Senior Incident Response & Digital Forensics Consultant

Nviso

Brussel Hoofdstad

Sur place

EUR 60 000 - 90 000

Plein temps

14 jours+

Recevez plus de réponses des employeurs

Envoyez un CV adapté au poste en quelques minutes.

Avantages offerts par ce poste

Training budget of 10.000€ and 10 days every 2 years
Company car and Belgian charging card
Flexible working hours
32 paid leave days

Résumé du poste

A leading cybersecurity firm in Belgium is seeking a Senior Incident Response Consultant to enhance their incident response team. You will lead forensic investigations, manage customer interactions during incidents, and support the automation of incident response processes. The successful candidate will have extensive experience in cyber intrusion analysis and digital forensics, along with strong communication skills in English and another official language of Belgium. A competitive remuneration package is offered, including flexible working conditions and professional development opportunities.

Qualifications

  • 4+ years of hands-on experience in incident response as a case lead.
  • Strong expertise in cyber intrusion analysis and digital forensics.
  • Excellent communication skills in English and at least one official language.

Responsabilités

  • Support the incident response team in various cyber incidents.
  • Lead customer calls during incidents and contribute to crisis management.
  • Perform threat hunting engagements in customer environments.

Connaissances

Cyber intrusion analysis
Incident response
Digital forensics
Memory forensics
Timeline analysis
Disk forensics
Live response tooling
Interpersonal skills

Outils

Magnet AXIOM Cyber
Wireshark
Volatility
Velociraptor

Description du poste

Who are we?

It all starts with the mission: NVISO is here to protect European society from potentially devastating cyber attacks! This means we offer cyber security services to private and governmental organizations to help them better prepare for, prevent, detect and respond to cyber security incidents.

All of this is built on four fundamental values that define who we are: We are Proud, We Break Barriers, We Care and No BS!

What will you do?

As our Senior Incident Response Consultant, you will support the NVISO incident response team (CSIRT) in responding to a wide range of cyber incidents. In addition to incident response and forensic engagements, you will work closely with the rest of the team to build & automate incident response processes, analytical capabilities, including threat hunting. You act as Incident Lead by setting investigative questions, delegating technical analysis tasks, and steering containment and eradication strategies. You produce high‑quality forensic and executive reports to present findings to technical stakeholders and executives. You occasionally peer‑review case notes, artifacts, and draft reports.

Your responsibilities

  • Perform host forensics (Magnet AXIOM Cyber, X-Ways, Autopsy), network forensics (Wireshark, tshark), memory forensics (Volatility, MemProcFS), and log analysis, including cloud telemetry (Microsoft 365/Azure, AWS, Google Cloud/Workspace), in support of cyber incident investigations.
  • Lead single‑system forensic analysis and contribute meaningfully to complex intrusions, including those with lateral movement, perform timeline analysis of compromised hosts and conduct live response artifact capture, volatile data collection, containment to support eradication and recovery efforts.
  • Perform basic malware triage of executables and malicious scripts (static and behavioral) to inform containment and eradication strategies.
  • Lead customer calls during incidents and contribute to cyber crisis management, and deliver status reports, planning for containment, eradication and recovery efforts, and input to executive‑ready communications.
  • Support improvement projects related to automation in digital forensics and further develop NVISO tools and incident response processes.
  • Perform threat hunting engagements within customer environments, including technical planning, requirements definition, execution, and reporting.
  • Assist in other engagements such as tabletop exercises, incident and forensic readiness assessments, and threat‑intelligence‑related briefings.
Requirements
  • You hold citizenship in one of the 32 NATO member states.
  • 4+ years of hands‑on experience, including acting as an incident response case lead.
  • Strong knowledge of cyber intrusion analysis, incident response, digital forensics on Windows/MacOS/Unix, with demonstrated expertise in memory forensics (Volatility, MemProcFS), timeline analysis (e.g., MFTECmd, KAPE, Plaso/Timesketch), and disk forensics (Magnet AXIOM Cyber, X-Ways, Autopsy).
  • Proficiency with live response tooling (e.g., Velociraptor, GRR Rapid Response, EDR live response) and coordinating remediation actions.
  • Up‑to‑date on the latest cybersecurity threats and attacker TTPs.
  • Excellent analytical and problem‑solving skills with an eye for detail in documentation.
  • Effective communication and interpersonal skills to work collaboratively with clients and cross‑functional teams.
  • Ability to remain calm during crisis situations and prioritize effectively under pressure.
  • Excellent communication skills, in English and at least one of Belgium’s official languages.
  • We have an On‑call rotation, typically one week per month.
What do we offer

At NVISO, we care. We are committed to offering you a highly competitive remuneration package including financial and non‑financial components:

  • A training budget of 10.000€ and 10 days every 2 years
  • Company car and Belgian charging card
  • Working and learning from the best people in the European cyber security industry. We have multiple SANS Instructors working at NVISO, our staff has presented at popular hacking conferences (BlackHat, BruCON, OWASP, etc) and all of our technical staff can acquire deep technical security certifications (GSE, GXPN, GREM, GCFA, OSCP, etc)
  • An entrepreneurial and agile working environment, where you will be challenged, stimulated and supported in driving new initiatives (either through internal innovation or by improving our service offering), without losing sight of having fun!
  • Regular team‑building and fun events throughout the year;
  • Our commitment to coach and counsel you and help you grow; each employee receives a personal coach within the team, whose role is to ensure your well‑being and helps you grow in your career!
  • Flexible working hours, working from home and even the possibility to work from abroad;
  • Flex Income Plan
  • 32 paid leave days
Obtenez votre examen gratuit et confidentiel de votre CV.
ou faites glisser et déposez votre fichier ici.
Similar jobs

Postes similaires à comparer

Senior Cyber Strategy & Architecture Consultant
Senior Cyber Strategy & Architecture Consultant

NVISO Security • Brussel Hoofdstad

Hybride
EUR 100 000 - 140 000
Training budget 10,000€
Company car + Belgian fuel card
Flexible working hours
+5
Technical Lead Manager
Technical Lead Manager

NVISO • Brussel Hoofdstad

Sur place
Confidential
Training budget 10.000€
Flexible working hours
32 paid leave days
Junior Application Security Consultant
Junior Application Security Consultant

Nviso • Belgique

À distance
EUR 40 000 - 60 000
Training budget and learning perks
Company car and Belgian fuel card
Regular team-building events
+1
SOC Engineer
SOC Engineer

Nviso • Brussel Hoofdstad

Hybride
EUR 60 000 - 95 000
Training budget
Mentor program
Flexible work model
+4
Service Delivery / Project Manager
Service Delivery / Project Manager

Nviso • Brussel Hoofdstad

Sur place
EUR 50 000 - 70 000
Training budget of 10,000€ every 2 years
Flexible working hours and home office options
Regular team-building events
+2
IT Administrator
IT Administrator

Nviso • Brussel Hoofdstad

Hybride
EUR 55 000 - 70 000
Training budget of 10,000€ every 2 years
Flexible working model
Personal coaching
Software Engineer
Software Engineer

NVISO Security • Brussel

Sur place
EUR 70 000 - 110 000
Training budget
Company car
Flexible hours
+2
Senior Penetration Tester
Senior Penetration Tester

NVISO • Brussel Hoofdstad

Sur place
Confidential
Training budget of 10.000€ and 10 days every two years
Company car + Belgian fuel card
Flexible working hours and home office possibilities
+1
Global Head of HR
Global Head of HR

Nviso • Brussel Hoofdstad

Sur place
EUR 120 000 - 180 000
Chief Information Security Officer
Chief Information Security Officer

Jobtailor • Brussel Hoofdstad

Sur place
EUR 80 000 - 120 000
Flexible working hours
32 days of holiday
Personal coaching
+1