
at Accenture
ConsultanciesPosted 2 days ago
No clicks
**Senior Investigator - Digital Forensics, Incident Response (DFIR):** Lead complex digital forensics and incident response investigations, utilizing skills in memory forensics, malware triage, and threat analysis. Manage teams, mentor investigators, and drive operational excellence. Leverage EDR solutions and cloud platforms (AWS, Azure, GCP) to identify attacker TTPs. Conduct incident response across various environments, develop IOCs, and create automation tools. Collaborate with clients and Accenture leadership, providing strategic and tactical direction. Travel up to 100% as needed. Minimum 8+ years of DFIR experience required.
- Compensation
- Not specified
- City
- Not specified
- Country
- Not specified
Currency: Not specified
Full Job Description
We Are:
Accenture Security is one of the fastest growing areas of our business, and our global Cyber Investigation and Forensic Response (CIFR) practice is at the heart of how we help clients prepare for, respond to, and recover from the most consequential cyber incidents. We deliver around-the-clock incident response services to our expanding portfolio of enterprise customers across the globe, providing expertise to multinational clients and shaping thought leadership inside and outside the firm.
You Are:
A hands-on technical leader who excels in complex investigations. You have deep expertise in Digital Forensics, Incident Response, and threat analysis, and you have the composure to apply it under pressure during active incidents. You are equally comfortable briefing clients in the boardroom and performing deep analysis. You take ownership of investigations, mentor the people around you, and you raise the bar on what world-class incident response looks like.
The Work:
Conduct complex forensic analysis including advanced memory forensics, malware triage, encrypted artifact recovery, and anti-forensics detection
Perform host and network digital forensics, log analysis, and threat hunting in support of incident response investigations
Leverage EDR solutions, cloud platforms (AWS, Azure, GCP), and threat intelligence to identify attacker Tactics, Techniques and Procedures (TTPs)
Conduct incident response within various Cloud, OT, and traditional enterprise environments
Develop indicators of compromise and contribute to comprehensive attack timelines
Create automation tools and scripts that improve team efficiency and investigation capabilities
Mentor and train 2-4 investigators across multiple cases, building team capability
Provide quality assurance on investigator findings before Primary Investigator review
Lead medium to large workstreams (20-50+ systems) with minimal oversight
Support Primary Investigators with technical decision-making and investigation strategy
Translate strategic investigation direction into tactical tasks for team execution
Effectively communicate and interface with customers, both technically and strategically, to customer stakeholders and legal counsel throughout the engagement lifecycle
Author comprehensively written client reports on investigative findings with defensible conclusions
Present technical findings in client calls when appropriate
Support Accenture leadership in properly scoping engagements with innovative methodical approaches
Travel may be required for this role. The amount of travel will vary from 0 to 100% depending on business need and client requirements.




