DFIR (Tools & Technologies) will be responsible for supporting in execution of technical tasks related to digital forensics and incident response. This includes configuring and maintaining DFIR tools, performing forensic data acquisition, and supporting incident analysis workflows across OT and IT landscapes. This role is ideal for a technically proficient candidate with a strong passion for forensic tools, cyber threat analysis, and a willingness to operate in real-world industrial cyber environments.
Qualifications & Certifications :
- Bachelor’s degree in Cybersecurity, Computer Science, or related fields
- Preferred certifications : GCFA, GCFE, CHFI, GREM
- 5 + years of experience in cybersecurity, with at least 2 years in DFIR or SOC operations with forensic exposure
Working knowledge of tools like :
Disk & Memory Forensics : FTK Imager, Magnet AXIOM, Autopsy, VolatilityNetwork Analysis : Wireshark, tcpdumpLog & Endpoint Analysis : CrowdStrike, SentinelOne, Sysmon, ELK StackCloud Forensics : AWS CloudTrail, Azure Monitor (preferred)Familiarity with MITRE ATT&CK framework, IOC analysis, and basic scripting (Python, Bash, PowerShell)Exposure to OT / ICS protocol logs such as Modbus, DNP3, or OPC is a strong advantageKey Responsibilities :
Operate and maintain DFIR toolsets including forensic imaging, memory analysis, and network packet capture solutionsSupport incident response teams during breach investigations by preparing and executing data acquisition tasks (disks, memory, logs)Perform triage and basic analysis of forensic artifacts under supervision of senior investigatorsAssist in correlating forensic data from EDR / XDR platforms, SIEM tools, and OT network monitoring systemsConduct forensic evidence handling and documentation in accordance with chain of custody standardsParticipate in red / blue / purple team exercises, cyber drills, and readiness testingContribute to the setup and tuning of DFIR tools including lab environments and virtual sandboxesMaintain tool integrations, script automation where required, and ensure operational availability of forensic toolkitsStay updated with new forensic tool capabilities and cyberattack techniques relevant to OT / ITOnly Experienced Digital Forensics and Incident Response Professional apply at joy.saha@adani.com.