digital forensic analyst l1. the role of digital forensic analyst is considered an entry-level position, with supervision provided by the dfir manager or an appointed manager within the client’s dfir/sirt team. this position encompasses tasks related to forensic data acquisition, alert monitoring, verification, documentation, investigation, and reporting.
key deliverable :
data collection
• monitoring alerts
• analyzing
incidents
• reserving
. evidence and
• creating reports
profile & experience :
a minimum of 2 years of experience in it security, specifically supporting digital forensics investigations, or an equivalent
combination of education and experience.
• an associate degree in it, computer science, cyber security, or related field is required.
• level 1-2 experience in security operations centre (soc) operations.
• demonstrated ability to respond to edr/xdr/av alerts, involving root-cause analysis and remediation.
• strong multitasking skills and meticulous attention to detail.
• proficiency in microsoft word and excel
responsibilities :
conducting remote forensic evidence collection and ensuring the preservation of digital
evidence, maintaining a secure chain of custody.
• ensuring the collection and preservation of electronically stored information (esi) is
defensible and repeatable.
• providing analysis on digital evidence from various networks, workstations, and servers.
• documenting and generating examination reports to communicate findings to both
technical and non-technical stakeholders.
• staying updated on emerging trends, technologies, and techniques in the field of digital
forensics.
• performing soc level 1 and 2 analyses on alerts, identifying associated risks with indicators
of compromise (ioc) alerts.
• ensuring compliance with digital forensic policies and guidelines.
• independently resolving alerts or escalating them to more senior personnel, all while
collaborating effectively with the team to achieve event resolution