK framework.
  • Collaborate with threat intelligence teams to enrich investigations with contextual insights.

4.     Post-Incident Review & Process Improvement

  • Create detailed incident and investigation reports for technical and executive audiences.
  • Recommend preventive controls, detection improvements, and SOC playbook updates.
  • Maintain forensic investigation procedures aligned with legal, compliance, and regulatory needs.

Required Skills & Qualifications:

  • Bachelor’s degree in Cybersecurity, Digital Forensics, Computer Science, or a related field.
  • 4+ years of experience in DFIR, forensic investigation, or cyber threat analysis roles.
  • Proficient with forensic tools such as EnCase, FTK, Autopsy, X-Ways, Volatility, Sleuth Kit, Velociraptor.
  • Hands-on experience with EDR, SIEM, and log analysis, Malware analysis etc.. platforms
  • In-depth knowledge of OS internals (Windows, Linux, macOS), file systems, memory structure, and network protocols.
  • Familiarity with legal protocols for evidence handling and regulatory compliance.

Preferred Certifications:

  • GCFA – GIAC Certified Forensic Analyst
  • CHFI – Computer Hacking Forensic Investigator
  • GCIH / GCIA / GNFA – GIAC Incident or Network Forensic Certifications
  • OSCP / CCFP / EnCE / CFCE – (Bonus)

Key Competencies:

  • Strong investigative and analytical mindset
  • Excellent communication and documentation skills
  • Able to work independently under pressure and during live incidents
  • Familiar with chain of custody, litigation support, and legal evidence standards




Skills Required

  • Bachelor's degree in Cybersecurity, Digital Forensics, Computer Science, or a related field
  • 4+ years of experience in DFIR, forensic investigation, or cyber threat analysis roles
  • Proficiency with EnCase, FTK, Autopsy, X-Ways, Volatility, Sleuth Kit, and Velociraptor
  • Hands-on experience with EDR, SIEM, log analysis, and malware analysis platforms
  • In-depth knowledge of Windows, Linux, macOS, file systems, memory structures, and network protocols
  • Familiarity with legal protocols for evidence handling and regulatory compliance
  • GCFA certification
  • CHFI certification
  • GCIH, GCIA, or GNFA certification
  • OSCP, CCFP, EnCE, or CFCE certification
Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
32 Employees
Year Founded: 2023

What We Do

Techsec Digital Global Pvt. Ltd. provides technology, cybersecurity, cloud, networking, infrastructure, and digital transformation solutions. The company helps organizations safeguard critical information, maintain regulatory compliance, and ensure uninterrupted business operations through customized security tools, secure infrastructure design and management, professional services, automation, and expert consulting. It is ISO/IEC 27001:2022 certified and serves businesses navigating complex digital security and transformation needs.

Similar Jobs

Pfizer Logo Pfizer

Area Medical Advisor, Vaccines

Artificial Intelligence • Healthtech • Machine Learning • Natural Language Processing • Biotech • Pharmaceutical
In-Office
Mumbai, Maharashtra, IND
121990 Employees

Pfizer Logo Pfizer

Medical Intern

Artificial Intelligence • Healthtech • Machine Learning • Natural Language Processing • Biotech • Pharmaceutical
In-Office
Mumbai, Maharashtra, IND
121990 Employees

CSC Logo CSC

Database Administrator

Fintech • Legal Tech • Software • Financial Services • Cybersecurity • Data Privacy
Remote or Hybrid
2 Locations
8500 Employees

Mastercard Logo Mastercard

Business Analyst

Blockchain • Fintech • Payments • Consulting • Cryptocurrency • Cybersecurity • Quantum Computing
Hybrid
Pune, Maharashtra, IND
38800 Employees

Similar Companies Hiring

Standard Template Labs Thumbnail
Artificial Intelligence • Information Technology • Software
New York, NY
25 Employees
NODA AI Thumbnail
Artificial Intelligence • Information Technology • Software • Cybersecurity
Sydney, AU
54 Employees
Golden Pet Brands Thumbnail
Digital Media • eCommerce • Information Technology • Marketing Tech • Pet • Retail • Social Media
El Segundo, California
178 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account