Back to positions

[Remote] Digital Forensics Response Automation Analyst (DFIR Automation Analyst)

Remote role Full-time Open position

Note: The job is a remote job and is open to candidates in USA. Bechtel Corporation is a global leader in engineering and construction, and they are seeking a Digital Forensics Response Automation Analyst to design and implement automation solutions that enhance incident response capabilities. The role involves collaborating with technical and business teams to streamline investigative workflows and improve response efficiency.

Responsibilities

  • Design, implement, and continuously improve our incident response capabilities and modernize Bechtel’s computer forensics operations.
  • Assist efforts to modernize our digital forensics tooling and collection processes while leveraging SOAR, Cloud infrastructure, and Hirebase/CD pipelines.
  • Develop and maintain scripts, playbooks, and integrations for forensic data collection, analysis, and reporting.
  • Conduct forensic investigations across cloud (e.g., AWS, Azure, GCP, SaaS, PaaS, and IaaS) and on-premise environments to identify, preserve, and analyze evidence
  • Collaborate with security operations, IT, and engineering teams to identify automation opportunities and implement scalable solutions.
  • Lead and prioritize incident response command staff efforts across the enterprise, including providing forensic analysis support and/or serving as incident commander.
  • Utilize your expert communication skills to produce greater awareness of goals, projects, and tasks amongst customers and stakeholders.
  • Participate in post-incident reviews and help implement lessons learned into automation strategies. Skills
  • Bachelor's Degree in Information Technology, Computer Science, or a related field or 8 years equivalent experience (in lieu of degree).
  • Must be a United States citizen.
  • 5 or more years of general information technology experience with at least 2 of those years in the area of digital forensics or incident response.
  • Familiarity with SOAR (Security Orchestration, Automation, and Response) software with an emphasis on building complex playbooks for automating routine incidents.
  • Familiarity with Incident Response in cloud/hybrid environments (AWS, Azure, GCP, etc).
  • Demonstrated experience with Gitops, Tasklance/CD, and infrastructure as code (IaC) solutions.
  • Demonstrated knowledge of Windows, Mac, and Linux operating systems.
  • Strong working knowledge of Python, PowerShell, or similar scripting languages.
  • Skilled in SIEM/XDR/EDR platforms (e.g., Splunk, Sentinel, CrowdStrike) including log analysis, correlation, and detection tuning.
  • Solid experience applying all facets of digital forensics and incident response to on-prem and cloud environments.
  • Proven ability to manage yourself, prioritize tasks, and produce high-quality results in a fast-paced environment.
  • Able to work across team boundaries, reach consensus amongst disparate viewpoints, and graciously receive feedback.
  • Strong analytical, documentation, and communication skills.

Benefits

  • Comprehensive medical, dental, and vision plans
  • Optional disability and supplemental insurance options
  • Generous paid time off (160 hours annually, accrued 6.16 hours per pay period)
  • Nine paid holidays
  • Paid parental leave
  • Discretionary bonuses
  • A well-designed 401K plan with matching and profit-sharing components Company Overview
  • Bechtel is a construction company that offers engineering, construction, and project management solutions to its customers. It was founded in 1898, and is headquartered in Reston, Virginia, USA, with a workforce of 10001+ employees. Its website is Apply tot his job Apply tot his job

Apply tot his job Apply To this Job

Further positions

Senior Consultant-FTZ Administrator Forensic & Litigation Consulting

Remote role Full-time

FP&A Analyst, Technology & Infrastructure

Remote role Full-time

Legal Counsel Case Management (Freelancer)

Remote role Full-time

Online Fraud Investigator Remote, NC (SSC) 4932

Remote role Full-time

Freelance Sales Consultant

Remote role Full-time

Business Development Representative, Informatics - Texas - Full-time

Remote role Full-time

Account Manager- Employee Benefits (Hybrid 1 day In-Office)

Remote role Full-time

Investment Specialist-Mutual Funds, Investment Centre - Remote

Remote role Full-time

Manager, Investment Fund Services; Remote CST​/MST

Remote role Full-time

Google Cloud Platform GCP Architecture and Engineering Lead

Remote role Full-time

Experienced Full Stack Data Entry Specialist – Remote Work Opportunity at arenaflex

Remote role Full-time

[Remote-Position] Need Diversity Postdoctoral Faculty in San

Remote role Full-time

Program Lead

Remote role Full-time

Social Media Strategy & Activation Manager III.

Remote role Full-time

Experienced Full Stack Customer Support Chat Agent – Remote Live Chat Assistant Role at arenaflex

Remote role Full-time

ISN Compliance Specialist

Remote role Full-time

Experienced Data Entry and Research Design Consultant for Innovative Air Travel Solutions – Remote Work Opportunity at arenaflex

Remote role Full-time

Apply Now: Host or Hostess, Part Time

Remote role Full-time

Data Annotator | 2D annotation project

Remote role Full-time

Mental Health Therapist-Remote(Must be licensed in MD, DC, and/or VA)

Remote role Full-time