Senior Digital Forensics and Incident Response Engineer
Posted 5hrs ago
Employment Information
Report this job
Job expired or something wrong with this job?
Job Description
Senior DFIR Engineer leading identity-theft investigations and automation for Humana, a U.S. healthcare and insurance company. Supporting enterprise cyber investigations, incident response, and forensic capability development.
Responsibilities:
- Provide forensics technical expertise and investigations support to cybersecurity defense stakeholders
- Lead and advance Humana’s response to identity theft, account takeover, and associated fraud activities
- Investigate identity-based threats and conduct forensic analysis to determine attack methods and root causes
- Coordinate response activities to mitigate risk and protect Humana associates, members, and assets
- Develop, implement, and continuously improve automation, detection capabilities, and investigative workflows
- Enable scalable identification, triage, and response to identity fraud campaigns
- Assess and correlate incident data to identify vulnerabilities and provide forensic analysis recommendations for remediation
- Manage a real-time forensic capability that collects, assesses, and analyzes data correlations
- Create reports for EIP leadership with in-depth investigative analysis of possible root causes
- Support enterprise cyber investigations, incident response, forensic analysis, and enhancement of forensic capabilities
- Influence department strategy through technical leadership, operational excellence, and automation initiatives
- Make decisions on technical approaches for project components and determine objectives and approaches independently
Requirements:
- 3+ years Cyber Security experience
- 3+ years Digital Forensics and/or Incident Response experience
- 3+ years experience working with Splunk, including authoring queries, alerting, and dashboard development
- 5+ years Digital Forensics experience, including FTK, Axiom, EnCase, and other forensics tools (desirable)
- GIAC/SANS GCFE, GCFA, GIME, and/or GASF certifications (desirable)
- 2+ years cloud forensics/incident response (desirable)
- 1+ years working with and/or investigations of artificial intelligence systems (desirable)
- Must reside within 60 minutes of a listed metropolitan location or be willing to relocate
- Ability to provide high-speed fiber, DSL, or cable modem for a home office
- Minimum internet speed of 25 Mbps download and 10 Mbps upload
- Satellite and wireless internet service is not allowed
- Dedicated workspace without ongoing interruptions to protect member PHI/HIPAA information
- Mandatory participation in an on-call rotation
Benefits:
- Bonus incentive plan based on company and/or individual performance
- Medical, dental, and vision benefits
- 401(k) retirement savings plan
- Paid time off
- Company and personal holidays
- Paid parental and caregiver leave
- Short-term and long-term disability
- Life insurance
- Internet expense payment for associates or contractors who live and work from home in California



















