MENU
  • Remote Jobs
  • Companies
  • Go Premium
  • Job Alerts
  • Post a Job
  • Log in
  • Sign up
Working Nomads logo Working Nomads
  • Remote Jobs
  • Companies
  • Post Jobs
  • Go Premium
  • Get Free Job Alerts
  • Log in

Principal Consultant - Digital Forensics and Incident Response

DirectDefense

Full-time
USA
$132k-$165k per year
infosec
security
computer science
history
partnerships
The job listing has expired. Unfortunately, the hiring company is no longer accepting new applications.

To see similar active jobs please follow this link: Remote Development jobs

DirectDefense is seeking a Principal Consultant for our Digital Forensics and Incident Response team. In this role, you will serve as a technical forensic and consulting authority representing DirectDefense to clients from various sectors during critical incident responses. With your rich experience and technical expertise, you will be essential in identifying and analyzing intrusions, providing clear direction to clients under pressure, and offering after-hours assistance when needed. We are seeking someone with experience in a client-facing capacity who performs advanced forensic analyses and has a strong history of independently handling investigations of diverse sizes and complexities. As someone dedicated to ongoing learning, you will actively pursue opportunities to broaden your knowledge, enhancing the team's overall expertise. Alongside your technical abilities, you will guide forensic engagements and effectively balance multiple priorities. Your commitment to delivering high-quality results will allow you to mentor peers and adeptly navigate the ever-changing security incident landscape, reflecting a thorough understanding of the advancing threat environment.

Responsibilities:

  • Demonstrate genuine curiosity and a commitment to continuous learning and contribute valuable insights to support the team's knowledge growth.

  • Forensically lead incident response engagements, working with other team members to guide clients through the entire incident response lifecycle from detection to recovery.

  • Conduct advanced forensic analysis to identify the scope and impact of security incidents meticulously and precisely, including malware analysis and reverse engineering when necessary.

  • Independently manage investigations in size and complexity, such as Business Email Compromises and Ransomware engagements.

  • Provide career mentorship for aspiring SOC analysts interested in DFIR by investing in their professional development and providing enablement, guidance, and recommendations on training opportunities.

  • Identify, articulate, and explain attack vectors, threat tactics, and attacker techniques to guide mitigation and prevention efforts.

  • Convey complex forensic findings to technical and non-technical stakeholders clearly and understandably.

  • Provide comprehensive supporting evidence for written reports detailing incident findings and analysis.

  • Review, provide well-thought-out input, and guide other team members on forensic reports.

  • Collaborate with internal teams, external partners, and clients to refine and document incident response processes and best practices.

  • Spearhead research and development activities to stay updated with the latest forensic tools, techniques, and methodologies.

  • Contribute to the development of internal processes and support broader organizational initiatives.

  • Provide after-hours (on-call/weekend rotational) support to address critical incidents and maintain continuous coverage.

Qualifications:

  • Bachelor's degree in Cybersecurity, Computer Science, Information Technology, related degree, industry certifications, or former professional experience as a Senior or Principal SOC Analyst, Senior or Principal Cybersecurity Consultant, or Senior or Principal Incident Responder.

  • Hold industry certifications or showcase equivalent professional experience as a Senior or Principal Consultant, highlighting a profound mastery of Digital Forensics and Incident Response.

  • Previous experience in leading the forensic workstreams and on teams ranging from 3-4 in size on complex investigations.

  • Demonstrate advanced proficiency in utilizing common digital forensic artifacts and tools such as ELK, Axiom, Encase, FTK (Forensic Toolkit), Open-Source, or comparable industry-standard tools.

  • Showcase professional experience in effectively using network analysis and intrusion detection tools, exemplifying a deep understanding of their application in cybersecurity.

  • Possess in-depth knowledge of cybersecurity principles and best practices, underlining a comprehensive understanding of the intricacies of the cybersecurity landscape.

  • Exhibit excellent problem-solving skills and meticulous attention to detail, displaying an ability to navigate complex challenges precisely and thoroughly.

  • Demonstrate the ability to work effectively under pressure, manage multiple competing priorities, and consistently meet tight deadlines, reflecting resilience and efficiency in high-stakes scenarios.

  • Display exceptional communication skills, both written and verbal, ensuring the ability to convey complex technical information clearly and comprehensively.

  • Express eagerness to mentor, share knowledge, and actively contribute to expanding the team's expertise, fostering a collaborative and growth-oriented environment.

  • Exhibit the capability to provide after-hours (on-call/weekend rotational) support as required, demonstrating a commitment to addressing critical incidents promptly and maintaining continuous coverage.

Application Instructions: To apply, please submit your resume and cover letter through our online application portal. Applications will be reviewed on a rolling basis until the position is filled.

Salary range: $132,000 - $165,000 + 10% Annual Bonus

Benefits include:

  • 401(k)

  • AD&D Insurance

  • Dental Insurance

  • Disability insurance

  • Health insurance

  • Life insurance

  • Vision insurance

  • Flex PTO program

  • Paid certification and continuing education

Work schedule: Monday through Friday

Work hours: 40 hours a week

A little about DirectDefense

Since coming together in 2011 to form DirectDefense, our team has been committed to offering Cybersecurity defense strategies that are unmatched in the industry. Whether we are performing assessments of networks, platforms, and applications or applying managed services to improve your organization’s security posture, we are focused on providing world-class services that don’t just work–they work for you.

OUR MISSION

We establish partnerships with our clients based on trust and results. We leverage our deep industry knowledge and expertise to identify and remediate blind spots in your security program, provide meaningful visibility of your entire enterprise, and align your organization with security best practices and compliance standards.

OUR VISION

We aim to secure organizations across all industries against advanced threats and attacks in today’s world. Acting in partnership with organizations, we will provide unmatched information security services designed to improve your overall security posture, close gaps, and track vulnerabilities continuously through continued education and support.

EEO Commitment

We’re an equal employment opportunity/affirmative action employer that empowers our people to drive change fearlessly – no matter their race, color, ethnicity, religion, sex (including pregnancy, childbirth, lactation, or related medical conditions), national origin, ancestry, age, marital status, sexual orientation, gender identity and expression, disability, veteran status, military or uniformed service member status, genetic information, or any other status protected by applicable federal, state, local, or international law.

As Colorado law requires under the Equal Pay for Equal Work Act, DirectDefense provides a reasonable compensation range for roles that may be hired in Colorado. Actual compensation is influenced by a wide array of factors, including but not limited to skill set, level of experience, and specific office location. For the state of Colorado only, the range of starting pay for this role is $132,000 - $165,000 per year with an annual bonus.

About the job

Full-time
USA
$132k-$165k per year
11 Applicants
Posted 3 months ago
infosec
security
computer science
history
partnerships
Enhancv advertisement

30,000+
REMOTE JOBS

Unlock access to our database and
kickstart your remote career
Join Premium

Principal Consultant - Digital Forensics and Incident Response

DirectDefense
The job listing has expired. Unfortunately, the hiring company is no longer accepting new applications.

To see similar active jobs please follow this link: Remote Development jobs

DirectDefense is seeking a Principal Consultant for our Digital Forensics and Incident Response team. In this role, you will serve as a technical forensic and consulting authority representing DirectDefense to clients from various sectors during critical incident responses. With your rich experience and technical expertise, you will be essential in identifying and analyzing intrusions, providing clear direction to clients under pressure, and offering after-hours assistance when needed. We are seeking someone with experience in a client-facing capacity who performs advanced forensic analyses and has a strong history of independently handling investigations of diverse sizes and complexities. As someone dedicated to ongoing learning, you will actively pursue opportunities to broaden your knowledge, enhancing the team's overall expertise. Alongside your technical abilities, you will guide forensic engagements and effectively balance multiple priorities. Your commitment to delivering high-quality results will allow you to mentor peers and adeptly navigate the ever-changing security incident landscape, reflecting a thorough understanding of the advancing threat environment.

Responsibilities:

  • Demonstrate genuine curiosity and a commitment to continuous learning and contribute valuable insights to support the team's knowledge growth.

  • Forensically lead incident response engagements, working with other team members to guide clients through the entire incident response lifecycle from detection to recovery.

  • Conduct advanced forensic analysis to identify the scope and impact of security incidents meticulously and precisely, including malware analysis and reverse engineering when necessary.

  • Independently manage investigations in size and complexity, such as Business Email Compromises and Ransomware engagements.

  • Provide career mentorship for aspiring SOC analysts interested in DFIR by investing in their professional development and providing enablement, guidance, and recommendations on training opportunities.

  • Identify, articulate, and explain attack vectors, threat tactics, and attacker techniques to guide mitigation and prevention efforts.

  • Convey complex forensic findings to technical and non-technical stakeholders clearly and understandably.

  • Provide comprehensive supporting evidence for written reports detailing incident findings and analysis.

  • Review, provide well-thought-out input, and guide other team members on forensic reports.

  • Collaborate with internal teams, external partners, and clients to refine and document incident response processes and best practices.

  • Spearhead research and development activities to stay updated with the latest forensic tools, techniques, and methodologies.

  • Contribute to the development of internal processes and support broader organizational initiatives.

  • Provide after-hours (on-call/weekend rotational) support to address critical incidents and maintain continuous coverage.

Qualifications:

  • Bachelor's degree in Cybersecurity, Computer Science, Information Technology, related degree, industry certifications, or former professional experience as a Senior or Principal SOC Analyst, Senior or Principal Cybersecurity Consultant, or Senior or Principal Incident Responder.

  • Hold industry certifications or showcase equivalent professional experience as a Senior or Principal Consultant, highlighting a profound mastery of Digital Forensics and Incident Response.

  • Previous experience in leading the forensic workstreams and on teams ranging from 3-4 in size on complex investigations.

  • Demonstrate advanced proficiency in utilizing common digital forensic artifacts and tools such as ELK, Axiom, Encase, FTK (Forensic Toolkit), Open-Source, or comparable industry-standard tools.

  • Showcase professional experience in effectively using network analysis and intrusion detection tools, exemplifying a deep understanding of their application in cybersecurity.

  • Possess in-depth knowledge of cybersecurity principles and best practices, underlining a comprehensive understanding of the intricacies of the cybersecurity landscape.

  • Exhibit excellent problem-solving skills and meticulous attention to detail, displaying an ability to navigate complex challenges precisely and thoroughly.

  • Demonstrate the ability to work effectively under pressure, manage multiple competing priorities, and consistently meet tight deadlines, reflecting resilience and efficiency in high-stakes scenarios.

  • Display exceptional communication skills, both written and verbal, ensuring the ability to convey complex technical information clearly and comprehensively.

  • Express eagerness to mentor, share knowledge, and actively contribute to expanding the team's expertise, fostering a collaborative and growth-oriented environment.

  • Exhibit the capability to provide after-hours (on-call/weekend rotational) support as required, demonstrating a commitment to addressing critical incidents promptly and maintaining continuous coverage.

Application Instructions: To apply, please submit your resume and cover letter through our online application portal. Applications will be reviewed on a rolling basis until the position is filled.

Salary range: $132,000 - $165,000 + 10% Annual Bonus

Benefits include:

  • 401(k)

  • AD&D Insurance

  • Dental Insurance

  • Disability insurance

  • Health insurance

  • Life insurance

  • Vision insurance

  • Flex PTO program

  • Paid certification and continuing education

Work schedule: Monday through Friday

Work hours: 40 hours a week

A little about DirectDefense

Since coming together in 2011 to form DirectDefense, our team has been committed to offering Cybersecurity defense strategies that are unmatched in the industry. Whether we are performing assessments of networks, platforms, and applications or applying managed services to improve your organization’s security posture, we are focused on providing world-class services that don’t just work–they work for you.

OUR MISSION

We establish partnerships with our clients based on trust and results. We leverage our deep industry knowledge and expertise to identify and remediate blind spots in your security program, provide meaningful visibility of your entire enterprise, and align your organization with security best practices and compliance standards.

OUR VISION

We aim to secure organizations across all industries against advanced threats and attacks in today’s world. Acting in partnership with organizations, we will provide unmatched information security services designed to improve your overall security posture, close gaps, and track vulnerabilities continuously through continued education and support.

EEO Commitment

We’re an equal employment opportunity/affirmative action employer that empowers our people to drive change fearlessly – no matter their race, color, ethnicity, religion, sex (including pregnancy, childbirth, lactation, or related medical conditions), national origin, ancestry, age, marital status, sexual orientation, gender identity and expression, disability, veteran status, military or uniformed service member status, genetic information, or any other status protected by applicable federal, state, local, or international law.

As Colorado law requires under the Equal Pay for Equal Work Act, DirectDefense provides a reasonable compensation range for roles that may be hired in Colorado. Actual compensation is influenced by a wide array of factors, including but not limited to skill set, level of experience, and specific office location. For the state of Colorado only, the range of starting pay for this role is $132,000 - $165,000 per year with an annual bonus.

Working Nomads

Post Jobs
Premium Subscription
Sponsorship
Free Job Alerts

Job Skills
API
FAQ
Privacy policy
Terms and conditions
Contact us
About us

Jobs by Category

Remote Administration jobs
Remote Consulting jobs
Remote Customer Success jobs
Remote Development jobs
Remote Design jobs
Remote Education jobs
Remote Finance jobs
Remote Legal jobs
Remote Healthcare jobs
Remote Human Resources jobs
Remote Management jobs
Remote Marketing jobs
Remote Sales jobs
Remote System Administration jobs
Remote Writing jobs

Jobs by Position Type

Remote Full-time jobs
Remote Part-time jobs
Remote Contract jobs

Jobs by Region

Remote jobs Anywhere
Remote jobs North America
Remote jobs Latin America
Remote jobs Europe
Remote jobs Middle East
Remote jobs Africa
Remote jobs APAC

Jobs by Skill

Remote Accounting jobs
Remote Assistant jobs
Remote Copywriting jobs
Remote Cyber Security jobs
Remote Data Analyst jobs
Remote Data Entry jobs
Remote English jobs
Remote Spanish jobs
Remote Project Management jobs
Remote QA jobs
Remote SEO jobs

Jobs by Country

Remote jobs Australia
Remote jobs Argentina
Remote jobs Brazil
Remote jobs Canada
Remote jobs Colombia
Remote jobs France
Remote jobs Germany
Remote jobs Ireland
Remote jobs India
Remote jobs Japan
Remote jobs Mexico
Remote jobs Netherlands
Remote jobs New Zealand
Remote jobs Philippines
Remote jobs Poland
Remote jobs Portugal
Remote jobs Singapore
Remote jobs Spain
Remote jobs UK
Remote jobs USA


Working Nomads curates remote digital jobs from around the web.

© 2025 Working Nomads.