For Business
Digital Forensic Analyst
At A Glance
We are seeking an experienced Digital Forensics & Insider Threat (DFIT) Analyst to join the DFIT team within our client’s Global Cyber Defense organization. The ideal candidate will be at the forefront of protecting the company’s most critical digital assets, leading investigations and responding to insider threat alerts on a global scale. They will also bring deep expertise in digital forensic analysis, security investigations and the ability to operate with precision and confidence across complex business and technical environments.
Application Deadline: 20/11/2026
We are the 1st Hub for Developers! Our motto is “From Developers to Developers”! Our vision is to provide real career opportunities for candidates that want to take the next step in their career. Code.Career is the first process that you will speak with developers (only!) and tech (freak) experts!
Employment Type: Full-Time
Our client is one of the world’s leading biopharmaceutical companies, dedicated to discovering, developing, and delivering innovative medicines and vaccines that improve and extend patients’ lives. With a presence in more than 100 countries and a history spanning over 175 years, our client combines cutting-edge science, technology, and global expertise to address some of the world’s most challenging healthcare needs. The company fosters a culture of innovation, collaboration, and continuous learning, empowering its people to drive breakthroughs that make a meaningful impact on global health.
Our client’s Global Cyber Defense team is responsible for safeguarding digital assets and infrastructure through proactive threat detection, incident response and risk mitigation across on-premises, cloud and hybrid environments.
The Digital Forensics & Insider Threat (DFIT) Analyst will join DFIT team within our client’s Global Cyber Defense organization. They will be at the forefront of protecting the company’s most critical digital assets, leading investigations and responding to insider threat alerts on a global scale. The Digital Forensics & Insider Threat (DFIT) Analyst will also bring deep expertise in digital forensic analysis, security investigations and the ability to operate with precision and confidence across complex business and technical environments.
Key Responsibilities
- Collaborate with internal customers to plan and execute forensic support for investigations, ranging from simple to complex cases.
- Collect, process, and analyze electronically stored information (ESI) from various digital sources, including networks, cloud platforms, and end-user devices, adhering to forensic industry standards and maintaining chain of custody.
- Produce accurate, repeatable case documentation and deliver clear written and verbal reports and status updates to customers.
- Participate in the Forensic Investigation Triage process, prioritizing new requests and alert tickets to ensure timely response and resolution.
- Use of industry standard digital forensic tools (such as EnCase, FTK, NUIX, Axiom, Cellebrite, X-Ways and Oxygen).
- Leverage SOC tooling including SIEM platforms and SOAR solutions to detect, investigate, and respond to security incidents and insider threat alerts in a timely and effective manner, including risks arising from enterprise AI use and emerging AI-driven threat vectors.
- Apply data protection and insider threat technologies to monitor, investigate, and remediate potential data loss and policy violations across the enterprise.
- Utilize Agile methodology to plan, manage, and execute projects, ensuring efficient workflow, timely delivery, and high-quality results.
- Manage multiple concurrent investigations and projects with minimal supervision, prioritizing tasks effectively while working both independently and collaboratively across teams, and setting clear expectations with key stakeholders.
- Conduct peer reviews of findings and work products from other examiners to ensure accuracy and quality.
- Respond to investigative requests at short notice, which may require domestic and international travel, and working during extended hours. In exceptional instances this may include weekends and holidays.
- As part of a global team there may be times that require working outside normal business hours to attend meetings, case activities and complete projects.
- Maintain forensic certifications to ensure continued professional standing.
Required Qualifications
- Bachelor’s Degree, preferably in Computer Science, Information Security, Cyber Security, Computer Forensics or commensurate professional experience.
- 3+ years of experience in Digital Forensics within Law Enforcement or within a corporate environment.
- One or more of the following certifications: EnCE, CFCE, GCFE, GASF or GCFA.
- Strong understanding of industry standard digital forensic tools (such as EnCase, FTK, NUIX, Axiom, Cellebrite, X-Ways, Oxygen).
- Experience using physical, local, and remote acquisition tools across multiple OS systems.
- Proficiency with industry-standard SOC tooling, including SIEM and SOAR platforms, to support threat detection, investigation, and incident response.
- Demonstrated experience with data protection and insider threat technologies, with a strong understanding of cloud security, data loss prevention, and user activity monitoring solutions across enterprise environments.
- Familiarity with AI-generated risk and the ability to investigate and respond to AI tool usage within an enterprise environment.
- Understanding of European General Data Protection Regulation (GDPR) or European/Global Privacy laws and related laws in APAC region.
- Outstanding communication skills, including the ability to write and verbally articulate industry terminology to interact at a technical level, management level and senior executive level.
- Experience in effective and efficient time and resource management.
- Apply appropriate technologies across diverse examinations while driving continuous improvements in service delivery efficiency and consistency.
- Mobile device and memory forensic analysis experience would be beneficial.
- Demonstrated experience in an agile work environment possessing qualities such as a collaborative mindset, adaptability to change, and a proactive problem-solving approach.
Nice-to-Have Skills
- Experience with cloud-native forensic investigations across Microsoft Azure, AWS, and Google Cloud Platform (GCP).
- Hands-on scripting or automation experience using Python, PowerShell, or Bash to streamline forensic workflows and evidence collection.
- Exposure to threat hunting, malware analysis, or advanced incident response within enterprise Security Operations (SOC) environments.
- Experience supporting cross-border investigations involving legal, compliance, HR, or regulatory stakeholders in multinational organizations.
- Knowledge of eDiscovery platforms, email forensics (e.g., Microsoft 365 Exchange), and large-scale data review processes.
- Additional industry certifications such as GCIA, GCIH, CISSP, CISM, Azure Security Engineer, or AWS Security Specialty would be considered an advantage.
Salary (Ind.): 28000-30000 € / Per year Gross
Upon further discussion with our client.
Applying for
Your details
We’ll only use this to follow up about this role.

