DFIR (Digital Forensics & Incident Response) Analyst

Nunsys·Remote, Spain

What they offer

  • Permanent contract

    Per the ad.

  • Fully remote

    Per the ad.

What they ask for

  • Have the right to work in Spain

    No sponsorship mentioned, and this kind of work is rarely sponsored in Spain.

  • Speak native-level Spanish

    Listed as a requirement in the ad.

  • Work in English

    English is required, per the ad.

  • Have 5+ years of experience

    Senior-level role.

Pulled from the advert automatically — the full ad is what counts.

This job was published 3 months ago

Read the full advert

About the role

Are you passionate about technology? Do you want to grow in a dynamic and constantly evolving company? We are looking for you! At Nunsys Group we are expanding our team and are looking for a Senior DFIR (Digital Forensics & Incident Response) Analyst for a REMOTE position.

Our journey began in 2007 and we have one goal: to be the leading Spanish technology company. We are passionate about digital transformation and we have a great portfolio of technology solutions. Thanks to this, we guarantee that we can face any challenge our clients present to us.

We currently have more than 2,600 professionals and a presence in 25 Spanish cities, as well as Portugal, the USA, Colombia, and Ecuador. And this is only the beginning!

Your mission will be to actively participate in the investigation and response to cybersecurity incidents, bringing your experience as a senior DFIR technical profile, helping to contain, eradicate, and analyze complex incidents, and contributing to the continuous improvement of detection and response capabilities.

And what does the project involve? The day-to-day work is very varied, but some of the main functions you will participate in are:

What you'll do

  • Execute advanced technical responses to security incidents, including complex compromises and campaigns associated with advanced threats.
  • Participate in cybersecurity incident investigations from the detection phase through to recovery.
  • Perform forensic analysis on endpoints, servers, and corporate environments to identify vectors of compromise, scope, and attacker actions.
  • Analyze forensic artifacts on Windows systems (events, registry, persistence artifacts, execution evidence).
  • Perform memory forensics analysis, timeline reconstruction, and correlation of evidence.
  • Support malware analysis activities, intrusion investigation, and threat hunting when necessary.
  • Work with DFIR tools such as EDR, SIEM, forensic tools, and analysis frameworks.
  • Collaborate with the Incident Lead or service managers, providing technical criteria and evidence-based recommendations.
  • Draft detailed technical reports and contribute to executive reports for clients.
  • Support clients in improving their detection and response capabilities based on lessons learned.

What you'll get

💼 Permanent contract in a leading company in the sector. 

💰 Competitive remuneration package in line with the knowledge and experience contributed.

🌴 Intensive schedule for three months and every Friday of the year.

📚 In our team we believe in people and their talent, which is why we bet on the training of our professionals.

💳 Possibility of joining the flexible compensation program: Childcare Voucher, Restaurant Card, Transport Card, and Health Insurance. 

🤑 Discounts at different establishments, on products (appliances, fashion, technology) and services (travel, car rental, health). 

💗 A diverse and, above all, inclusive environment where people come first. 

🎉 It's not all work, there's also time for fun! We have different events throughout the year, from our "Christmas Jumper Day" to our Halloween costume contest, we are always looking for ways to create a fun environment.  

And many more things we want you to discover! 

Do you want to join us and be part of the change? 

🌟What are we looking for?

  • We are looking for people with strong organizational skills and impeccable work methodology; in this team, everyone contributes.
  • At Nunsys Group, camaraderie is essential. We support each other to overcome any challenge and achieve our goals as a team.
  • Minimum of 5 years of experience in Digital Forensics & Incident Response or similar roles.
  • Demonstrable experience in responding to complex security incidents.
  • Extensive experience in forensic analysis in Windows environments.
  • Solid knowledge of operating systems, networks, and corporate environments.
  • Experience with DFIR tools (EDR, SIEM, forensic tools, memory analysis).
  • Ability to work in high-pressure environments.
  • Professional English, necessary for working with international clients and documentation.

If you have experience in this role and want to be part of our team, we are on the right track! 

🔝 Anything else that adds value?

  • Of course! We positively value experience with APTs, advanced intrusion campaigns, or threat hunting. Experience in cloud environments or hybrid infrastructures, knowledge in malware analysis, and DFIR certifications such as GCFA, GCFE, GCIH, GNFA or other equivalent certifications.

Additional information

We want to inform all interested parties about our job offers that the only valid offers are those published on our website https://empleo.nunsys.com/ or https://www.sothis.tech/unete-al-equipo/. Do not trust portals that simply aggregate our job information with the aim of collecting your personal data. 

This job was automatically translated to English, .

About the company

Nunsys

Nunsys

Technology Services

View company profile
Spanish company
1000 employees