Jobgether
International Contract Bench, Incident Response (DFIR)
- Location
- India, IN
- Arrangement
- Remote
- Employment type
- Full-time
- Posted
- 26 September 2026 (5 days ago)
Checked 5 days agoApplications go to the employer, never to RoleSprint
About this role
Accountabilities • Perform incident response and digital forensic investigations involving active threat activity and security breaches.
• Analyze live response data and forensic artifacts to identify malicious activity, determine attack methods, and support investigations.
• Investigate Windows, macOS, and Linux environments using appropriate forensic techniques and tooling.
• Analyze business email compromise (BEC), account takeover, and other identity-related incidents.
• Conduct network analysis to identify suspicious activity, attacker behavior, and relevant indicators of compromise.
• Support investigations across cloud-native environments, including AWS, GCP, Azure, and SaaS applications.
• Apply threat intelligence and current knowledge of adversary techniques to investigative work.
• Contribute high-quality analysis to cases involving threats such as ransomware and sophisticated or nation-state activity.
• Share investigative perspectives, technical expertise, and feedback that help strengthen and evolve the incident response practice.
• Take on incident response assignments for a minimum of several hours per week, according to your availability and the needs of active investigations.
Requirements:
• Professional experience responding to cyber threat activity as an Incident Response consultant, SOC analyst, or in a closely related role.
• Strong understanding of Windows, macOS, and Linux fundamentals and their relevant forensic artifacts.
• Experience with digital forensics, business email compromise investigations, and network analysis.
• Existing knowledge of cloud-native investigations across AWS, GCP, and Azure, or a strong willingness and ability to develop expertise in these areas.
• Strong investigative mindset with a consistent focus on accuracy, evidence quality, and thorough analysis.
• Ability to distinguish legitimate user activity from threat actor behavior based on technical evidence and investigative context.
• Strong curiosity and interest in threat intelligence, emerging attack techniques, and evolving cyber threats.
• Ability to work independently while contributing effectively to an experienced incident response team.
• Willingness to bring your perspective and technical voice to help shape investigative practices.
• Availability of at least a few hours per week to support incident response work.
• Ability to balance contract incident response work with existing professional commitments, where permitted by your current employer.
Benefits:
• Flexible contract-based engagement designed to accommodate existing professional and personal commitments.
• Opportunity to work on live incident response investigations without committing to a traditional full-time on-call schedule.
• Exposure to complex investigations involving ransomware, account compromise, cloud environments, and sophisticated threat activity.
• Opportunity to work alongside an experienced team of incident response and digital forensics professionals.
• Continued hands-on exposure to emerging threats, investigative techniques, and cloud-native forensics.
• Flexible workload that allows you to take on assignments according to your availability and the needs of active cases.
How Jobgether works: We use an AI-powered matching process to ensure your application is reviewed quickly, objectively, and fairly against the role's core requirements. Our system identifies the top-fitting candidates, and this shortlist is then shared directly with the hiring company. The final decision and next steps (interviews, assessments) are managed by their internal team. We appreciate your interest and wish you the best! Why Apply Through Jobgether?
Data Privacy Notice: By submitting your application, you acknowledge that Jobgether will process your personal data to evaluate your candidacy and share relevant information with the hiring employer. This processing is based on legitimate interest and pre-contractual measures under applicable data protection laws (including GDPR). You may exercise your rights (access, rectification, erasure, objection) at any time.
#LI-CL1
Work location
- IN
Ready to make a decision?
This role is either worth your time or it isn’t.
Analyze the posting against your experience, see the gaps clearly, and build the right materials only if the opportunity makes sense.
Nothing is submitted automatically. You choose what happens next.
About this listing
Published on Lever under the board identifier Jobgether, which is the name the employer’s own job board carries. RoleSprint has not verified the company’s registered or trading name, so it is shown exactly as published rather than tidied up.
RoleSprint is not the employer and not a recruiter. Applications are made on the employer’s own site and never reach us; what RoleSprint does is help you decide whether a role is worth your time and prepare for it if it is.
Published 26 September 2026, last checked 5 days ago. A posting stops being advertised here 90 days after the employer published it, and one the employer takes down is marked closed rather than quietly removed.