Tech - Digital Forensics and Incident Response Analyst DFIR N3

Telefónica·Spain

What they offer

  • Full-time hours

    Per the ad.

  • Hybrid

    Office and home days — the ad has the split.

What they ask for

  • Have the right to work in Spain

    No sponsorship mentioned, and this kind of work is rarely sponsored in Spain.

  • Speak native-level Spanish

    Listed as a requirement in the ad.

  • Work in English

    English is required, per the ad.

  • Be near Spain for hybrid days

    No relocation package mentioned.

  • Have 3+ years of experience

    Senior-level role.

Pulled from the advert automatically — the full ad is what counts.

This job was published 5 months ago

Read the full advert

What you'll do

You will be part of the DFIR team, handling new incidents and providing continuity to ongoing investigations. Your responsibilities will include:

Conducting investigations in corporate environments and security incidents, identifying threats and suspicious activity.

Coordinating teams involved in incident response.

Collecting, preserving, and analyzing digital evidence, identifying the root cause and scope of the incident.

Examining security events, access logs, and other relevant data to reconstruct the attack sequence.

Using forensic tools to analyze systems, networks, and devices in search of IoCs or malicious activity.

Preparing detailed reports with findings and improvement recommendations.

Investigating intrusions, cloning devices, analyzing data, holding client meetings, and acting as an Incident Handler or technical analyst.

What we're looking for

AND FOR THIS, WE BELIEVE IT WOULD BE IDEAL IF YOU HAD...

Experience

More than 3 years in cybersecurity, with at least 1 year in incident investigation and forensics.

Demonstrable experience in:

Forensic analysis applied to IR.

Cybersecurity incident management.

Advanced forensics on Windows and Linux.

Dynamic analysis in sandbox environments (AnyRun, JoeSandbox, CAPE) and static tools (yara, CAPA, FLOSS).

Investigation in cloud environments (Microsoft, AWS, Google).

Cross-functional coordination between different areas.

Nice to have

Experience with English-speaking clients, knowledge of mobile device forensics, and a motivation for continuous learning will be valued.

Education & certifications

Education

Required: Higher Level Training (FP Superior) or a university degree in computer science or telecommunications.

Desirable: Certifications such as GCIH, GCFE, GCFA, GREM, CHFI.

Languages

English B2 or higher (spoken and written).

What you'll get

  • Work-life balance measures and flexible working hours
  • Ongoing training and certifications.
  • Hybrid remote work model.
  • Attractive social benefits package
  • Excellent dynamic and multidisciplinary work environment
  • Volunteering programs

How you'll work

This position requires on-call availability.

About the company & team

WHAT IS TELEFÓNICA TECH?

Telefónica Tech is the leading digital transformation company of the Telefónica Group. We offer a wide range of integrated technological services and solutions in Cybersecurity, Cloud, IoT, Big Data, Artificial Intelligence, and Blockchain, with which we support our clients in their digital transformation.

We are a group of over 6,200 brave people who work every day from different points around the world to achieve excellence, through leadership based on transparency and team spirit. If you identify with our pillars, we can't wait to meet you!

www.telefonicatech.com

WHAT DO WE DO IN THE TEAM?

In the Digital Forensics and Incident Response (DFIR) unit at Telefónica Cybersecurity & Cloud Tech, we have a young and dynamic team responsible for managing our clients' main cybersecurity incidents. Our goal is to contain, analyze, and eradicate threats, guiding clients throughout the process and providing recommendations to prevent future incidents.

Technical knowledge

Required:

Use of forensic solutions for evidence acquisition (triage or full acquisition).

Knowledge of file systems and operating systems (Windows, MacOS, iOS, Android).

Proficiency with forensic suites (Magnet AXIOM, X-Ways, KAPE, Nirsoft).

Knowledge of threat actor TTPs.

Desirable:

General knowledge of IR and cybersecurity for log analysis (Firewalls, EDR, SIEM).

Forensic experience in Azure, AWS, or GCP.

Key Competencies

We are looking for someone with teamwork skills, proactivity, problem-solving ability, client communication skills, creativity, and critical thinking.

Additional information

#WeAreDiverse #WePromoteEquality

We are convinced that diverse and inclusive teams are more innovative, transformative, and achieve better results.

Therefore, we promote and guarantee the inclusion of all people regardless of gender, age, sexual orientation and identity, culture, disability, or any other condition.

We want to meet you! 😊

This job was automatically translated to English, .

About the company

Telefónica

Telefónica

Telecom

View company profile
Spanish company
100000 employees