About this role
Job title: Senior Investigator, Digital Forensics & Incident Response (DFIR) Security Consulting Team Lead/Consultant | Mid-Level | Full-time
About the Role Accenture Security's CIFR practice seeks a hands-on, senior investigator to lead complex DFIR engagements across cloud, on-premises, and OT environments. The role combines technical investigations with client-facing leadership, mentorship, and the ability to translate strategic direction into tactical actions during high-pressure incidents.
What You'll Do
- Conduct complex forensic analysis including advanced memory forensics, malware triage, encrypted artifact recovery, and anti-forensics detection
- Perform host and network digital forensics, log analysis, and threat hunting in support of incident response investigations
- Leverage EDR solutions, cloud platforms (AWS, Azure, GCP), and threat intelligence to identify attacker TTPs
- Conduct incident response within various Cloud, OT, and traditional enterprise environments
- Develop indicators of compromise and contribute to comprehensive attack timelines
- Create automation tools and scripts to improve team efficiency and investigation capabilities
- Mentor and train 2-4 investigators across multiple cases, building team capability
- Lead medium to large workstreams (20-50+ systems) with minimal oversight
- Support Primary Investigators with technical decision-making and investigation strategy
- Translate strategic investigation direction into tactical tasks for team execution
- Effectively communicate and interface with customers, both technically and strategically, including with legal counsel
- Author comprehensive written client reports on investigative findings with defensible conclusions
- Present technical findings in client calls when appropriate
- Support Accenture leadership in properly scoping engagements with innovative methodical approaches
- Travel may be required; amount of travel 0-100% depending on business need
What We're Looking For
- Bachelor's degree or equivalent (minimum 12 years) work experience; if Associate’s Degree, minimum 6 years
- Minimum 4 years of Digital Forensics, Incident Response (DFIR) experience with demonstrated expertise in complex investigations
- Ability to obtain US security clearances as required by client engagement
- Minimum of 3 years demonstrated experience in:
- Enterprise incident response, digital forensics and cyber incident investigation processes
- Common DFIR toolsets (Volatility, X-Ways, FTK, EnCase, Autopsy, etc.)
- Microsoft Windows, GNU/Linux and MacOS operating systems
- Memory forensics and malware analysis
- Developing indicators of compromise and deriving attacker TTPs
- Leading investigation workstreams and mentoring junior team members
- Enterprise environments, Active Directory, and common attack patterns
- Project management, analytical, and client-facing communication skills
- Solving complex forensic challenges, threat hunting on endpoints and networks
- Producing accurate, defensible, well-documented analyses
- Eradication techniques, monitoring improvements, and protection capabilities
- Developing and implementing dynamic remediation plans in conjunction with IR engagements
Nice to Have
- Cloud environments (AWS, Azure, GCP) and cloud-native forensics
- OT and ICS environments
- Proficiency in scripting and programming languages (Python, PowerShell, Bash)
- Experience with reverse engineering and sandboxing technologies
- Advanced malware analysis capabilities (unpacking, deobfuscation, behavior analysis)
- Contributions to open-source DFIR tools or methodologies
- Active participation in the security community (conferences, publications, training development)
- Security certifications such as GCFA, GCFE, GREM, GCIH, CEH, or similar
- Advanced certifications (SANS 500-level, OSCP, OSCE)
Compensation & Benefits
- Compensation: Annual salary range varies by location; example ranges include California $70,350–$205,800, Cleveland $59,100–$164,600, Colorado $63,800–$177,800, District of Columbia $68,000–$189,300, Illinois $59,100–$177,800, Maine $54,400–$151,400, Maryland $63,800–$177,800, Massachusetts $63,800–$189,300, Minnesota $63,800–$177,800, New York $66,300–$205,800, among others
- Benefits include medical, dental, vision, life, long-term disability, a 401(k) plan, bonus opportunities, paid holidays, and paid time off
- See more information on benefits: U.S. Employee Benefits | Accenture