Talent Apply
Log in
All jobs
A

Senior Investigator, Digital Forensics & Incident Response (DFIR) Security Consulting Team Lead/Consultant | Mid-Level | Full-time

Accenture
Multiple Locations
On-siteUSD 54,400 - 205,800 / year

About this role

Job title: Senior Investigator, Digital Forensics & Incident Response (DFIR) Security Consulting Team Lead/Consultant | Mid-Level | Full-time

About the Role Accenture Security's CIFR practice seeks a hands-on, senior investigator to lead complex DFIR engagements across cloud, on-premises, and OT environments. The role combines technical investigations with client-facing leadership, mentorship, and the ability to translate strategic direction into tactical actions during high-pressure incidents.

What You'll Do

  • Conduct complex forensic analysis including advanced memory forensics, malware triage, encrypted artifact recovery, and anti-forensics detection
  • Perform host and network digital forensics, log analysis, and threat hunting in support of incident response investigations
  • Leverage EDR solutions, cloud platforms (AWS, Azure, GCP), and threat intelligence to identify attacker TTPs
  • Conduct incident response within various Cloud, OT, and traditional enterprise environments
  • Develop indicators of compromise and contribute to comprehensive attack timelines
  • Create automation tools and scripts to improve team efficiency and investigation capabilities
  • Mentor and train 2-4 investigators across multiple cases, building team capability
  • Lead medium to large workstreams (20-50+ systems) with minimal oversight
  • Support Primary Investigators with technical decision-making and investigation strategy
  • Translate strategic investigation direction into tactical tasks for team execution
  • Effectively communicate and interface with customers, both technically and strategically, including with legal counsel
  • Author comprehensive written client reports on investigative findings with defensible conclusions
  • Present technical findings in client calls when appropriate
  • Support Accenture leadership in properly scoping engagements with innovative methodical approaches
  • Travel may be required; amount of travel 0-100% depending on business need

What We're Looking For

  • Bachelor's degree or equivalent (minimum 12 years) work experience; if Associate’s Degree, minimum 6 years
  • Minimum 4 years of Digital Forensics, Incident Response (DFIR) experience with demonstrated expertise in complex investigations
  • Ability to obtain US security clearances as required by client engagement
  • Minimum of 3 years demonstrated experience in:
  • Enterprise incident response, digital forensics and cyber incident investigation processes
  • Common DFIR toolsets (Volatility, X-Ways, FTK, EnCase, Autopsy, etc.)
  • Microsoft Windows, GNU/Linux and MacOS operating systems
  • Memory forensics and malware analysis
  • Developing indicators of compromise and deriving attacker TTPs
  • Leading investigation workstreams and mentoring junior team members
  • Enterprise environments, Active Directory, and common attack patterns
  • Project management, analytical, and client-facing communication skills
  • Solving complex forensic challenges, threat hunting on endpoints and networks
  • Producing accurate, defensible, well-documented analyses
  • Eradication techniques, monitoring improvements, and protection capabilities
  • Developing and implementing dynamic remediation plans in conjunction with IR engagements

Nice to Have

  • Cloud environments (AWS, Azure, GCP) and cloud-native forensics
  • OT and ICS environments
  • Proficiency in scripting and programming languages (Python, PowerShell, Bash)
  • Experience with reverse engineering and sandboxing technologies
  • Advanced malware analysis capabilities (unpacking, deobfuscation, behavior analysis)
  • Contributions to open-source DFIR tools or methodologies
  • Active participation in the security community (conferences, publications, training development)
  • Security certifications such as GCFA, GCFE, GREM, GCIH, CEH, or similar
  • Advanced certifications (SANS 500-level, OSCP, OSCE)

Compensation & Benefits

  • Compensation: Annual salary range varies by location; example ranges include California $70,350–$205,800, Cleveland $59,100–$164,600, Colorado $63,800–$177,800, District of Columbia $68,000–$189,300, Illinois $59,100–$177,800, Maine $54,400–$151,400, Maryland $63,800–$177,800, Massachusetts $63,800–$189,300, Minnesota $63,800–$177,800, New York $66,300–$205,800, among others
  • Benefits include medical, dental, vision, life, long-term disability, a 401(k) plan, bonus opportunities, paid holidays, and paid time off
  • See more information on benefits: U.S. Employee Benefits | Accenture

Your next opportunity starts here

Prepare, apply, track, interview and get hired — all from one platform, with AI in your corner.

Download app

Or sponsor Premium for someone who's job hunting →