Senior Digital Forensics and Incident Response Engineer

Posted 5hrs ago

Employment Information

Education
Salary
Experience
Job Type

Report this job

Job expired or something wrong with this job?

Job Description

Senior DFIR Engineer leading identity-theft investigations and automation for Humana, a U.S. healthcare and insurance company. Supporting enterprise cyber investigations, incident response, and forensic capability development.

Responsibilities:

  • Provide forensics technical expertise and investigations support to cybersecurity defense stakeholders
  • Lead and advance Humana’s response to identity theft, account takeover, and associated fraud activities
  • Investigate identity-based threats and conduct forensic analysis to determine attack methods and root causes
  • Coordinate response activities to mitigate risk and protect Humana associates, members, and assets
  • Develop, implement, and continuously improve automation, detection capabilities, and investigative workflows
  • Enable scalable identification, triage, and response to identity fraud campaigns
  • Assess and correlate incident data to identify vulnerabilities and provide forensic analysis recommendations for remediation
  • Manage a real-time forensic capability that collects, assesses, and analyzes data correlations
  • Create reports for EIP leadership with in-depth investigative analysis of possible root causes
  • Support enterprise cyber investigations, incident response, forensic analysis, and enhancement of forensic capabilities
  • Influence department strategy through technical leadership, operational excellence, and automation initiatives
  • Make decisions on technical approaches for project components and determine objectives and approaches independently

Requirements:

  • 3+ years Cyber Security experience
  • 3+ years Digital Forensics and/or Incident Response experience
  • 3+ years experience working with Splunk, including authoring queries, alerting, and dashboard development
  • 5+ years Digital Forensics experience, including FTK, Axiom, EnCase, and other forensics tools (desirable)
  • GIAC/SANS GCFE, GCFA, GIME, and/or GASF certifications (desirable)
  • 2+ years cloud forensics/incident response (desirable)
  • 1+ years working with and/or investigations of artificial intelligence systems (desirable)
  • Must reside within 60 minutes of a listed metropolitan location or be willing to relocate
  • Ability to provide high-speed fiber, DSL, or cable modem for a home office
  • Minimum internet speed of 25 Mbps download and 10 Mbps upload
  • Satellite and wireless internet service is not allowed
  • Dedicated workspace without ongoing interruptions to protect member PHI/HIPAA information
  • Mandatory participation in an on-call rotation

Benefits:

  • Bonus incentive plan based on company and/or individual performance
  • Medical, dental, and vision benefits
  • 401(k) retirement savings plan
  • Paid time off
  • Company and personal holidays
  • Paid parental and caregiver leave
  • Short-term and long-term disability
  • Life insurance
  • Internet expense payment for associates or contractors who live and work from home in California