Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

IBM CISO - Cybersecurity Forensic Analyst

IBM

Introduction


The Office of the CISO has the responsibility to safeguard not only IBM systems but those of clients we support around the globe. The IBM CISO office is comprised of teams that cover all aspects of security - from Vulnerabilty Management, Threat Detection, Security Operations, Product Security, Mail Security, System Inventory, Endpoint Detection, as well as Computer Security Incidence Response. CSIRT is responsible for maintaining and managing the IBM internal global incident response process for cybersecurity and data privacy cases across IBM.

We are looking for individuals who bring both technical depth and professional discipline-those who can dig into the evidence, uncover the story behind an incident, and communicate it clearly to drive action.

Your role and responsibilities


IBM's Cyber Security Incident Response Team (CSIRT) is seeking a high-performing Incident Response Forensic Analyst to support the investigation and response to cybersecurity incidents across the Americas region.


In this role, you will work at the intersection of incident response, digital forensics, and threat analysis, partnering closely with responders, threat detection teams, and leadership to investigate security events, preserve forensic evidence, and drive timely containment and remediation.


This is a hands-on analytical role requiring the ability to translate complex technical findings into actionable insights, enabling both operational response and executive decision-making. The successful candidate will demonstrate strong technical depth, investigative rigor, and the ability to operate effectively in high-pressure environments.

Key Responsibilities:


-Conduct forensic investigations on endpoint, network, and cloud environments


-Collect, preserve, and analyze digital evidence in accordance with established standards


-Support incident response activities, including triage, containment, eradication, and recovery


-Correlate forensic evidence with threat intelligence and detection signals
-Ability to analyze disk images, logs, and recovered data


-Reconstruct attack timelines and identify root cause and impact


-Document findings and produce clear, defensible reports for technical and non-technical stakeholders


-Collaborate across CSIRT, SOC, Legal, and Compliance teams as needed


-Contribute to post-incident reviews and continuous improvement of response capabilities

Required education


Associate's Degree/College Diploma


Preferred education


Bachelor's Degree


Required technical and professional expertise


- 3-5 years of experience in Incident Response, SOC and/or Digital Forensics in a global corporate environment

- Key Technical Skills
  • Strong digital forensics expertise across endpoints, systems, and network artifacts; experience with industry-standard tools (e.g., EnCase, FTK, Autopsy)
  • Ability to collect, preserve, and analyze evidence while maintaining chain of custody and audit readiness
  • Strong investigative and analytical skills, including correlation of logs, endpoint, and network data to determine root cause and reconstruct timelines
  • Experience operating within incident response workflows and using EDR, SIEM, and detection platforms in active incident environments
  • Understanding of attacker TTPs, with exposure to malware analysis or memory forensics preferred
  • Analysis using EDR tooling such as Crowdstrike or Microsoft Defender for Endpoint (MDE)
  • Basic scripting/automation skills (e.g., Python, PowerShell) are a plus
- Strong understanding of Windows, Mac, and Linux operating systems
- Solid working knowledge of networking topology, technology and tools, such as firewalls, proxies, IDS/IPS, EDR
Event analysis and correlation
Excellent technical writing and presentation skills


- The ability to work independently and effectively, as well as in a group setting required.


Preferred technical and professional experience


- Demonstrated computer forensic investigations experience
- Demonstrated knowledge of commercial and open-source forensic tools, such as X-Ways, Axiom, Autopsy, ELK, SIFT, Plaso, etc
- Familiarity with enterprise cybersecurity tooling (EDR, SIEM, forensic
platforms) Scripting & Automation (Nice to Have)
- Certifications such as: GCFA, CHFI, GCIH (or equivalent experience, nice to have)


- Demonstrated knowledge of analysis with EDR tooling, such as Crowdstrike or Microsoft Defender for Endpoint (MDE)
- Knowledge of incident response and analysis in cloud environments, such as IBM Cloud, AWS, or Azure
- Ability to successfully lead and facilitate information gathering meetings
- Experience managing small and large scale cyber security incidents

ABOUT BUSINESS UNIT

IBM Systems helps IT leaders think differently about their infrastructure. IBM servers and storage are no longer inanimate - they can understand, reason, and learn so our clients can innovate while avoiding IT issues. Our systems power the world's most important industries and our clients are the architects of the future. Join us to help build our leading-edge technology portfolio designed for cognitive business and optimized for cloud computing.


YOUR LIFE @ IBM

In a world where technology never stands still, we understand that, dedication to our clients success, innovation that matters, and trust and personal responsibility in all our relationships, lives in what we do as IBMers as we strive to be the catalyst that makes the world work better.

Being an IBMer means you'll be able to learn and develop yourself and your career, you'll be encouraged to be courageous and experiment everyday, all whilst having continuous trust and support in an environment where everyone can thrive whatever their personal or professional background.

Our IBMers are growth minded, always staying curious, open to feedback and learning new information and skills to constantly transform themselves and our company. They are trusted to provide on-going feedback to help other IBMers grow, as well as collaborate with colleagues keeping in mind a team focused approach to include different perspectives to drive exceptional outcomes for our customers. The courage our IBMers have to make critical decisions everyday is essential to IBM becoming the catalyst for progress, always embracing challenges with resources they have to hand, a can-do attitude and always striving for an outcome focused approach within everything that they do.

Are you ready to be an IBMer?

ABOUT IBM

IBM's greatest invention is the IBMer. We believe that through the application of intelligence, reason and science, we can improve business, society and the human condition, bringing the power of an open hybrid cloud and AI strategy to life for our clients and partners around the world.

Restlessly reinventing since 1911, we are not only one of the largest corporate organizations in the world, we're also one of the biggest technology and consulting employers, with many of the Fortune 500 companies relying on the IBM Cloud to run their business.


At IBM, we pride ourselves on being an early adopter of artificial intelligence, quantum computing and blockchain. Now it's time for you to join us on our journey to being a responsible technology innovator and a force for good in the world.

IBM is proud to be an equal-opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, gender, gender identity or expression, sexual orientation, national origin, genetics, pregnancy, disability, neurodivergence, age, or other characteristics protected by the applicable law. IBM is also committed to compliance with all fair employment practices regarding citizenship and immigration status.

OTHER RELEVANT JOB DETAILS

IBM offers a competitive and comprehensive benefits program. Eligible employees may have access to:
  • Healthcare benefits including medical & prescription drug coverage, dental, vision, and mental health & well being
  • Financial programs such as 401(k), the IBM Employee Stock Purchase Plan, financial counseling, life insurance, short & long- term disability coverage, and opportunities for performance based salary incentive programs
  • Generous paid time off including 12 holidays, minimum 56 hours sick time, 120 hours vacation, 12 weeks parental bonding leave in accordance with IBM Policy, and other Paid Care Leave programs. IBM also offers paid family leave benefits to eligible employees where required by applicable law
  • Training and educational resources on our personalized, AI-driven learning platform where IBMers can grow skills and obtain industry-recognized certifications to achieve their career goals
  • Diverse and inclusive employee resource groups, giving & volunteer opportunities, and discounts on retail products, services & experiences



We consider qualified applicants with criminal histories, consistent with applicable law.

This position was posted on the date cited in the key job details section and is anticipated to remain posted for 21 days from this date or less if not needed to fill the role.

IBM will not be providing visa sponsorship for this position now or in the future. Therefore, in order to be considered for this position, you must have the ability to work without a need for current or future visa sponsorship.

The compensation range and benefits for this position are based on a full-time schedule for a full calendar year. The salary will vary depending on your job-related skills, experience and location. Pay increment and frequency of pay will be in accordance with employment classification and applicable laws. For part time roles, your compensation and benefits will be adjusted to reflect your hours. Benefits may be pro-rated for those who start working during the calendar year.
Vacancy posted 1 day ago
Similar jobs that could be interesting for youBased on the IBM CISO - Cybersecurity Forensic Analyst in Austin, TX vacancy
  • $116.26k - $151.13k

     ...posting will close on the day before the posting end date.Job Summary The Digital Forensic Analyst investigates and examines digital assets. The position is aligned with AEP’s Cybersecurity Intelligence & Defense organization and Insider Threat team. It is a highly... 
    Suggested
    Full time
    Work experience placement

    American Electric Power

    Austin, TX
    4 days ago
  •  ...areas of our business, and our global Cyber Investigation and Forensic Response (CIFR) practice is at the heart of how we help...  ...consulting experience in infrastructure, enterprise architecture, cybersecurity, or a closely related disciplineMinimum 2 years of experience... 
    Suggested
    Full time
    Live in
    Work at office
    Local area
    Shift work

    Accenture

    Austin, TX
    2 days ago
  •  ...Security Analyst Opportunity Ready to put your highly in-demand skill set into practice in a well known established environment? Do you have the ability to deliver quality through attention to detail with the ability to learn and use a variety of software, tools and... 
    Suggested

    Randstad

    Austin, TX
    2 days ago
  •  ...Pubox in Austin, Texas is looking for a Cybersecurity Analyst to safeguard our digital infrastructure against evolving threats. In this role, you will monitor systems for vulnerabilities, analyze security logs, and coordinate with IT teams to patch vulnerabilities. Qualified... 
    Suggested

    Pubox

    Austin, TX
    2 days ago
  •  ...Vazex in Austin, TX is seeking a Cybersecurity Analyst to safeguard our digital infrastructure. You will monitor systems for vulnerabilities, detect anomalies, and respond swiftly to incidents that could compromise security. Daily responsibilities include analyzing logs... 
    Suggested

    Vazex

    Austin, TX
    3 days ago
  • $77k - $92k

     ...Director of Emergency Communications State Job Description: Cybersecurity Analyst State Pay Group: B25/B26 Telecommuting Eligibility:...  ...access, modification, and destruction. Perform forensic analysis of network traffic using risk assessment and monitoring... 
    Full time
    Temporary work
    Remote work
    Flexible hours
    2 days per week

    Capital Area Council of Governments

    Austin, TX
    1 day ago
  • $105.79k - $141.05k

     ...ownership, deliver meaningful impact, and help shape the future of AI-ready connectivity, join us today. The Role The Cybersecurity Assurance Analyst (Audit) is an experienced member of the Information Security Compliance and Audit team with responsibilities for... 
    Temporary work
    Remote work

    Lumen Inc

    Austin, TX
    23 hours ago
  • A leading technology firm in Austin is seeking a Digital Forensic Examiner to conduct advanced forensic examinations and eDiscovery. You will support legal, HR, and law enforcement investigations, ensuring evidence is collected and analyzed per legal standards. Ideal candidates... 

    The HT Group

    Austin, TX
    3 days ago
  • Here's The Role LCRA is seeking a Cybersecurity Analyst Sr to support daily Security Operations Center (SOC) activities, including security monitoring, alert analysis, incident investigation, documentation, and remediation efforts. In this role, you will contribute to the... 

    Lower Colorado River Authority

    Austin, TX
    2 days ago
  •  ...Cyber Incident Response Analyst Location: Austin, TX / San Antonio, TX (Onsite)...  ...Cyber Incident Response, Digital Forensics, Windows & Linux Security, SIEM, EDR, IDS...  ...Incident Response Analyst to join our cybersecurity team. The ideal candidate will be responsible... 
    Contract work

    3B Staffing LLC

    Austin, TX
    2 days ago
  • NextSaaS is seeking a Cybersecurity Analyst in Austin, Texas. You will monitor systems, detect threats, and respond to incidents to protect sensitive data. The role emphasizes vulnerability management, penetration testing, and collaboration with IT teams. The ideal candidate... 

    Ecom Wisers

    Austin, TX
    1 day ago
  • Shastashade is seeking a Cybersecurity Analyst in Austin, TX to monitor, detect, and respond to threats across our digital infrastructure. You will analyze logs, tighten defenses, and coordinate with IT to patch vulnerabilities while maintaining data protection standards... 

    Shastashade

    Austin, TX
    18 hours ago
  • $237.5k - $390k

     ...Title: Chief Information Security Officer (CISO)Location: Austin, TX / Morristown, NJ (hybrid)Reports To:Chief Technology OfficerAbout...  ...Hippo is hiring a Chief Information Security Officer to lead cybersecurity strategy, security operations, and governance, risk, and... 
    Temporary work
    Flexible hours

    Hippo Insurance

    Austin, TX
    18 hours ago
  • $34 - $36 per hour

     ...necessary to meet business needs. If you’re an experienced security analyst who has demonstrated risk mitigation experience, loves deep...  ...and recovery—developing precise remediation strategies. Forensics & Threat Intel: Conduct root cause analysis and reverse engineering... 
    Hourly pay
    Permanent employment
    Temporary work
    Work experience placement
    Shift work
    Austin, TX
    25 days ago
  • $116.2k - $229.1k

     ...development using BIRTExperience with at least one Maximo add-on (Maximo Spatial, Maximo Transportation, Maximo Utilities, and others)IBM Maximo certification with Maximo 7.6.xExperience using artificial intelligence (AI)-enabled tools and digital technologies to improve... 
    Ibm
    Local area

    Deloitte

    Austin, TX
    18 hours ago
  •  ...) is seeking a senior network security analyst to join our team supporting a major state...  ...concerns. Performs network security, cybersecurity defense & analysis, incident response,...  ...applications, ticketing systems, lab systems, forensic applications, and/or custom tools,... 
    Local area

    SAIC

    Austin, TX
    2 days ago
  • $4,500 - $6,000 per month

    Protect systems and data by monitoring threats and responding to security incidents. Job Description We’re hiring a Cybersecurity Analyst to safeguard our digital infrastructure against evolving threats. You will monitor systems for vulnerabilities, detect anomalies, and... 
    Full time

    Datasea Inc

    Austin, TX
    1 day ago
  •  ...assets from current and emerging threats. At The Home Depot Cybersecurity consists of Architecture, Governance, Identity & Access Management...  ...Operations, Service Optimization and Strategic Planning. Analysts Perform Data Gathering, Analysis, Synthesis, And Develop... 
    Remote job
    Work experience placement
    Internship
    Night shift

    The Home Depot

    Austin, TX
    18 hours ago
  • Apelio in Austin, Texas is seeking a Cybersecurity Analyst to safeguard our digital infrastructure against evolving threats. You will monitor systems, analyze logs, detect anomalies, and respond to incidents to protect company data. You will perform threat hunting, vulnerability... 

    Apelio

    Austin, TX
    18 hours ago
  • Join to apply for the Sr. Cybersecurity Analyst role at Visa Visa is a world leader in payments and technology, with over 259 billion payments transactions flowing safely between consumers, merchants, financial institutions, and government entities in more than 200 countries... 
    Work experience placement
    Work at office
    Local area
    Relocation package
    Shift work

    Visa

    Austin, TX
    3 days ago
  • *We are unable to provide sponsorship for this role* Qualifications 6+ years of related experience CompTIA Security+, GIAC Information Security Fundamentals or Security Essentials Certification, Certified Information Systems Security Professional (CISSP) Endpoint Detection...

    Request Technology, LLC

    Austin, TX
    18 hours ago
  • Maveris is an IT and cybersecurity services company committed to helping organizations create...  ...-time, permanent Tier 3 Cybersecurity Analyst to join our talented, dynamic team in support...  ...with cross-functional teams, including forensics, threat intelligence, IT, and network... 
    Permanent employment
    Full time
    Work experience placement
    3 days per week

    Maveris

    Austin, TX
    18 hours ago
  • Softricity is seeking a Cybersecurity Analyst to safeguard our digital infrastructure. In this role, you'll monitor for vulnerabilities, detect anomalies, and respond to incidents to protect sensitive data. Your daily duties will involve analyzing logs, conducting penetration... 

    Softricity

    Austin, TX
    3 days ago
  • Request Technology, LLC in Austin, TX is seeking an experienced security operations professional to monitor, triage, and respond to security incidents. You will leverage EDR, SIEM, and cloud security tools to detect, investigate, and resolve threats while collaborating ...

    Request Technology, LLC

    Austin, TX
    18 hours ago
  • Cybersecurity Analyst - Tier 2 (3rd shift) Maveris is an IT and cybersecurity services company committed to helping organizations create secure...  ...effectively with cross-functional teams, including forensics, threat intelligence, IT, and network administrators. Clearly... 
    Permanent employment
    Full time
    Work experience placement
    Night shift

    Maveris

    Austin, TX
    18 hours ago
  • Datasea in Austin, Texas is seeking a Cybersecurity Analyst to monitor logs, detect threats, and respond to incidents to safeguard our digital infrastructure. Daily duties include vulnerability assessment, penetration testing, coordinating with IT to patch issues, and threat... 

    Datasea

    Austin, TX
    1 day ago
  • Caartzee is seeking a skilled Cybersecurity Analyst in Austin, Texas to enhance our digital security. Your key responsibilities include monitoring systems for vulnerabilities, detecting anomalies, and responding to security incidents. A Bachelor’s in Cybersecurity or Computer... 

    Caartzee

    Austin, TX
    4 days ago
  • A cybersecurity services company located in Austin, Texas, is seeking a full-time Cybersecurity Analyst - Tier 2 to safeguard digital assets for the Department of Veterans Affairs. The role focuses on supporting the Incident Response team by investigating and mitigating... 
    Full time
    Night shift

    Maveris

    Austin, TX
    18 hours ago
  • Position Purpose: We are seeking a proactive and detail-oriented Secure Solutions Enablement (SSE) Analyst II to join our dynamic Cybersecurity team. In this role, you will be instrumental in managing security findings, tracking critical exposures, and monitoring key security... 
    Remote job
    Work experience placement
    Work at office
    Night shift

    The Home Depot

    Austin, TX
    18 hours ago
  • Declari is seeking a Cybersecurity Analyst in Austin, TX to safeguard our digital infrastructure. You will monitor systems for vulnerabilities, detect anomalies, and respond to incidents with urgency, protecting sensitive data for the company and customers. Responsibilities... 

    Declari

    Austin, TX
    18 hours ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to IBM CISO - Cybersecurity Forensic Analyst. Be the first to apply!