Host-based forensic analysis across windows linux macos
Network forensics using wireshark tcpdump
Cloud log analysis azure aws gcp
**
NTT DATA is seeking an Information Security Incident Response Analyst to support clients during security incidents through technical investigations and digital forensic analysis. The role emphasizes collaboration within a global team and requires a solid understanding of digital forensics, incident response, and effective communication skills.
**
Job Summary
The role supports clients during security incidents by performing technical investigations and analyzing digital forensic evidence across diverse environments.
Candidates must possess hands-on experience investigating ICS/SCADA systems and industrial sectors such as manufacturing, energy, utilities, or critical infrastructure.
This position requires an active UK Security Clearance to deliver services within sensitive or regulated client environments.
Matching Summary
Match Score: 75
**
NTT DATA is seeking an Information Security Incident Response Analyst to support clients during security incidents through technical investigations and digital forensic analysis. The role emphasizes collaboration within a global team and requires a solid understanding of digital forensics, incident response, and effective communication skills.
**
Salary
Not specified; Not specified; Not specified
Skills & Requirements
Must-have
Host-based forensic analysis across Windows Linux macOS
Network forensics using Wireshark tcpdump
Cloud log analysis Azure AWS GCP
SIEM EDR IDS/IPS tool triage experience
OT ICS SCADA incident response background
Active UK Security Clearance required
Nice-to-have
Experience with tabletop exercises and IR readiness assessments
Ability to communicate findings to non-technical audiences
Continuous learning of emerging DFIR techniques
Participation in global team collaboration
Environment hardening support skills
Key Requirements
Bachelor's degree in IT Computer Science or related discipline
SANS GIAC certifications (GSEC GCIA GCIH) preferred
SANS OT/ICS certifications (GICSP GRID) or IEC 62443 required
Proven experience in cybersecurity operations or DFIR services