Eine zielgenaue Bewerbung für diesen Job — ein maßgeschneiderter Lebenslauf und ein Anschreiben, die genau zur Stellenanzeige passen.
Forensic Focus Limited seeks an experienced DFIR consultant to investigate security incidents across enterprise environments, performing host and network forensics, malware reverse engineering, and root cause analysis. You will draft incident response playbooks, run tabletop exercises, and deliver reports to both technical and management audiences.
The role requires a degree in computer science or equivalent, fluency in German and English, and familiarity with MITRE ATT&CK and NIST frameworks.
The consultant investigates security incidents across enterprise networks, servers and endpoints, performing host-based and network forensic analysis, including live and dead-box examination. Responsibilities include malware reverse engineering, root cause analysis, drafting IR playbooks, running tabletop exercises, and producing reports for both technical and management audiences.
Candidates should hold a degree in computer science or equivalent and demonstrate strong knowledge of Windows, macOS, Unix/Linux and mobile forensics. SANS certifications such as GCFE, GCFA, GNFA or GREM are advantageous. Familiarity with MITRE ATT&CK and NIST frameworks, plus fluent German and English, is required.
This role suits an experienced DFIR professional who thrives in a client-facing consulting environment, is comfortable with on-call duties and travel, and wants to operate across a broad range of incident types — from initial triage through to proactive readiness and remediation engagements.