Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Forensic and Incident Response Engineer

$135k - $216k

Peraton

Responsibilities

**Position is Contingent Upon Award**

Peraton seeks innovative professionals who thrive in mission-critical environments and are passionate about protecting our national critical infrastructure. This is your chance to make an impact on one of the nation's vital organizations, working alongside leaders in cybersecurity engineering, operations, forensics, threat analysis, data science, and systems integration.

Join Peraton in supporting a large critical infrastructure operator to defend its corporate and operations networks from nation-state attacks, ensure the confidentiality, integrity, and availability of its systems and operations infrastructure, and comply with federal and industry cybersecurity regulation. As a forensic and incident response engineer working alongside a state of the art 24-hour Cybersecurity Operations Center (CSOC), you will be responsible for detecting, investigating, and responding to cybersecurity incidents while preserving evidence and supporting root-cause analysis. This role leads technical incident response activities, conducts digital forensic analysis, and improves organizational readiness against cyber threats.

Primary Responsibilities:

The Forensic and Incident Response Engineer will be responsible to:
  • Lead technical response to security incidents, including containment, eradication, and recovery
  • Perform digital forensic analysis on endpoints, servers, applications, network traffic, and cloud environments using forensically sound procedures to identify network / computer intrusion evidence and identifies perpetrators
  • Examine any electronic device that may hold evidence that could be used in a court of law and
  • Gather, handle and store evidence.
  • Perform a variety of forensic and electronic discovery services, including digital evidence preservation, forensic analysis, data recovery, tape recovery, electronic mail extraction, and database examination
  • Collect, preserve, and analyze evidence in accordance with forensic best practices and legal requirements observing proper evidence custody and control procedures, document procedure and findings in a manner suitable for courtroom presentation and prepare comprehensive written notes and reports.
  • Investigate malware, intrusions, unauthorized access, and data infiltration and exfiltration events
  • Analyze logs, memory, disk images, and network captures to determine attack scope and impact
  • Develop timelines, root-cause analysis, and incident reports for both technical and executive audiences
  • Support threat hunting and detection engineering efforts using forensic findings
  • Collaborate with the CSOC, engineering, legal, and compliance teams during incidents
  • Participate in on-call or surge incident response rotations
Additional Responsibilities:
  • Assist with development and maintenance of incident response playbooks and procedures
  • Support security tooling evaluations and forensic lab improvements
  • Participate in tabletop exercises and readiness testing
  • Contribute to security awareness or training efforts using incident lessons learned
  • Maintain forensic documentation, case notes, and evidence records
#PLABS26

Qualifications

Required:
  • U.S. Citizenship Required
  • Must have the ability to obtain / maintain a DOE L Level or DOE Secret clearance
  • Degree in computer science, engineering, cybersecurity, information technology, digital forensics, homeland security, or related field
  • Minimum of 12 years with BS/BA; Minimum of 10 years with MS/MA; Minimum of 7 years with Ph.D.
  • Experience in cybersecurity, incident response, or digital forensics
  • Strong analytical and problem-solving skills
  • Ability to explain complex findings to non-technical stakeholders
  • High integrity and discretion, with strict adherence to evidence handling and chain of custody requirements.
  • Proficiency with industry-standard forensic and Incident Response tools
  • Proficiency of TCP/UDP packet capture and analysis
  • Strong experience in incident response methodologies and lifecycle management
  • Hands-on digital forensics experience across a variety of industry-standard operating systems
  • Ability to work effectively during high-stress incidents
  • Understanding of industry cybersecurity standards such as FISMA, NIST 800 series, ISO 27001 and regulatory compliance requirements
  • Familiarity with MITRE ATT&CK framework
Desired:
  • Hold technical and/or cybersecurity certification such as GIAC GSEC, GIAC GCIH, CISA SSCP, CompTIA Security+
  • A master's degree in computer science, engineering, cybersecurity, information technology, or related field
  • Demonstrated experience leading or owning incident investigations
  • Hands-on experience reverse-engineering malware

Peraton Overview

Peraton is a next-generation national security company that drives missions of consequence spanning the globe and extending to the farthest reaches of the galaxy. As the world's leading mission capability integrator and transformative enterprise IT provider, we deliver trusted, highly differentiated solutions and technologies to protect our nation and allies. Peraton operates at the critical nexus between traditional and nontraditional threats across all domains: land, sea, space, air, and cyberspace. The company serves as a valued partner to essential government agencies and supports every branch of the U.S. armed forces. Each day, our employees do the can't be done by solving the most daunting challenges facing our customers. Visit peraton.com to learn how we're keeping people around the world safe and secure.

Target Salary Range

$135,000 - $216,000. This represents the typical salary range for this position. Salary is determined by various factors, including but not limited to, the scope and responsibilities of the position, the individual's experience, education, knowledge, skills, and competencies, as well as geographic location and business and contract considerations. Depending on the position, employees may be eligible for overtime, shift differential, and a discretionary bonus in addition to base pay.

EEO

EEO: Equal opportunity employer, including disability and protected veterans, or other characteristics protected by law.
Vacancy posted 23 hours ago
Similar jobs that could be interesting for youBased on the Forensic and Incident Response Engineer in United States vacancy
  • $112k - $139k

    A national law firm is seeking a SOC/Incident Report Engineer for its Chicago office. This hybrid position involves detecting and responding...  ...cybersecurity incidents, focusing on threat detection and digital forensics. The ideal candidate will have solid experience in a... 
    Suggested
    Work at office

    Benesch, Friedlander, Coplan & Aronoff

    Chicago, IL
    3 days ago
  • $215k - $280k

     ...This position is posted by Jobgether on behalf of Quanata. We are currently looking for a Senior AIOps Engineer, Incident Response in United States. This role sits at the intersection of production reliability, incident response, and AI-driven operational transformation... 
    Suggested
    Remote job
    Extra income
    Full time
    Home office
    Flexible hours

    jobgether

    United States
    4 days ago
  • $40 per hour

     ...US, Canada, UK, Ireland, Australia, and New Zealand Responsibilities Evaluate AI-generated cybersecurity content, including...  ...cybersecurity (e.g., penetration testing, red teaming, incident response, detection engineering, DFIR, malware analysis, threat intelligence, or... 
    Suggested
    Hourly pay
    Full time
    Part time
    Remote work

    DataAnnotation

    Salt Lake City, UT
    3 days ago
  •  ...Cybersecurity Incident Response Engineer, Mid The Cybersecurity Incident Response Engineer, Mid supports the detection, containment, and recovery...  ...complex adversary tactics. The position also supports forensic investigations, documentation, regulatory alignment, and... 
    Suggested
    Contract work
    Work experience placement
    Work at office
    Remote work

    ASM Research

    United States
    4 days ago
  • $89.01k - $142.19k

     ...as the senior most technical member of incident response team for our global information...  ...incident response plans, conduct cyber forensic investigations on physical endpoints and...  ...exploitation techniques, malware reverse engineering, threat analysis, and security threat... 
    Suggested
    Local area
    Remote work
    Work from home

    RELX

    United States
    8 days ago
  •  ...Job Responsibilities Incident Investigation: Lead investigations into high-severity threats, identifying...  ...to normal operations. Digital Forensics: Perform host, memory, and network forensics...  ..., SOC analysis, or system engineering. Technical Skills: Proficiency in network... 
    Immediate start

    True Zero Technologies, LLC

    New York, NY
    1 day ago
  •  ...A technology solutions company is seeking a NOC Engineer responsible for incident response, troubleshooting, and network planning. The ideal candidate will have expert knowledge in networking principles, OS troubleshooting, and advanced skills in various ticketing systems... 
    Night shift

    ViziRecruiter

    Springfield, IL
    4 days ago
  •  ...Cyber Security Engineer Fragomen, an AmLaw 100 Firm and the leading global immigration services provider, is seeking a Cyber Security Engineer with strong experience in Incident Response, digital forensics, and threat detection to join our Information Security & Cyber... 
    Local area
    Remote work

    Fragomen Worldwide

    United States
    4 days ago
  •  ...0 Mobility Tech Solutions LLC is seeking a Cyber Security Engineer to join its Information Security & Cyber Security team. The ideal candidate will have strong experience in incident response, digital forensics, and threat detection, ensuring robust security measures across... 

    600 Mobility Tech Solutions LLC

    New York, NY
    3 days ago
  • $125k - $160k

     ...more. For more information about American Home Shield and Frontdoor, please visit frontdoorhome.com. Responsibilities Summary: As a Senior Incident Response Engineer, you will work with a team of highly capable engineers with various degrees of experience in a newly formed... 
    Full time
    For contractors
    Remote work

    Frontdoor

    New York, NY
    3 days ago
  • $55.7k - $82.1k

     ...The Cybersecurity Incident Response Engineer, Jr. monitors enterprise security tools and logs to detect, analyze, and triage potential cybersecurity threats targeting mission-critical systems and data. The role performs initial investigations, distinguishes false positives... 
    Contract work
    Work at office
    Shift work

    ASM Research, An Accenture Federal Services Company

    Honolulu, HI
    3 days ago
  • $108k - $216k

     ...Position Summary... Role summary The Senior Incident Response Engineer (Purple Team) will operate within a purple-team driven program, focused on assumed-breach and post-access adversary activity to strengthen detection and response capabilities. This role leads... 
    Full time
    Temporary work
    Part time

    Walmart

    Herndon, VA
    5 days ago
  •  ...Senior Cybersecurity Engineer Opportunity to work in a hybrid model: Potential to work 4 days onsite and 1 day remote Why...  ...Engineering, Threat Intelligence, Vulnerability Management, Incident Response, Firewall, Governance, Risk, Architecture and Offensive Security... 
    Work experience placement
    Work at office
    Local area
    Remote work
    Flexible hours

    GMAC Financial Services

    Irving, TX
    20 days ago
  • $89.01k - $142.19k

     ...as the senior most technical member of incident response team for our global information...  ...incident response plans, conduct cyber forensic investigations on physical endpoints and...  ...exploitation techniques, malware reverse engineering, threat analysis, and security threat... 
    Local area
    Work from home

    RELX

    Philadelphia, PA
    10 days ago
  • $98k - $176k

     ...that vision to life through our values and culture. Learn more about Target here. JOIN TARGET CYBERSECURITY AS A SENIOR ENGINEER - INCIDENT RESPONSE ENGINEERING As a Senior Engineer, you serve as a specialist in the engineering team that supports the product. You... 
    Temporary work
    Work experience placement
    Flexible hours

    Target

    Minneapolis, MN
    3 days ago
  • $103k - $128k

    A prominent law firm in Cleveland is seeking a SOC/Incident Report Engineer to strengthen their cybersecurity measures. In this role, you will...  ...protocols. The position requires 3-7 years of SOC or incident response experience, and familiarity with tools like Microsoft... 

    Benesch, Friedlander, Coplan & Aronoff

    Cleveland, OH
    3 days ago
  • $64k - $108k

     ...Consultancy Services in Bellevue, Washington is seeking a professional to lead Automated Incident Detection and Remediation efforts. This position aims to transform traditional incident response methods into automated workflows, improve operational efficiency, and minimize... 

    Tata Consultancy Services

    Bellevue, WA
    1 day ago
  • A leading law firm based in Columbus is seeking a SOC/Incident Response Engineer to bolster its cybersecurity efforts. This hybrid position involves monitoring security threats, conducting incident responses, and improving detection capabilities. The ideal candidate should... 

    Benesch, Friedlander, Coplan & Aronoff

    Columbus, OH
    3 days ago
  • Zeektek is seeking a Senior Incident Response & DFIR Engineer on a 6-month contract in Austin, Texas, with a hybrid work model. The ideal candidate...  ...and strong expertise in email security protocols and forensic tools. Responsibilities include investigating phishing,... 
    Contract work

    Zeektek

    Austin, TX
    3 days ago
  • $115k - $125k

    A cybersecurity firm is seeking an Engineer II - Cyber Incident Response in Carrollton, TX. The role focuses on detecting, investigating, and responding...  ...and hands-on experience with SIEM, EDR, and forensic tools like Splunk and CrowdStrike. A Bachelor's degree... 

    Piper Companies

    Carrollton, TX
    1 day ago
  • Phoenix Cyber is seeking a Cybersecurity Engineer to join its client delivery team in Fredericksburg, Virginia. The role involves...  ...and at least 5 years of experience in Security Operations and Incident Response. Additional qualifications like Linux administration and... 

    Phoenix Cyber

    Fredericksburg, VA
    4 days ago
  • $80.2k - $111.3k

     ...Position Overview The Cybersecurity Incident Response Engineer, Senior leads complex incident response efforts for enterprise networks and...  ...containment and eradication actions. Perform advanced threat and forensic analysis of endpoint, network, identity, and cloud data to... 
    Contract work
    Work experience placement
    Work at office

    ASM Research, An Accenture Federal Services Company

    Springfield, IL
    4 days ago
  •  ...an experienced Information Security SOC Engineer to enhance security operations. This hands...  ...operating, and automating detection and response capabilities utilizing Microsoft...  ...building automation workflows to improve incident response. #J-18808-Ljbffr Harris Health... 

    Harris Health System, Inc.

    Bellaire, TX
    1 day ago
  • A global technology company is seeking a candidate to join its Incident Response Services team in Bellevue, WA. The successful applicant will manage tooling around incident lifecycle automation, evaluating logging stacks, and enhancing internal developer portals. Key qualifications... 

    The Trade Desk, Inc.

    Bellevue, WA
    2 days ago
  • Phoenix Cyber is seeking a Cybersecurity Engineer in Columbus, Ohio. The role requires a...  ...of experience in cybersecurity. Key responsibilities include developing and deploying security...  ...familiar with cyber security operations and incident response processes. Phoenix Cyber... 

    Phoenix Cyber

    Columbus, OH
    4 days ago
  •  ...Job Description The Cybersecurity Incident Response (IR) Lead and Detection is responsible...  ...KEY RESPONSIBILITIES: Detection Engineering (the "Hunt) Advanced Logic Development...  ...investigations, including digital forensics (memory, network and malware analysis)... 

    United States Steel

    Pittsburgh, PA
    3 days ago
  • $215k - $280k

     ...Quanata, LLC is an insurance technology innovation company that engineers advanced risk prediction and prevention solutions, develops...  ...agent workflows. This role will own production health, incident response, and operational reliability while partnering closely with engineering... 
    Remote job
    Extra income
    Local area
    Work from home
    Home office
    Flexible hours

    Quanata

    San Francisco, CA
    9 days ago
  •  ...The Regional Security Operations Center (SOC)/Incident response Engineer is responsible for implementing and maintaining security controls and systems in the Americas region. This position also works within the global SOC to detect, analyze, respond to, and recover from... 
    Work at office

    Liebherr

    Saline, MI
    5 days ago
  • Emory University seeks a Senior Cyber Defense Engineer in Atlanta, Georgia. This role focuses on incident response and security operations in both cloud and on-premise environments. Candidates must possess a Bachelor's degree and minimum six years of relevant IT experience... 
    Remote job

    Emory University

    Atlanta, GA
    1 day ago
  • Warner Media, LLC. is seeking an Operations Engineer to join their Global Command Center team. This role involves handling incidents, coordinating responses, and utilizing technical skills within a dynamic broadcast environment. The ideal candidate should have strong communication... 

    Warner Media, LLC.

    Atlanta, GA
    3 days ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Forensic and Incident Response Engineer. Be the first to apply!