Cybersecurity DFIR Specialist
1 week ago
Employment Type: Full-time / Permanent
Experience Level: Mid–Senior Level
We are seeking a skilled and experienced Cybersecurity DFIR Specialist to join our security team. This role is critical in detecting, investigating, and responding to cybersecurity incidents while performing digital forensics to uncover root causes, assess impact, and strengthen defenses. The ideal candidate will have hands-on experience with incident handling, malware analysis, log analysis, and forensics investigations in both on-premises and cloud environments.
Key ResponsibilitiesIncident Response & Threat Handling
- Act as the primary responder to security incidents, leading triage, containment, eradication, and recovery efforts.
- Conduct root cause analysis and produce detailed incident reports, including attack timelines and impact assessments.
- Collaborate with SOC, IT, and engineering teams to contain threats and restore normal operations quickly.
Digital Forensics
- Collect, preserve, and analyze digital evidence from compromised systems, endpoints, and networks.
- Perform forensic investigations using industry-standard tools (EnCase, FTK, Autopsy, etc.).
- Develop and maintain forensic playbooks and standard operating procedures.
Threat Hunting & Analysis
- Conduct proactive threat hunting using SIEM data, EDR solutions, and threat intelligence feeds.
- Perform malware analysis, memory forensics, and network traffic analysis to identify Indicators of Compromise (IOCs).
- Develop detection rules and signatures to improve future detection and response capabilities.
Collaboration & Reporting
- Work closely with cross-functional teams (SOC, GRC, engineering, legal, compliance) to ensure coordinated response efforts.
- Provide actionable recommendations to strengthen security posture and reduce risk exposure.
- Prepare executive-level and technical reports summarizing investigations, impact, and lessons learned.
Continuous Improvement
- Stay updated with the latest threat trends, TTPs (Tactics, Techniques, and Procedures), and vulnerabilities.
- Participate in tabletop exercises, red/blue team drills, and post-incident reviews to improve readiness.
- Contribute to the development of automation scripts and response tooling to speed up investigations.
- 5+ years of experience in cybersecurity, with at least 3+ years in DFIR or incident response roles .
- Strong knowledge of Windows, Linux, and macOS internals and forensic artifacts.
- Proficiency with SIEM, EDR, and forensic tools (Splunk, ELK, Velociraptor, EnCase, FTK, Volatility, etc.).
- Hands-on experience with malware analysis, reverse engineering, and memory forensics is a plus.
- Familiarity with MITRE ATT&CK framework and threat intelligence methodologies.
- Understanding of cloud environments (AWS, Azure, GCP) and cloud incident response.
- Excellent problem-solving, analytical, and communication skills.
- Relevant certifications preferred: GCFA, GCFE, GNFA, GCIH, CHFI, OSDF, CEH, CISSP .
- Experience with SOAR platforms and automation scripting (Python, PowerShell).
- Exposure to red teaming or penetration testing methodologies.
- Knowledge of regulatory requirements (ISO 27001, SOC 2, GDPR, PDPA).
-
Analyst, Cybersecurity DFIR
2 weeks ago
Singapore ICE DATA SERVICES SINGAPORE PTE. LTD. Full timeJob Purpose The ICE Cybersecurity Digital Forensics and Incident Response (DFIR) team is responsible for defending critical financial infrastructure from Global Cyber threats. This role is suited for both entry-level analysts and experienced engineers, with responsibilities and growth opportunities tailored to each level. You will work alongside experienced...
-
Associate Cybersecurity Specialist
1 day ago
Singapore Red Alpha Cybersecurity Full timeAbout the job Associate Cybersecurity Specialist Join us as a Cybersecurity Specialist through our Alpha Specialist Training Programme (ASTP) , a structured and fully sponsored pathway designed to launch your career in cybersecurity. Red Alpha equips you with practical skills, industry‐recognised certifications, and a guaranteed deployment into meaningful...
-
Associate Cybersecurity Specialist
2 weeks ago
Singapore Red Alpha Cybersecurity Pte. Ltd. Full timeAbout the job Associate Cybersecurity Specialist Join us as a Cybersecurity Specialist through our Alpha Specialist Training Programme (ASTP) , a structured and fully sponsored pathway designed to launch your career in cybersecurity. Red Alpha equips you with practical skills, industry-recognised certifications, and a guaranteed deployment into meaningful...
-
Snr Cybersecurity Consultant
2 weeks ago
Singapore Cyber Security Agency of Singapore (CSA) Full timeOverview Join to apply for the Snr Cybersecurity Consultant / Cybersecurity Consultant (DFIR) - NCIRC role at Cyber Security Agency of Singapore (CSA). What The Role Is The key responsibility of an engineer in the Digital Forensics and Incident Response team is to facilitate an orderly and efficient response to cyber incidents. Primary Responsibilities You...
-
Associate Cybersecurity Specialist
2 weeks ago
Singapore RED ALPHA CYBERSECURITY PTE. LTD. Full timeJoin us as a Cybersecurity Specialist through our Alpha Specialist Training Programme (ASTP) , a structured and fully sponsored pathway designed to launch your career in cybersecurity. Whether you're a fresh graduate or making a career switch, Red Alpha equips you with practical skills, industry-recognised certifications, and a guaranteed deployment into...
-
DFIR Consultant
2 days ago
Singapore NTT SINGAPORE PTE. LTD. Full time $80,000 - $120,000 per yearResponsibilities:Conduct thorough digital forensic investigations to identify, collect, analyze, and preserve electronic evidence.Utilize forensic tools and methodologies to recover data from various digital devices, including computers, mobile phones, and network systems.Analyze digital evidence to support legal cases, internal investigations, and incident...
-
Cybersecurity Specialist
2 weeks ago
Singapore Redalpha Full timeJoin to apply for the Cybersecurity Specialist role at Red Alpha Cybersecurity . Join us as a Cybersecurity Specialist through our Alpha Specialist Training Programme (ASTP) , a structured and fully sponsored pathway designed to launch your career in cybersecurity. Whether you're a fresh graduate or making a career switch, Red Alpha equips you with practical...
-
Singapore Adecco Full timeAdecco is partnering with recognised organisation and they are looking for Digital Forensics Incident Response Specialist (DFIR)to join the Team! A great opportunity to work with the company who value growth opportunities, trainings and diversity. Responsibilities Incident Response & Digital Forensics and Threat Hunting Lead end-to-end incident response,...
-
IT Cybersecurity Specialist
14 hours ago
Singapore US Cybersecurity and Infrastructure Security Agency Full time**Duties**: **This position is remote work (long distance remote) and telework eligible consistent with the Agency's telework and remote work program policy. Applicants who live within the local commuting area (i.e., a 50-mile or less radius from Glebe Road, Arlington VA (not driving distance)) are ineligible for local remote work and are expected to perform...
-
Digital Forensics Incident Response Specialist
2 weeks ago
Singapore Adecco Personnel Pte Ltd. Full timeOverview The Opportunity: Permanent role. Work location: East. Work hours: Mon to Fri 8:30am - 6pm. Adecco is partnering with a recognised organisation and they are looking for Digital Forensics Incident Response Specialist (DFIR)to join the team. A great opportunity to work with a company that values growth opportunities, training and diversity....