Senior Incident Responder – Remote Forensics Lead

SOClogix

Catonsville (MD)

Hybrid

USD 100,000 - 145,000

Full time

23 hours ago
Be an early applicant
Application generator

Stand out for this role — generate a tailored resume and cover letter in about a minute.

Get past ATS filters

Benefits offered by this job

Health, dental, and vision insurance
401(k) with company match
Unlimited PTO
Annual certification and training

Job summary

SOClogix, Inc. is seeking an experienced Incident Responder to lead cyber incident investigations for managed security clients.

You will triage, contain, eradicate, and recover from breaches while coordinating with client IT teams, legal, insurers, and law enforcement as needed. Your work includes digital forensics across endpoints, servers, cloud environments, and network infrastructure, with malware and memory analysis to define scope and impact.

Qualifications

  • 3+ years in incident response, forensics, or security operations.
  • Hands-on with forensic tools: Velociraptor, KAPE, FTK, Autopsy, X-Ways or similar.
  • Strong knowledge of Windows/Linux forensic artifacts and event logs.
  • Experience with SIEM (OpenSearch, Splunk, Sentinel) and EDR (LimaCharlie, CrowdStrike, SentinelOne).
  • Understanding of MITRE ATT&CK and applying it to investigations.
  • Excellent written and verbal communication, capable of briefing executives.

Responsibilities

  • Lead incident response engagements from triage to remediation and post-incident review.
  • Perform digital forensics across endpoints, servers, cloud, and network.
  • Analyze malware, memory, and logs to determine scope and impact.
  • Contain active threats including ransomware, BEC, data exfiltration, insider threats.
  • Prepare incident reports with timelines, findings, and remediation recommendations.
  • Coordinate with client IT, legal, insurers, and law enforcement as needed.
  • Develop incident response playbooks, runbooks, and escalation procedures.
  • Contribute to post-incident lessons learned and security posture improvements.
  • Support on-call rotation for 24/7 incident response.

Skills

Incident response
Digital forensics
Security operations
Forensic tooling
OpenSearch
Splunk
EDR tooling
MITRE ATT&CK
Executive briefing

Education

GCIH/GCFA/GCFE/GREM/EnCE

Tools

Velociraptor
KAPE
FTK
Autopsy
X-Ways
OpenSearch
Splunk
LimaCharlie
CrowdStrike
SentinelOne
Azure AD
M365
AWS CloudTrail

Job description

SOClogix, Inc. is seeking an experienced Incident Responder to lead cyber incident investigations for managed security clients.

You will triage, contain, eradicate, and recover from breaches while coordinating with client IT teams, legal, insurers, and law enforcement as needed. Your work includes digital forensics across endpoints, servers, cloud environments, and network infrastructure, with malware and memory analysis to define scope and impact.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Remote Senior Incident Response Consultant - Forensics Lead
Remote Senior Incident Response Consultant - Forensics Lead

Forensic Focus • Town of Texas (WI), Northern (KY)

Hybrid
USD 123,000 - 179,000
Incident Responder
Incident Responder

SOClogix • Catonsville (MD)

Hybrid
USD 100,000 - 145,000
Health, dental, and vision insurance
401(k) with company match
Unlimited PTO
+1
Remote Senior Incident Responder: Executive Cyber Defense
Remote Senior Incident Responder: Executive Cyber Defense

BlackCloak • United States

Remote
USD 105,000 - 115,000
Remote work USA
Medical benefits
401k with match
+4
Senior DFIR Incident Response Lead
Senior DFIR Incident Response Lead

Forensic Focus Limited • New York (NY), Northern (KY)

Hybrid
USD 140,000 - 190,000
Senior Incident Response Engineer — Remote
Senior Incident Response Engineer — Remote

RELX International • United States

Remote
USD 78,000 - 142,000
Annual incentive bonus
Senior Incident Response Lead — Cloud & Forensics
Senior Incident Response Lead — Cloud & Forensics

Forensic Focus • Georgia

Hybrid
USD 123,000 - 179,000
Senior Incident Response Analyst - DFIR Specialist
Senior Incident Response Analyst - DFIR Specialist

OpenLoop • United States

On-site
USD 140,000 - 190,000
Medical, Dental, and Vision plans
Flexible PTO
401(k) + Company Match
+2
Senior DFIR Incident Response Lead — Remote
Senior DFIR Incident Response Lead — Remote

Palo Alto Networks • United States

Remote
USD 136,000 - 187,000
Senior SOC & Incident Response Lead (Hybrid Remote)
Senior SOC & Incident Response Lead (Hybrid Remote)

Layer8security • Northern (KY)

Hybrid
USD 120,000 - 190,000
Medical insurance
Life insurance
Unlimited vacation
+2
Senior SOC Lead & Incident Response Engineer (Remote)
Senior SOC Lead & Incident Response Engineer (Remote)

STIG • United States

Remote
USD 80,000 - 120,000
Comprehensive medical, dental, and vision coverage
401(k) with company match
Certification reimbursement
+2