Hiring.Camp

Senior Incident Response & Digital Forensics Consultant

NVISO

·

Jan 20, 2026

Location
Greece
Workplace
Hybrid
Department
Professional / Experienced
Seniority
Senior
Source
JOIN

Description

**Who are we?**

It all starts with the mission: NVISO is here to protect European society from potentially devastating cyber attacks! This means we offer cyber security services to private and governmental organizations to help them better prepare for, prevent, detect and respond to cyber security incidents.

All of this is built on four fundamental values that define who we are: We are Proud, We Break Barriers, We Care and No BS!

## Tasks

**What will you do?**

As a **Senior Incident Response** **Consultant**, you will support the NVISO incident response team (CSIRT) in responding to a wide range of cyber incidents. In addition to incident response and forensic engagements, you will work closely with the rest of the team to build & automate incident response processes, analytical capabilities, including threat hunting. You act as Incident Lead by setting investigative questions, delegating technical analysis tasks, and steer containment and eradication strategies. You produce high-quality forensic and executive reports to present findings to technical stakeholders and executives. You occasionally peer-review case notes, artifacts, and draft reports.

**Your responsibilities:**

  • Perform **host forensics** (Magnet AXIOM Cyber, X-Ways, Autopsy), **network forensics** (Wireshark, tshark), **memory forensics** (Volatility, MemProcFS), and **log analysis**, **including cloud telemetry** (Microsoft 365/Azure, AWS, Google Cloud/Workspace), in support of cyber incident investigations.
  • **Lead single-system forensic** analysis and contribute meaningfully to complex intrusions, including those with lateral movement, perform timeline analysis of compromised hosts and conduct live response artifact capture, volatile data collection, containment to support eradication and recovery efforts.
  • Perform **basic malware triage** of executables and malicious scripts (static and behavioral) to inform containment and eradication strategies.
  • **Lead customer calls** during incidents and contribute to cyber crisis management, and deliver status reports, planning for containment, eradication and recovery efforts, and input to executive-ready communications.
  • **Support improvement projects** related to automation in digital forensics and further develop NVISO tools and incident response processes.
  • **Perform threat hunting engagements** within customer environments, including technical planning, requirements definition, execution, and reporting.
  • Assist in other engagements such as tabletop exercises, incident and forensic readiness assessments, and threat-intelligence-related briefings.

## Requirements

  • **You hold citizenship in one of the 32 NATO member states.**
  • 3+ years of hands-on experience, including acting as an incident response case lead.
  • Strong knowledge of cyber intrusion analysis, incident response, digital forensics on Windows/MacOS/Unix, with demonstrated expertise in memory forensics (Volatility, MemProcFS), timeline analysis (e.g., MFTECmd, KAPE, Plaso/Timesketch), and disk forensics (Magnet AXIOM Cyber, X-Ways, Autopsy).
  • Proficiency with live response tooling (e.g., Velociraptor, GRR Rapid Response, EDR live response) and coordinating remediation actions.
  • Up-to-date on the latest cybersecurity threats and attacker TTPs.
  • Excellent analytical and problem-solving skills with an eye for detail in documentation.
  • Effective communication and interpersonal skills to work collaboratively with clients and cross-functional teams.
  • Ability to remain calm during crisis situations and prioritize effectively under pressure.
  • Language: English (must have), German (nice to have)

**Your availability**

  • We have an On-call rotation, typically one week per month.

## Benefits

**What do we offer**

At NVISO, we care. We are committed to offering you a highly competitive remuneration package including financial and non-financial components:

  • A training budget of 10.000€ and 10 days every 2 years.
  • Flexible working model and home office possibilities (+working abroad options).
  • Statutory leave plus 5 additional leave days by NVISO.
  • Additional benefits on a monthly and annual basis.
  • An entrepreneurial and agile company, where you will be stimulated and supported in driving new initiatives (either through internal innovation or by improving our service offering), without losing sight of having fun!
  • Working and learning from the best people in the European cyber security industry. We have multiple SANS Instructors working at NVISO, our staff has presented at popular hacking conferences (BlackHat, BruCON, OWASP, etc) and all of our technical staff can acquire deep technical security certifications (GSE, GXPN, GREM, GCFA, OSCP, etc).
  • Our commitment to coach and counsel you and help you grow; each employee receives a personal coach within the team, whose role is to ensure your well-being and helps you grow in your career!

**IF YOU’RE INTERESTED, PLEASE SEND US YOUR APPLICATION!**

**WE’RE LOOKING FORWARD TO MEETING YOU!**

**Disclaimer on the Use of AI Tools in the Application Process**

Please be aware that the creation and submission of application documents (e.g. CV, cover letter, case studies, etc.) using AI-powered tools is only permitted to a **limited extent**.

_Our expectations:_

  • Application documents must authentically reflect your own qualifications, personality, and motivation.
  • The use of AI for supportive purposes (e.g. spell-checking, improving wording) is acceptable.
  • **Fully generated application documents created by AI without personal adaptation or review are not permitted.**
  • Under no circumstances may **NVISO information, data, or documents** be uploaded to or processed by external AI tools.

We reserve the right to exclude applications from the selection and interview process that are clearly created primarily or exclusively by AI and show no recognizable personal input.

The purpose of this policy is to ensure a fair and transparent recruitment process and to obtain an authentic impression of our applicants.

Benefits

**What do we offer** At NVISO, we care. We are committed to offering you a highly competitive remuneration package including financial and non-financial components: * A training budget of 10.000€ and 10 days every 2 years. * Flexible working model and home office possibilities (+working abroad options). * Statutory leave plus 5 additional leave days by NVISO. * Additional benefits on a monthly and annual basis. * An entrepreneurial and agile company, where you will be stimulated and supported in driving new initiatives (either through internal innovation or by improving our service offering), without losing sight of having fun! * Working and learning from the best people in the European cyber security industry. We have multiple SANS Instructors working at NVISO, our staff has presented at popular hacking conferences (BlackHat, BruCON, OWASP, etc) and all of our technical staff can acquire deep technical security certifications (GSE, GXPN, GREM, GCFA, OSCP, etc). * Our commitment to coach and counsel you and help you grow; each employee receives a personal coach within the team, whose role is to ensure your well-being and helps you grow in your career!

Similar Jobs

30

Senior Security Engineer, Incident Response Team (Australia)

GitLab · Remote, Australia · Remote

Today

Senior Incident Response & Resiliency Engineer

Cloudera Careers · US-California-Remote, United States of America +1 · Hybrid, Remote

Yesterday

Ingeniero/a senior incident response

Repsol · Campus Repsol-Madrid, Spain

Yesterday

Senior Incident Response Consultant

Pondurance · McLean, VA · Hybrid

2 days ago

Senior Manager, Security Operations - Detection Engineering & Incident Response

Purestorage · Santa Clara, California +1 · Hybrid, Onsite

3 days ago

senior cybersecurity incident response engineer (Remote, US)

Starbucks · Seattle, WA,US, US +1

3 days ago

Senior Security Incident Response Analyst (m/f/x)

Scalable GmbH · München, BY, Germany · Hybrid

1 week ago

Senior Security Incident Response Analyst (m/f/x)

Scalable GmbH · Berlin, BE, Germany · Hybrid

1 week ago

Senior Incident Response Analyst (Global Security)

Rbc · 16 YORK ST:TORONTO, Canada

1 week ago

Senior Information Security Engineer - Incident Response

LinkedIn · Remote, UNITED STATES, United States · Remote

1 week ago

Senior Incident Response Analyst

OpenLoop Health · United States - Remote · Remote

1 week ago

Senior Incident Response Analyst

Hogan Lovells Careers · Washington DC, United States of America +4

2 weeks ago

Senior Associate, Digital Forensics and Incident Response

Kroll · United Kingdom, GB

2 weeks ago

Senior Cybersecurity Incident Response Specialist

UltraViolet Cyber · Hyderabad · Onsite

2 weeks ago

Incident Response Analyst, Senior

Booz Allen Hamilton · USA, MD, Bethesda (6555 Rock Spring Dr), United States of America

2 weeks ago

Senior SOC Analyst - Incident Response

GHD · London, United Kingdom, GB · Hybrid

2 weeks ago

Incident Response Analyst, Senior

Booz Allen Hamilton · USA, DC, Washington (100 F St NE), United States of America

2 weeks ago

Incident Response Sr. Consultant

Crowdstrike · AUS NW Remote, Australia +6 · Remote

2 weeks ago

Incident Response Senior Consultant (Remote)

Crowdstrike · JPN Remote, Japan +3 · Remote

2 weeks ago

Senior Cybersecurity Incident Response Expert

Robert Bosch · hosur road bangalore, India

3 weeks ago

Senior Incident Response Consultant 2

Sophos · Canada · Remote

3 weeks ago

Senior Associate, Incident Response

Kroll · United States, US

3 weeks ago

Senior Associate , Incident Response

Kroll · United States, US

3 weeks ago

Senior Incident Response Manager, Public Safety

Axon · New York, New York, United States

3 weeks ago

Senior Security Monitoring and Response Analyst (Incident Reponder)

Mastercard · Pune, India

3 weeks ago

Senior Incident Response Forensic Investigator

DXC Technology · BG108 - Sofia Business Park, Bldg. 15 (BG108), Bulgaria

3 weeks ago

Senior Incident Response Engineer

Sinch · Chicago, Illinois, United States, US

3 weeks ago

Incident Response Senior Consultant (Remote)

Crowdstrike · USA CA Remote, United States of America · Remote

4 weeks ago

Senior Information Security Analyst (Fraud Incident Response)

Td · 310/320 Front Street West Corporate, Toronto, Ontario, Canada · Onsite

4 weeks ago

Senior Director, Digital Forensics & Incident Response

Astrazeneca · US - Gaithersburg - MD, United States of America · Hybrid

4 weeks ago