Back to Jobs

Digital Forensic Examiner and Incident Responder

Remote, USA Full-time Posted 2025-11-24
Accelerate your career. Join the organization that's driving the world's technology and shape the future. Ingram Micro is a leading technology company for the global information technology ecosystem. With the ability to reach nearly 90% of the global population, we play a vital role in the worldwide IT sales channel, bringing products and services from technology manufacturers and cloud providers to business-to-business technology experts. Our market reach, diverse solutions and services portfolio, and digital platform Ingram Micro Xvantageâ„¢ set us apart. Learn more at www.ingrammicro.com Come join our team where you’ll make technology happen in surprising ways. Let’s shape tomorrow - it’ll be a fun journey! The Principal Digital Investigator will work within the Security Incident Response Team (SIRT) to assess, analyze and respond to serious information security events and incidents in a global company.  This position requires relevant digital forensic certifications such as the EnCase Certified Examiner (EnCE), Magnet Axiom Certified Forensic Examiner, Cellebrite Certified Mobile Examiner, and others.  The position also requires significant experience in securing physical and digital evidence and performing forensic examinations.  This position will work with other information security teams as well as Information Systems teams to stop security events in progress, investigate all aspects of an event, and produce written reports.     Your role:  • Perform forensics on network, host, memory, and other artifacts originating from multiple operating systems, applications, or networks and extract IOCs (Indicators of Compromise) and TTP (Tactics, Techniques, and Procedures).  • Investigate incidents leveraging forensics tools including Encase, FTK, X-Ways, Axiom, SIFT, and the SIEM to determine source of compromises and malicious activity that occurred.  • Collect, analyze, assess, and disseminate information about cyber threats and potential attacks.  • Conduct human-driven, proactive, and iterative hunts through enterprise networks, endpoints, or datasets to detect malicious, suspicious, or risky activities that have evaded detection by existing tools.  • Participate with Security Incident Response Team (SIRT) in responding to active and time-sensitive threats including communications and coordination across different teams.  • Maintaining proper chain of custody of evidence and associated documentation  • Testifying in court, Grand Jury, or other legal proceedings through testimony, sworn affidavits, or other legal instruments.  What you bring to the role: • Bachelor’s degree in computer science, Engineering, Science, Math or Cyber Security related field is required. • Work Experience: Minimum 8 - 10 years functional experience including a minimum of 5+ years directly related to this role in incident response and digital forensics. • 3+ years of strong hands-on experience in digital forensics examinations and/or investigations using the EnCase or AXIOM tools. Preference given for experience conducting MacOS examinations. • 3+ years of experience in law enforcement (deputized) investigations (fraud, counterintelligence, high-tech crimes, etc.).  • 3+ years of experience in interviewing after taking a Reid Technique class (or an equivalent). • Advanced knowledge and understanding in various disciplines such as security engineering, system and network security, authentication and security protocols, cryptography, and application security. • Experience with cloud services.  • Strong understanding of vulnerabilities, common attack vectors and has attacker mindset: ability to think about creative threats and attack vectors.   • Strong communication (i.e., written and verbal), presentation, teamwork skills and resourcefulness.   • Deep understanding of internals and constructs of modern operating systems.  (Windows/MacOS/Linux/Unix) • Experience with EnCase, FTK, X-Ways, Axiom, SIFT, Splunk, Elastic Stack, Redline, Volatility, WireShark, TCPDump, and open-source forensic tools.  • Experience with eDiscovery processes and the Relativity One platform • Relevant security certifications (EnCE, MCFE, CFCE, CCME, CCO, CCPA, GNFA, GCFA).  • Provide three current work references & pass a criminal background check  • Pass a proficiency exam related to the role  #LI-RT1 The typical base pay range for this role across the U.S. is USD $133,400.00 - $226,800.00 per year. The ranges above reflect the potential annual base pay across the U.S. for all roles; the applicable base pay range will depend on the candidate’s primary work location, pay grade, and variable compensation plan. Individual base pay within each range depends on various factors, in addition to primary work location, such as complexity and responsibility of role, job duties/requirements, and relevant experience and skills. Base pay ranges are reviewed and typically updated each year. Offers are made within the base pay range applicable at the time of hire. New hires starting base pay generally falls in the bottom half (between the minimum and midpoint) of a pay range. At Ingram Micro certain roles are eligible for additional rewards, including merit increases, annual bonus or sales incentives and long-term incentives. These awards are allocated based on position level and individual performance. U.S.-based employees have access to healthcare benefits, paid time off, parental leave, a 401(k) plan and company match, short-term and long-term disability coverage, basic life insurance, and wellbeing benefits, among others. This is not a complete listing of the job duties.  It’s a representation of the things you will be doing, and you may not perform all these duties. Please be prepared to pass a drug test and successfully pass a pre-employment (post offer) background check. Ingram Micro Inc. is proud to be an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, gender, gender identity or expression, sexual orientation, national origin, genetics, disability, age, veteran status, or any other protected category under applicable law. Apply tot his job Apply To this Job

Similar Jobs

Customer Support & Digital Storytelling Specialist – Remote – arenaflex Home Entertainment Platform (U.S. & UAE)

Remote, USA Full-time

Remote Live Chat Support Specialist – Customer Experience Champion for Digital Service Excellence

Remote, USA Full-time

Remote Online Data Entry Specialist – arenaflex – $35/hr – Customer Service & Operations Support

Remote, USA Full-time

**Experienced Customer Support Specialist – Luxury Fashion and Beauty Customer Service**

Remote, USA Full-time

**Experienced Team Member – Customer Service or Cook at arenaflex in The Colony, TX**

Remote, USA Full-time

**Experienced Customer Success Manager, Onboarding – Accelerate Business Growth with arenaflex**

Remote, USA Full-time

**Experienced Customer Service Representative – Remote Work Opportunity at arenaflex**

Remote, USA Full-time

**Experienced Customer Care Agent – Dutch Desk at arenaflex**

Remote, USA Full-time

**Experienced Visa Consultant (Customer Services and Operations) – Remote Opportunity with arenaflex**

Remote, USA Full-time

Remote High‑Volume Customer Service Chat Agent – Technical Support & Account Assistance (Dallas‑Fort Worth Metroplex)

Remote, USA Full-time

Remote Professional Billing Coder II

Remote, USA Full-time

Home-Based HR and Admin Executive

Remote, USA Full-time

Experienced Customer Service Representative for Remote Work Opportunities – Providing Exceptional Support via Live Chat and Email

Remote, USA Full-time

**Experienced Overnight Customer Care Representative – Live Chat Support Specialist (Remote) at blithequark**

Remote, USA Full-time

**Experienced Business Analytics Data Entry Specialist – Remote Opportunity at arenaflex**

Remote, USA Full-time

School Counseling Coordinator - Chesterfield Virtual School - 2025-2026

Remote, USA Full-time

Nurse Practitioner or Physician Assistant- Virtual Care- Remote - Emergency Medi

Remote, USA Full-time

Associate, Corporate Interest Rate Derivatives

Remote, USA Full-time

Experienced Customer Service Representative – Entry Level Remote Chat Operator Position Available for Immediate Start at blithequark

Remote, USA Full-time

Programmer Advanced - Sunshine Enterprise USA LLC

Remote, USA Full-time