CybersecurityJobs.io
← Back to all jobs

Job Description

This Senior Cybersecurity role focuses on digital forensic investigations to support cybersecurity incidents across AT&T’s enterprise environment. You will collaborate with Incident Response, Threat Intelligence, Malware Analysis, engineering, platform teams, and legal stakeholders to determine what occurred, assess scope and impact, identify attack vectors, and recommend actions to reduce future risk.

Location and Work Details

  • Location: Charlotte, NC (onsite)
  • Weekly hours: 40
  • Time type: Regular
  • Work location reference: USA:NC:Charlotte / Ibm Dr - Adm:8505 Ibm Dr

Salary Range

USD 128,400 - 192,600 per year

Seniority note (job board range): $128,400.00 - $192,600.00 USD Annual

Key Responsibilities

  • Conduct digital forensic investigations tied to cybersecurity incidents and suspicious activity.
  • Collect, preserve, process, and analyze digital evidence while maintaining evidentiary integrity and chain of custody.
  • Perform forensic analysis across endpoints and memory, as well as logs, cloud, network, and live-response sources.
  • Identify attack scope, affected assets, root cause, and extent of compromise.
  • Reconstruct investigative timelines using forensic artifacts, telemetry, and log sources.
  • Produce detailed technical reports and executive-level summaries that document investigative findings.
  • Collaborate with Incident Response, Threat Intelligence, Malware Analysis, platform teams, Legal, and other stakeholders during investigations.
  • Support investigations across on-premises, cloud, and hybrid environments.
  • Use forensic results to identify security control gaps and recommend improvements.
  • Support development and improvement of forensic processes, methodologies, automation, and tooling.
  • Participate in an on-call rotation to support time-sensitive investigations.
  • Stay current on emerging threats, attack techniques, forensic methodologies, and investigation technologies.
  • Evaluate and utilize emerging technologies, including artificial intelligence, to improve investigative efficiency and analytical effectiveness while understanding associated risks and limitations.

Required Qualifications

  • Minimum 3 years of experience in Digital Forensics, Incident Response, Cyber Threat Hunting, Security Operations, or a related cybersecurity discipline.
  • Experience investigating environments involving Windows, Linux, macOS, cloud platforms, or enterprise network environments.
  • Experience analyzing forensic artifacts, logs, endpoint telemetry, and other investigative data sources.
  • Experience documenting findings and preparing technical reports.
  • Experience or working knowledge in several of the following areas: Digital Forensics; Live Response; Memory Forensics; Endpoint Investigations; Cloud Forensics; Incident Response; Threat Intelligence; Malware Analysis Fundamentals; Log Analysis; Network Security and Protocols; SIEM Platforms; EDR Platforms; Windows, Linux, and macOS; Public Cloud Platforms (AWS and Azure); Scripting and Automation (Python, PowerShell, Bash, or similar); Identity and Access Management; Web Applications and APIs.

Technologies

  • Windows, Linux, macOS
  • AWS, Azure
  • Python, PowerShell, Bash
  • SIEM Platforms, EDR Platforms
  • Identity and Access Management
  • Web Applications and APIs
  • Generative AI technologies

Education

Bachelor’s degree (BS/BA) desired in Computer Science or Cybersecurity

Preferred Qualifications

  • Industry certifications such as GCFA, GCFE, GCIH, GNFA, GCIA, CISSP, EnCE, CFCE, or equivalent.
  • Experience supporting large-scale enterprise investigations.
  • Experience with cloud-native security investigations.
  • Experience supporting investigations involving telecommunications, network infrastructure, or large distributed environments.

Benefits

  • Medical/Dental/Vision coverage
  • 401(k) plan
  • Tuition reimbursement program
  • Paid Time Off and Holidays (based on date of hire, at least 23 days of vacation each year and 9 company-designated holidays)
  • Paid Parental Leave
  • Paid Caregiver Leave
  • Adoption Reimbursement
  • Disability Benefits (short term and long term)
  • Life and Accidental Death Insurance
  • Supplemental benefit programs: critical illness/accident hospital indemnity/group legal
  • Employee Assistance Programs (EAP)
  • Extensive employee wellness programs
  • Employee discounts up to 50% off on eligible AT&T mobility plans and accessories, AT&T internet (and fiber where available) and AT&T phone

What Candidates Should Expect

  • Writing detailed investigative reports.
  • Leading investigations from evidence collection through final reporting.
  • Working directly with engineers, security teams, and business stakeholders.
  • Participating in an on-call rotation.
  • Handling multiple investigations with competing priorities.
  • Operating with a high degree of independence and accountability.
  • Supporting investigations that may require rapid response and extended collaboration during significant cybersecurity events.

Job Contribution

  • Use advanced, interdisciplinary knowledge to resolve difficult and complex issues using broad professional concepts.
  • Guide others by applying advanced principles and company practices.
  • Lead moderate sized projects or parts of larger projects with strategic value.
  • Operate autonomously with frequent senior leadership interaction.

Supervisor

No

Role Differentiator

Manages complex cybersecurity work.

Similar Jobs