International Contract Bench, Incident Response (DFIR)

Lever, Inc.

France

Sur place

EUR 60 000 - 100 000

Temps partiel

Il y a 4 jours
Soyez parmi les premiers à postuler
Générateur de candidature

Transformez ce poste en entretien — un CV et une lettre de motivation conçus selon ce que cet employeur recherche.

Passez les filtres ATS

Avantages offerts par ce poste

Flexible contract-based engagement
Live IR investigations
Exposure to cloud and ransomware cases

Résumé du poste

Lever, Inc. is seeking an International Contract Bench, Incident Response (DFIR) professional based in France. You will support high-impact digital investigations across Windows, macOS, Linux, and cloud environments, handling cases from ransomware to nation-state threats.

This flexible contract role is designed for experts who stay technically engaged without a traditional on-call schedule. You’ll join an experienced team of forensic and incident response specialists, contributing to

Qualifications

  • Professional experience responding to cyber threat activity as an Incident Response consultant, SOC analyst, or in a closely related role.
  • Strong understanding of Windows, macOS, and Linux fundamentals and their relevant forensic artifacts.
  • Experience with digital forensics, business email compromise investigations, and network analysis.
  • Existing knowledge of cloud-native investigations across AWS, GCP, and Azure, or a strong willingness and ability to develop expertise in these areas.
  • Strong investigative mindset with a consistent focus on accuracy, evidence quality, and thorough analysis.
  • Ability to distinguish legitimate user activity from threat actor behavior based on technical evidence and investigative context.
  • Willingness to balance contract incident response work with existing commitments.

Responsabilités

  • Perform incident response and digital forensic investigations involving active threat activity and security breaches.
  • Analyze live response data and forensic artifacts to identify malicious activity, determine attack methods, and support investigations.
  • Investigate Windows, macOS, and Linux environments using appropriate forensic techniques and tooling.
  • Analyze business email compromise (BEC), account takeover, and other identity-related incidents.
  • Conduct network analysis to identify suspicious activity, attacker behavior, and relevant indicators of compromise.
  • Support investigations across cloud-native environments, including AWS, GCP, Azure, and SaaS applications.
  • Apply threat intelligence and current knowledge of adversary techniques to investigative work.
  • Contribute high-quality analysis to cases involving threats such as ransomware and sophisticated or nation-state activity.
  • Share investigative perspectives, technical expertise, and feedback that help strengthen and evolve the incident response practice.
  • Take on incident response assignments for a minimum of several hours per week, according to your availability and the needs of active investigations.

Connaissances

Incident response
SOC analysis
Windows
macOS
Linux
Digital forensics
Network analysis
Cloud investigations
Threat intelligence
Investigative mindset
Independent work

Description du poste

This position is listed on behalf of a partner company, who manages all applications and next steps. Our partner is looking for an International Contract Bench, Incident Response (DFIR) based in France.

As a contract Incident Response professional, you’ll support high-impact digital investigations involving sophisticated cyber threats and real-world security incidents. You’ll join an experienced team of forensic and incident response specialists working across a broad and evolving digital landscape. The role offers the opportunity to investigate live response data, identify malicious activity, and contribute to cases ranging from ransomware to nation-state threats. You’ll apply deep technical expertise across endpoint, network, cloud, and SaaS environments. The flexible contract model is designed for experienced investigators who want to stay technically engaged without committing to a traditional full-time on-call schedule. Your work will expand the team’s capacity to deliver high-quality investigations while fitting around your existing professional and personal commitments.

Accountabilities
  • Perform incident response and digital forensic investigations involving active threat activity and security breaches.
  • Analyze live response data and forensic artifacts to identify malicious activity, determine attack methods, and support investigations.
  • Investigate Windows, macOS, and Linux environments using appropriate forensic techniques and tooling.
  • Analyze business email compromise (BEC), account takeover, and other identity-related incidents.
  • Conduct network analysis to identify suspicious activity, attacker behavior, and relevant indicators of compromise.
  • Support investigations across cloud-native environments, including AWS, GCP, Azure, and SaaS applications.
  • Apply threat intelligence and current knowledge of adversary techniques to investigative work.
  • Contribute high-quality analysis to cases involving threats such as ransomware and sophisticated or nation-state activity.
  • Share investigative perspectives, technical expertise, and feedback that help strengthen and evolve the incident response practice.
  • Take on incident response assignments for a minimum of several hours per week, according to your availability and the needs of active investigations.
Requirements:
  • Professional experience responding to cyber threat activity as an Incident Response consultant, SOC analyst, or in a closely related role.
  • Strong understanding of Windows, macOS, and Linux fundamentals and their relevant forensic artifacts.
  • Experience with digital forensics, business email compromise investigations, and network analysis.
  • Existing knowledge of cloud-native investigations across AWS, GCP, and Azure, or a strong willingness and ability to develop expertise in these areas.
  • Strong investigative mindset with a consistent focus on accuracy, evidence quality, and thorough analysis.
  • Ability to distinguish legitimate user activity from threat actor behavior based on technical evidence and investigative context.
  • Strong curiosity and interest in threat intelligence, emerging attack techniques, and evolving cyber threats.
  • Ability to work independently while contributing effectively to an experienced incident response team.
  • Willingness to bring your perspective and technical voice to help shape investigative practices.
  • Availability of at least a few hours per week to support incident response work.
  • Ability to balance contract incident response work with existing professional commitments, where permitted by your current employer.
Benefits:
  • Flexible contract-based engagement designed to accommodate existing professional and personal commitments.
  • Opportunity to work on live incident response investigations without committing to a traditional full-time on-call schedule.
  • Exposure to complex investigations involving ransomware, account compromise, cloud environments, and sophisticated threat activity.
  • Opportunity to work alongside an experienced team of incident response and digital forensics professionals.
  • Continued hands-on exposure to emerging threats, investigative techniques, and cloud-native forensics.
  • Flexible workload that allows you to take on assignments according to your availability and the needs of active cases.

We appreciate your interest and wish you the best!

#LI-CL1

Obtenez votre examen gratuit et confidentiel de votre CV.

ou faites glisser et déposez votre fichier ici.

Similar jobs

Postes similaires à comparer

International Contract Bench, Incident Response (DFIR)
International Contract Bench, Incident Response (DFIR)

Jobgether SRL • France

Sur place
EUR 111 000 - 221 000
Flexible contract-based engagement
Live IR investigations
Cloud-native forensics exposure
Global Contract Incident Responder (DFIR) - Flexible Hours
Global Contract Incident Responder (DFIR) - Flexible Hours

Jobgether SRL • France

Sur place
EUR 111 000 - 221 000
Flexible contract-based engagement
Live IR investigations
Cloud-native forensics exposure
France-Based Contract DFIR Incident Responder
France-Based Contract DFIR Incident Responder

Lever, Inc. • France

Sur place
EUR 60 000 - 100 000
Flexible contract-based engagement
Live IR investigations
Exposure to cloud and ransomware cases
Analyste DFIR / Incident Response (H/F) – Paris
Analyste DFIR / Incident Response (H/F) – Paris

Informatis-TS • Saint-Denis

Sur place
EUR 55 000 - 85 000
Analyste Forensique Cyber Expérimenté(e) – Réponse à Incident (Digital Forensics and Incident R[...]
Analyste Forensique Cyber Expérimenté(e) – Réponse à Incident (Digital Forensics and Incident R[...]

Sopra Steria • Occitanie

Sur place
EUR 45 000 - 60 000
Mutuelle
CSE
Titres restaurants
+2
Analyste DFIR / Incident Response (H/F)
Analyste DFIR / Incident Response (H/F)

Informatis-TS • Paris

Sur place
EUR 70 000 - 95 000
Analyste DFIR / Incident Response (H/F)
Analyste DFIR / Incident Response (H/F)

Global Experts Consulting • Paris

Sur place
EUR 70 000 - 95 000
CyberSecurity Engineer, Incident Response Lead
CyberSecurity Engineer, Incident Response Lead

Mistral • Paris

Sur place
EUR 90 000 - 150 000
Health insurance
Transportation allowance
Sport allowance
+3
Incident Operations Lead
Incident Operations Lead

Jobgether • France

Sur place
EUR 120 000 - 190 000
Stock options
Health benefits
One-time USD 500 home-office setup
+1
Analyste DFIR Senior (H/F)
Analyste DFIR Senior (H/F)

Lexfo • Paris

Sur place
EUR 90 000 - 125 000