Incident Response & Digital Forensics Analyst

IBM

Austin (TX)

On-site

USD 110,000 - 160,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

IBM is seeking an Incident Response Forensic Analyst to support investigations of cybersecurity incidents across the Americas, based in Austin, TX. The role combines incident response, digital forensics, and threat analysis to preserve evidence, drive containment, and support remediation efforts.

You will work with responders, threat detection teams, and leadership to translate technical findings into actionable insights, enabling rapid decision-making in high-pressure environments.

Qualifications

  • 3-5 years of experience in Incident Response, SOC and/or Digital Forensics in a global corporate environment
  • Strong digital forensics expertise across endpoints, systems, and network artifacts; experience with industry-standard tools (e.g., EnCase, FTK, Autopsy)
  • Ability to collect, preserve, and analyze evidence while maintaining chain of custody and audit readiness
  • Strong investigative and analytical skills, including correlation of logs, endpoint, and network data to determine root cause and reconstruct timelines
  • Experience operating within incident response workflows and using EDR, SIEM, and detection platforms in active incident environments
  • Understanding of attacker TTPs, with exposure to malware analysis or memory forensics preferred
  • Analysis using EDR tooling such as Crowdstrike or Microsoft Defender for Endpoint (MDE)
  • Basic scripting/automation skills (e.g., Python, PowerShell) are a plus
  • Strong understanding of Windows, Mac, and Linux operating systems
  • Solid working knowledge of networking topology, technology and tools, such as firewalls, proxies, IDS/IPS, EDR

Responsibilities

  • Conduct forensic investigations on endpoint, network, and cloud environments
  • Collect, preserve, and analyze digital evidence in accordance with established standards
  • Support incident response activities, including triage, containment, eradication, and recovery
  • Correlate forensic evidence with threat intelligence and detection signals
  • Ability to analyze disk images, logs, and recovered data
  • Reconstruct attack timelines and identify root cause and impact
  • Document findings and produce clear, defensible reports for technical and non-technical stakeholders
  • Collaborate across CSIRT, SOC, Legal, and Compliance teams as needed
  • Contribute to post-incident reviews and continuous improvement of response capabilities

Skills

Incident Response
Digital Forensics
SOC Experience
EDR/SIEM
PowerShell
Python
OS Knowledge
Networking

Education

Bachelor's Degree

Tools

EnCase
FTK
Autopsy
ELK
SIFT
X-Ways
Axiom

Job description

IBM is seeking an Incident Response Forensic Analyst to support investigations of cybersecurity incidents across the Americas, based in Austin, TX. The role combines incident response, digital forensics, and threat analysis to preserve evidence, drive containment, and support remediation efforts.

You will work with responders, threat detection teams, and leadership to translate technical findings into actionable insights, enabling rapid decision-making in high-pressure environments.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

IBM CISO - Cybersecurity Forensic Analyst
IBM CISO - Cybersecurity Forensic Analyst

IBM • Austin (TX)

On-site
USD 110,000 - 160,000
Cyber Incident Response Associate Consultant
Cyber Incident Response Associate Consultant

IBM • Austin (TX)

On-site
USD 76,000 - 114,000
Cyber Incident Response & Forensics Expert
Cyber Incident Response & Forensics Expert

Fairweather, LLC • Austin (TX)

On-site
USD 110,000 - 150,000
Global Cyber Incident Response Associate
Global Cyber Incident Response Associate

IBM • Herndon (VA)

On-site
USD 76,000 - 116,000
Healthcare benefits
401(k) and IBM Stock Purchase Plan
Paid time off and holidays
Cyber Incident Response Analyst at 3B Staffing LLC Austin, TX
Cyber Incident Response Analyst at 3B Staffing LLC Austin, TX

Fairweather, LLC • Austin (TX)

On-site
USD 110,000 - 150,000
Senior Digital Forensics & Incident Response Analyst
Senior Digital Forensics & Incident Response Analyst

Agile Defense • Washington

On-site
USD 120,000 - 160,000
Cybersecurity Analyst - Threat Detection & IR
Cybersecurity Analyst - Threat Detection & IR

Declari • Austin (TX)

On-site
Health, dental, and vision coverage
Paid certifications (CISSP, CISM, CEH)
Competitive salary + annual bonus
+2
Digital Forensics & Incident Response Specialist
Digital Forensics & Incident Response Specialist

ALLTECH CONSULTING SVC INC • Troy (MI)

On-site
USD 60,000 - 110,000
Cybersecurity Forensics Consultant & Incident Response
Cybersecurity Forensics Consultant & Incident Response

Charles River Associates • Houston (TX)

Hybrid
USD 100,000 - 127,000
Data Security Analyst II: Incident Response & Threat Intel
Data Security Analyst II: Incident Response & Threat Intel

Ampcus, Inc • Austin (TX)

On-site
USD 42,000 - 54,000