TELECOMMUTE Senior Cyber Defense & Offensive Security Specialist

EA Team
United States
about 1 month ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Working hours
Regular working hours
Job source

Tech stack

Software System Penetration Testing Cloud Computing Cyber Security Computer Telephony Integration Data Recovery Digital Forensics Fat Client Python (Programming Language) Linux System Administration Microsoft Security Essentials Packet Analyzer Nmap
+15 more
Open Source Intelligence Radio-Frequency Identification Phishing Reverse Engineering SQL Injection Wireshark Wireless Networks Data Processing Scripting Malware Cyber Threat Analysis Cross-Site Scripting (XSS) Cyber Warfare Nuix Security Orchestration, Automation & Response

Job description

Role : Senior Cyber Defense & Offensive Security Specialist (Incident Response & Threat), 1. Digital Forensics & Incident Response (DFIR)

  • Manage and execute incident response engagements for rapid response retainers, including:
  • Unauthorized access incidents
  • Malware outbreaks and advanced threats
  • Cyber extortion and ransomware attacks
  • Perform:
  • Digital evidence acquisition and forensic analysis
  • Deleted data recovery and memory analysis
  • Malware reverse engineering
  • Operate under legal frameworks, ensuring alignment with Attorney Work Product and legal privilege requirements, * Conduct comprehensive penetration testing and adversary simulations, including:
  • Internal and external network testing
  • Web, cloud, mobile (iOS), and thick client assessments
  • Wireless infrastructure testing
  • Execute exploitation techniques such as:
  • SQL injection, cross-site scripting (XSS)
  • Privilege escalation and credential attacks
  • Lead Social Engineering campaigns:
  • Phishing, smishing, pre-texting
  • Perform Physical Security Assessments:
  • Facility access testing
  • RFID cloning
  • USB payload deployment, * Monitor and analyze intelligence across:
  • Surface, deep, and dark web environments
  • Identify risks such as:
  • Stolen intellectual property
  • Brand impersonation and typosquatting
  • Credential leaks and compromise indicators
  • Develop and operationalize:
  • Automation workflows and GenAI-driven threat hunting tools
  • IOC enrichment pipelines and intelligence correlation models, + Alert triage and incident containment
  • Deploy and manage:
  • Network Telemetry Analysis (NTA) sensors
  • Full packet capture solutions
  • Execute E-Discovery and forensic data processing, including:
  • Predictive coding models
  • Handling and hosting Electronically Stored Information (ESI)
  • Using platforms such as Relativity and Nuix, * Develop and maintain:
  • Incident Response Plans (IRPs)
  • Decision matrices and escalation protocols
  • Executive reporting frameworks
  • Conduct:
  • Ransomware simulations and breach exercises
  • Executive tabletop scenarios
  • Deliver Executive Identity Protection (EIP) services:
  • Removal of sensitive personal data from public sources and data brokers

Requirements

Threat Research Advisory team is seeking a highly skilled and versatile cybersecurity professional to lead and execute advanced Digital Forensics & Incident Response (DFIR), Offensive Security Testing, and Cyber Threat Intelligence (CTI) operations. This role requires deep technical expertise, hands-on execution capability, and the ability to operate in high-pressure incident environments while supporting proactive security initiatives. The ideal candidate will bring a blend of forensic investigation, penetration testing, threat intelligence analysis, and automation development, with exposure to legal discovery processes and executive-level cyber risk scenarios., Technical Expertise

  • Proven experience in:
  • Multi-vector penetration testing (Network, Web, Cloud, Mobile, Wireless, Physical)
  • DFIR and compromise assessments
  • Malware analysis and reverse engineering
  • Strong proficiency with tools such as:
  • Wireshark, Nmap, Recorded Future (or equivalent CTI platforms)
  • Experience in:
  • OSINT collection and analysis
  • Network telemetry analysis __________________

Automation & Development

  • Strong scripting and development skills in:
  • Python
  • Linux-based environments
  • Experience building:
  • Security automation tools
  • Agentic workflows and bot-driven intelligence pipelines, + Electronically Stored Information (ESI)
  • Legal discovery workflows
  • Familiarity with:
  • Relativity, Nuix, or similar platforms, * Offensive Security Certified Professional (OSCP)
  • Certified Ethical Hacker (CEH)
  • GIAC Security Essentials (GSEC)
  • Additional DFIR or CTI certifications are a plus, * Ability to operate in high-pressure incident scenarios
  • Strong analytical and investigative mindset
  • Excellent stakeholder communication, including interaction with legal counsel and executives
  • Ability to bridge offensive, defensive, and intelligence domains
  • Strong documentation and reporting skills

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on dice.com

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

1:52 min

Refining the agent by automating physical hardware restarts

Marc Plogas Marc Plogas · WWC Europe 2026

5:11 min

Deploying manual Seccomp profiles to block malware

Dimitrij Klesev +1 · LIVE

4:01 min

Finding personal fulfillment in the cybersecurity industry

LIVE

1:45 min

Transitioning from software development to security roles

Stefania Chaplin · WWC 2022

6:18 min

Architecting asynchronous malware scanning for uploaded file contents

Austin Gil · LIVE

1:27 min

Differences between autonomous AI agents and traditional malware

Michele Zuccala Michele Zuccala +4 · WWC Europe 2026

Videos

See all

Related articles

See all