International Contract Bench, Incident Response (DFIR)

Jobgether SRL

España

Presencial

EUR 83.000 - 138.000

Jornada completa

Hace 5 días
Sé de los primeros/as/es en solicitar esta vacante
Generador de candidaturas

Transforma esta oferta en una entrevista — un currículum y una carta de presentación creados pensando en lo que quiere el empleador.

Supera los filtros ATS

Ventajas ofrecidas por este puesto de trabajo

Flexible contract
Live investigations
Cloud exposure
IR team collaboration
Hands-on security work

Descripción de la vacante

Jobgether SRL in Spain is seeking an International Contract Bench, Incident Response (DFIR) to support high-impact digital investigations across Windows, macOS, Linux, cloud, and SaaS environments. Join an experienced IR team handling live data and threats from ransomware to nation-state activity.

The role emphasizes independent work within a flexible contract model designed for experienced investigators who want to stay technically engaged without a full-time on-call schedule.

Formación

  • Experience responding to cyber threat activity as Incident Response consultant or similar.
  • Strong understanding of Windows, macOS and Linux forensics.
  • Experience with cloud-native investigations across AWS, GCP, Azure or willingness to learn.
  • Evidence-driven approach with emphasis on accuracy and artifacts.
  • Ability to work independently within an IR team.

Responsabilidades

  • Perform incident response and digital forensic investigations involving active threats.
  • Analyze live response data and artifacts to identify malicious activity and attack methods.
  • Investigate Windows, macOS, and Linux environments using forensic techniques.
  • Analyze BEC, account takeover and identity-related incidents.
  • Conduct network analysis to identify indicators of compromise.
  • Support investigations in AWS, GCP, Azure and SaaS environments.
  • Apply threat intelligence to investigative work and evolving threats.
  • Contribute high-quality analysis to ransomware and nation-state cases.
  • Share perspectives and feedback to improve IR practices.
  • Take on IR assignments for several hours per week according to availability.

Conocimientos

Incident response
SOC analyst
Digital forensics
Network analysis
Cloud investigations
Threat intelligence
Independent work

Herramientas

Forensic tooling

Descripción del empleo

This position is listed on behalf of a partner company, who manages all applications and next steps. Our partner is looking for an International Contract Bench, Incident Response (DFIR) based in Spain.

As a contract Incident Response professional, you’ll support high-impact digital investigations involving sophisticated cyber threats and real-world security incidents. You’ll join an experienced team of forensic and incident response specialists working across a broad and evolving digital landscape. The role offers the opportunity to investigate live response data, identify malicious activity, and contribute to cases ranging from ransomware to nation-state threats. You’ll apply deep technical expertise across endpoint, network, cloud, and SaaS environments. The flexible contract model is designed for experienced investigators who want to stay technically engaged without committing to a traditional full-time on-call schedule. Your work will expand the team’s capacity to deliver high-quality investigations while fitting around your existing professional and personal commitments.

Accountabilities
  • Perform incident response and digital forensic investigations involving active threat activity and security breaches.
  • Analyze live response data and forensic artifacts to identify malicious activity, determine attack methods, and support investigations.
  • Investigate Windows, macOS, and Linux environments using appropriate forensic techniques and tooling.
  • Analyze business email compromise (BEC), account takeover, and other identity-related incidents.
  • Conduct network analysis to identify suspicious activity, attacker behavior, and relevant indicators of compromise.
  • Support investigations across cloud-native environments, including AWS, GCP, Azure, and SaaS applications.
  • Apply threat intelligence and current knowledge of adversary techniques to investigative work.
  • Contribute high-quality analysis to cases involving threats such as ransomware and sophisticated or nation-state activity.
  • Share investigative perspectives, technical expertise, and feedback that help strengthen and evolve the incident response practice.
  • Take on incident response assignments for a minimum of several hours per week, according to your availability and the needs of active investigations.
Requirements
  • Professional experience responding to cyber threat activity as an Incident Response consultant, SOC analyst, or in a closely related role.
  • Strong understanding of Windows, macOS, and Linux fundamentals and their relevant forensic artifacts.
  • Experience with digital forensics, business email compromise investigations, and network analysis.
  • Existing knowledge of cloud-native investigations across AWS, GCP, and Azure, or a strong willingness and ability to develop expertise in these areas.
  • Strong investigative mindset with a consistent focus on accuracy, evidence quality, and thorough analysis.
  • Ability to distinguish legitimate user activity from threat actor behavior based on technical evidence and investigative context.
  • Strong curiosity and interest in threat intelligence, emerging attack techniques, and evolving cyber threats.
  • Ability to work independently while contributing effectively to an experienced incident response team.
  • Willingness to bring your perspective and technical voice to help shape investigative practices.
  • Availability of at least a few hours per week to support incident response work.
  • Ability to balance contract incident response work with existing professional commitments, where permitted by your current employer.
Benefits
  • Flexible contract-based engagement designed to accommodate existing professional and personal commitments.
  • Opportunity to work on live incident response investigations without committing to a traditional full-time on-call schedule.
  • Exposure to complex investigations involving ransomware, account compromise, cloud environments, and sophisticated threat activity.
  • Opportunity to work alongside an experienced team of incident response and digital forensics professionals.
  • Continued hands-on exposure to emerging threats, investigative techniques, and cloud-native forensics.
  • Flexible workload that allows you to take on assignments according to your availability and the needs of active cases.
Consigue la evaluación confidencial y gratuita de tu currículum.

o arrastra y suelta tu archivo aquí

Similar jobs

Puestos de trabajo similares que vale la pena comparar

Spain-based Global DFIR Contract Incident Responder
Spain-based Global DFIR Contract Incident Responder

Jobgether SRL • España

Presencial
EUR 83.000 - 138.000
Flexible contract
Live investigations
Cloud exposure
+2
Consultant, Forensics Consulting
Consultant, Forensics Consulting

Control Risks • Madrid

Híbrido
EUR 60.000 - 90.000
Remote Senior Incident Response & Forensics Lead
Remote Senior Incident Response & Forensics Lead

CrowdStrike • España

A distancia
EUR 61.000 - 95.000
Market leading compensation
Comprehensive wellness programs
Paid parental and adoption leaves
+2
Security Operations Analyst (Cyber Defense Operations)
Security Operations Analyst (Cyber Defense Operations)

Pragmatike • España

Híbrido
EUR 42.000 - 62.000
Security Operations Analyst
Security Operations Analyst

United ITS • Valencia

A distancia
EUR 45.000 - 65.000
Cyber Forensics Intern: Incident Response in Madrid
Cyber Forensics Intern: Incident Response in Madrid

FTI Consulting, Inc. • Madrid

Presencial
EUR 8900 - 13.000
Senior Digital Forensics & Incident Response Lead
Senior Digital Forensics & Incident Response Lead

Boehringer Ingelheim • Sant Cugat del Vallès

Presencial
EUR 85.000 - 110.000
Flexible working conditions
Life and accident insurance
Health insurance at a competitiveprice
+2
Incident Response Lead — Hybrid & Flexible Hours
Incident Response Lead — Hybrid & Flexible Hours

RingCentral • Valencia

Híbrido
EUR 90.000 - 120.000
Breakfast in the office
Hybrid work
Medical Insurance
+3
Cyber Forensics Intern: Incident Response & Analysis
Cyber Forensics Intern: Incident Response & Analysis

FTI Consulting Spain, S.L.U. • Madrid

Presencial
EUR 11.000 - 17.000
Cybersecurity incidence response senior analyst (SOC L2/L3) for an international IT Hub
Cybersecurity incidence response senior analyst (SOC L2/L3) for an international IT Hub

Agrupa Global Talent • Barcelona

Presencial
EUR 50.000 - 70.000
Competitive compensation
Health and dental insurance
Lunch vouchers
+1