Digital Forensics and Incident Response Specialist

Red Alpha Cybersecurity

Singapore

On-site

SGD 90,000 - 130,000

Full time

14 days+
Application generator

Turn this role into an interview — a resume and cover letter built around what this employer wants.

Get past ATS filters

Job summary

Red Alpha Cybersecurity is seeking a seasoned Incident Response Specialist to lead investigations of security incidents, collect and analyse evidence, coordinate containment, and guide restoration of operations across cloud and on-prem environments.

The role requires hands-on forensic tooling, knowledge of SIEM and EDR, and the ability to communicate findings clearly to technical and non-technical stakeholders.

Qualifications

  • GCFA or GCIH or equivalent certification.
  • 3+ years of experience in incident response, digital forensics, or related cybersecurity disciplines.
  • Hands-on experience with digital forensics tools.
  • Familiarity with Windows, Linux, and cloud environments.
  • Knowledge of SIEM, EDR/endpoint security tools, log aggregation, threat intelligence feeds.
  • Excellent written and verbal communication skills; able to explain findings to technical and non-technical stakeholders.
  • Familiarity with incident response frameworks (NIST, SANS, ISO, MITRE ATT&CK).
  • Commensurate with experience and qualifications.

Responsibilities

  • Coordinate all stages of incident response: detection, triage, containment, eradication, recovery, and post-incident review.
  • Conduct digital forensic investigations: acquisition, preservation, analysis, and reporting of evidence.
  • Develop and maintain forensic readiness and incident response playbooks, procedures, and guidance.
  • Maintain logs and case documentation in compliance with regulatory requirements.
  • Support threat hunting and proactive detection.

Skills

Incident response
Digital forensics
Communication skills

Tools

Digital forensics tools
SIEM tools
EDR tools

Job description

This specialist leads the response when security incidents occur, acting as a digital detective to investigate incidents. They collect and analyse evidence from compromised systems, coordinate containment efforts, and help restore normal operations. The role involves examining digital evidence and preparing detailed incident reports for management.

Core Responsibilities:
  • Coordinate all stages of incident response: detection, triage, containment, eradication, recovery, and post-incident review;
  • Conduct digital forensic investigations, including acquisition, preservation, analysis, and reporting of evidence from systems, networks, endpoints as required;
  • Develop, maintain, and execute forensic readiness and incident response plans, playbooks, procedures, and standard operating guidelines;
  • Maintain logs and case documentation in compliance with regulatory requirements; and
  • Support threat hunting and proactive detection.
Core Requirements:
  • GIAC Certified Forensic Analyst (GCFA) or GIAC Certified Incident Handler (GCIH) or other recognised digital forensics or incident response certifications;
  • A minimum of THREE (3) years of experience in cybersecurity incident response, digital forensics, or cybersecuritydisciplines;
  • Hands-on experience with digital forensics tools;
  • Familiarity with Windows, Linux, and cloud environments;
  • Understanding of SIEM, EDR/endpoint security tools, log aggregation, threat intelligence feeds;
  • Excellent written and verbal communication skills, with ability to explain technical findings to both technical and non-technical stakeholders; and
  • Familiarity with incident response frameworks (NIST, SANS, ISO, MITRE ATT&CK)
  • Commensurate with experience and qualification

By submitting your application for this position, you consent to the collection, use, and disclosure of your personal data by RED ALPHA CYBERSECURITY for the purpose of i) employment facilitation and ii) data and statistical analysis. You may find out more information on the PDPA policies at https://www.redalphacyber.com/privacy-policy.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Digital Forensics Incident Responder
Digital Forensics Incident Responder

SCIENTE • Singapore

On-site
SGD 60,000 - 90,000
Incident Response & Digital Forensics Lead
Incident Response & Digital Forensics Lead

Red Alpha Cybersecurity • Singapore

On-site
SGD 90,000 - 130,000
Cybersecurity Engineer – Incident Response
Cybersecurity Engineer – Incident Response

Jobtailor • Singapore

Hybrid
SGD 90,000 - 140,000
Digital Forensics Incident Responder (JD#11265)
Digital Forensics Incident Responder (JD#11265)

SCIENTE INTERNATIONAL PTE. LTD. • Singapore

On-site
SGD 90,000 - 130,000
Cybersecurity Consultant / Senior Cybersecurity Consultant (DFIR)
Cybersecurity Consultant / Senior Cybersecurity Consultant (DFIR)

Cyber Security Agency of Singapore (CSA) • Singapore

On-site
SGD 70,000 - 100,000
Cybersecurity Consultant / Senior Cybersecurity Consultant (DFIR), NCIRC
Cybersecurity Consultant / Senior Cybersecurity Consultant (DFIR), NCIRC

Cyber Security Agency of Singapore (CSA) • Singapore

On-site
SGD 90,000 - 150,000
Lead Cyber Security Specialist (Digital Forensics)
Lead Cyber Security Specialist (Digital Forensics)

Forensic Focus Limited • Singapore

On-site
SGD 120,000 - 180,000
Senior Specialist, Incident Response
Senior Specialist, Incident Response

Forensic Focus Limited • Singapore

On-site
SGD 90,000 - 130,000
Digitial Forensic Incident Responder, Threat Intelligence & Repsonse Division
Digitial Forensic Incident Responder, Threat Intelligence & Repsonse Division

Forensic Focus Limited • Singapore

On-site
SGD 110,000 - 170,000
Digitial Forensic Incident Responder, Threat Intelligence & Repsonse Division
Digitial Forensic Incident Responder, Threat Intelligence & Repsonse Division

Public Service Division • Singapore

On-site
SGD 90,000 - 150,000