Incident Response Expert

Sygnia, Inc.

United States

On-site

USD 90,000 - 120,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

Opportunities for career growth
Mentorship from cybersecurity experts
Involvement in high-impact cases

Job summary

Sygnia, Inc. is looking for an Incident Response Expert to join their team in the United States. The role involves leading complex forensic investigations and managing incident response engagements for sophisticated cyberattacks. Candidates should have over 3 years of experience in incident response or digital forensics, a strong understanding of operating systems, and proficiency with industry tools such as EnCase and Splunk. This role offers an opportunity to influence operations and work with top professionals in the field.

Qualifications

  • 3+ years of hands-on experience in incident response, digital forensics, threat hunting, or cyber investigations.
  • Deep technical understanding of operating systems and file systems.
  • Proficiency in network protocols and traffic analysis.

Responsibilities

  • Lead and participate in forensic investigations and incident response engagements.
  • Support response efforts for major cybersecurity incidents.
  • Perform threat hunting activities in client environments.

Skills

Incident response
Digital forensics
Threat hunting
Log analysis
Scripting (Python, PowerShell)

Education

Degree in Computer Science, Information Security, or related field

Tools

EnCase
Wireshark
Splunk

Job description

# Incident Response ExpertUSA### Description**About Sygnia**Sygnia is a premier cyber technology and services company providing high-impact incident response, cyber resilience consulting, and threat hunting for leading organizations across the globe. Trusted by Fortune 100 companies and government entities alike, Sygnia draws its strength from a team of elite professionals with backgrounds in military-grade cyber operations and the global cybersecurity industry.Sygnia is rapidly expanding its presence in the United States, growing our incident response capabilities and client base across key industries. Joining now means playing a formative role in shaping our U.S. operations while benefiting from the backing and expertise of an established global leader.**The Role**We are seeking a highly skilled and motivated **Incident Response Expert** to join our elite global team. In this role, you will lead and participate in complex forensic investigations and incident response engagements involving sophisticated cyberattacks, ransomware events, and nation-state activity. Your expertise will play a critical role in helping Sygnia’s clients understand, contain, and recover from cyber incidents while preserving business continuity and mitigating risk.**What You’ll Do*** Work with a team to conduct end-to-end forensic investigations, including log analysis, host and network forensics, malware triage, and memory analysis.* Support response efforts for major cybersecurity incidents, collaborating closely with internal and external security and IT teams.* Perform threat hunting activities in client environments to detect and eliminate advanced persistent threats.* Identify Indicators of Compromise (IOCs) and attacker Tactics, Techniques, and Procedures (TTPs) using frameworks like MITRE ATT&CK.* Analyze a wide variety of data sources (endpoint, network, SIEM, etc.) to build a clear picture of the attacker’s actions and impact.* Leverage and contribute to Sygnia’s internal investigation tools, playbooks, and threat intelligence platforms.* Communicate investigation results effectively to both technical stakeholders and executive leadership.* Develop and present high-quality technical reports, timelines, and strategic recommendations to clients.* Support the continuous improvement of internal methodologies, tooling, and knowledge sharing within the team.**What We’re Looking For*** **3+ years** of hands-on experience in incident response, digital forensics, threat hunting, or cyber investigations—whether from the private sector, military, or government.* Deep technical understanding of operating systems (Windows, Linux, macOS), file systems, registry and memory structures, and log analysis.* Proficiency in network fundamentals and common protocols (DNS, HTTP/S, SMB, etc.) and network traffic analysis (e.g., PCAP review).* Experience with tools such as EnCase, X-Ways, FTK, Velociraptor, Splunk, or Wireshark, and EDR platforms like CrowdStrike, SentinelOne, or Microsoft Defender.* Competency in scripting or automation (e.g., Python, PowerShell) to support investigations.* Familiarity with cloud environments (AWS, Azure, GCP) and related forensic techniques is a plus.* Excellent written and verbal communication skills; able to clearly convey complex technical topics to diverse audiences.* Strong analytical thinking, attention to detail, and ability to work under pressure in time-sensitive environments.* Willingness to travel.**Bonus Points For*** Industry-recognized certifications (e.g., GCFA, GCIH, GNFA, GCIA, GREM, CISSP).* Experience responding to ransomware, business email compromise (BEC), and advanced threat actor incidents.* Experience presenting findings to legal counsel, regulators, or board-level stakeholders.* Multilingual skills and experience in multinational or cross-cultural environments.* A degree in Computer Science, Information Security, or a related field; or equivalent education or training in cybersecurity**Why Sygnia*** Be part of Sygnia’s continued growth in the U.S., with opportunities to influence how we scale our team, capabilities, and operations in a rapidly expanding market.* Work with some of the best minds in cybersecurity on the world’s most high-impact cases.* Operate in a fast-paced, elite-tier environment where your technical expertise is trusted and valued.* Take part in meaningful, challenging work that directly shapes the outcomes for Fortune 500 organizations.* Grow your career while staying hands-on in incident response and mentoring a highly capable team.
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Incident Response Manager
Incident Response Manager

Sygnia, Inc. • United States

Hybrid
USD 140,000 - 180,000
Incident Response Manager
Incident Response Manager

Sygnia • United States

Hybrid
USD 180,000 - 240,000
Security Operations Center Analyst
Security Operations Center Analyst

Sygnia, Inc. • Austin (TX)

On-site
USD 90,000 - 120,000
Security Operations Center Analyst
Security Operations Center Analyst

Sygnia • Austin (TX)

On-site
USD 80,000 - 110,000
Lead Incident Response & Digital Forensics Engineer
Lead Incident Response & Digital Forensics Engineer

Sygnia, Inc. • United States

On-site
USD 90,000 - 120,000
Opportunities for career growth
Mentorship from cybersecurity experts
Involvement in high-impact cases
Sr SOC and IR Manager (Remote or On Site)
Sr SOC and IR Manager (Remote or On Site)

Crane Co. • Stamford (CT)

Hybrid
USD 130,000 - 160,000
Incident Response Manager
Incident Response Manager

Crowe LLP • United States

On-site
USD 120,000 - 150,000
Incident Response Consultant 3
Incident Response Consultant 3

Sophos • United States

On-site
USD 120,000 - 200,000
Sr. Cyber Defense Analyst
Sr. Cyber Defense Analyst

Patriot Talent Solutions • United States

On-site
USD 120,000 - 190,000
Cyber Defense and Incident Response Analyst
Cyber Defense and Incident Response Analyst

Guardian Life • Holmdel Township (NJ)

Hybrid
USD 95,000 - 157,000
Skill-building opportunities
Flexible work arrangement
Leadership development