Cybersecurity Incident Response & Digital Forensics (DFIR) Specialist

🏢 cloud consultancy - ccds
📍 Saudi ArabiaFull-timeOn-site
📅 Posted: 1w ago🔄 Updated: 1w ago
CV%
✨ AI Summary
This is a Cybersecurity Incident Response & Digital Forensics (DFIR) Specialist role for a 13-month project-based managed cybersecurity service in Riyadh, Saudi Arabia. The specialist will lead and execute cybersecurity incident response and digital forensic investigations, ensuring evidence preservation and regulatory compliance. Key responsibilities include investigating incidents, performing containment and recovery, analyzing digital evidence, and developing DFIR procedures. The role requires a Saudi national with a Bachelor's degree in a related field and at least 7 years of experience in the domain, along with strong technical skills in SIEM, EDR, and forensic tools.
Required Skills
Information Technology
EDRNIST
Other
volatilityAutopsyftk
Requirements
Saudi nationality is a must. Bachelor's degree in Cybersecurity, Digital Forensics, Computer Science, or a related field. At least 7 years of experience in cyber incident response and digital forensic investigations. Strong knowledge of attacker behavior, incident investigation methods, NIST incident response, and MITRE ATT&CK. Hands-on experience with SIEM, EDR, EnCase, FTK, Volatility, Autopsy, or equivalent forensic and security tools. Strong understanding of digital evidence handling and chain of custody.
Description
Location: On-site - Riyadh, Saudi ArabiaContract/engagement: Project-based managed cybersecurity services (13-month)Minimum experience: 7+ yearsRole PurposeLead and execute cybersecurity incident response and digital forensic investigations while preserving evidence and meeting regulatory reporting requirements.Key Responsibilities Investigate cybersecurity incidents and determine attack scope, impact, entry vectors, and affected assets Perform containment, eradication, recovery, root-cause analysis, and post-incident review activities Collect, preserve, and analyze digital evidence in accordance with approved chain-of-custody procedures Conduct disk, memory, network, endpoint, and malware analysis using appropriate forensic tools Develop and maintain incident-response and DFIR procedures, playbooks, investigation methods, and evidence-handling guides Prepare technical and executive incident reports, forensic findings, and RCA reports Coordinate with internal teams and stakeholders and ensure incident classification and reporting comply with NCA requirementsRequirementsTechnical and Professional Requirements Saudi nationality is a must Bachelor's degree in Cybersecurity, Digital Forensics, Computer Science, or a related field At least 7 years of experience in cyber incident response and digital forensic investigations Strong knowledge of attacker behavior, incident investigation methods, NIST incident response, and MITRE ATT&CK Hands-on experience with SIEM, EDR, EnCase, FTK, Volatility, Autopsy, or equivalent forensic and security tools Strong understanding of digital evidence handling and chain of custodyPersonal Requirements Calm and decisive during high-pressure incidents Strong investigative thinking, attention to detail, and professional judgment Clear technical writing and the ability to communicate findings to both executives and technical teams High integrity and strict respect for confidentialityProfessional CertificationsPreferred: CISSP, GCIA, GSEC, GCIH, CISM, or equivalent.
✨ Premium Match Details
Deep-dive CV analysis, customized Cover Letters, and Interview prep!
📊 Match Analysis
Insights against your active CV
📊
Personalized Match Analysis
Upload your CV to see exact matching percentages, detailed skills mapping, and gap analysis for this role.
🎯 Overalli74%
⚡ Skillsi85%
View Breakdown
Ontology Match: 85.0
Matched:✓ Requirements Matching✓ Ontology Skills Mapping
📜 Eligibilityi49%
View Breakdown
Local: 19600%
🏗️ Career Fiti91%
View Breakdown
Seniority: 91.0
📋 Requirementsi67%
View Breakdown
Domain: 67.0
🔥 Motivationi78%
View Breakdown
Title Fit: 78.00