Investigator, Digital Forensics
Gijima Staffing Solutions - HCM
George, Western Cape
Opens the original listing in a new tab. Applying is free. Never pay money to get a job — report anyone who asks.
Cyber security roles across analyst, engineer and governance positions, concentrated in banking, telecoms and the large consultancies.
Job description
Job Purpose Conduct in-depth digital forensic investigations to identify, preserve, acquire, analyse and report on digital evidence relating to fraud, cybercrime, misconduct, insider threats, data breaches and other technology-related incidents. The role will ensure investigations are conducted in accordance with established digital forensic frameworks, legal requirements, evidentiary standards and organisational policies.
Key Responsibilities
- Data Management and Analysis
- Gather, preserve, acquire, extract and analyse digital evidence from endpoints, servers, mobile devices, cloud environments, Microsoft 365, network infrastructure and other digital sources.
- Recover deleted, hidden, encrypted or damaged data using approved forensic methodologies and industry-standard tools.
- Conduct forensic analysis of user activity, email communications, authentication records, cloud audit logs, browser activity and application artefacts.
- Analyse digital evidence to establish timelines, user activity, indicators of compromise and other relevant investigative findings.
- Prepare detailed forensic reports, findings, conclusions, recommendations, statistics and trend analysis for relevant stakeholders.
- Maintain an accurate chain of custody and ensure the secure storage, management, retention and disposal of digital evidence in accordance with organisational requirements.
- Technology and Digital Forensics
- Conduct endpoint, mobile, cloud, network, memory and malware forensic investigations.
- Perform forensic investigations across Microsoft Azure, Microsoft 365, AWS, Google Cloud Platform and SaaS environments.
- Utilise digital forensic, eDiscovery and security technologies such as EnCase, FTK, Magnet AXIOM, Cellebrite, MSAB XRY, Microsoft Sentinel, Microsoft Defender and Microsoft Purview.
- Apply appropriate forensic methodologies to identify, collect, preserve and analyse evidence while maintaining its integrity and admissibility.
- Stay abreast of emerging forensic technologies, techniques, digital threats and investigative methodologies.
- Risk, Regulatory and Compliance
- Conduct digital forensic investigations in accordance with applicable legislation, regulatory requirements, organisational policies and evidentiary standards.
- Perform root cause analysis to identify control weaknesses, vulnerabilities and contributing factors.
- Recommend corrective and preventative actions to reduce the likelihood of recurrence.
- Prepare affidavits, witness statements, forensic reports and other evidential documentation for disciplinary, civil, regulatory and criminal proceedings.
- Present and explain forensic findings to senior stakeholders, legal representatives, investigators and other relevant parties.
- Provide expert evidence or testimony at disciplinary hearings, tribunals, regulatory proceedings or court proceedings when required.
- Identify and escalate emerging digital crime trends, risks, vulnerabilities and significant investigative findings.
Qualifications And Experience Minimum Qualification
- Bachelor's degree in Digital Forensics, Cyber Security, Computer Science, Information Security, Information Systems or a related field.
Minimum Experience
- 5–7 years' experience in Digital Forensics, Digital Investigations, Incident Response, Cyber Investigations or a closely related discipline.
- Demonstrated experience conducting complex digital forensic investigations across multiple technology environments.
- Experience gathering, preserving and analysing digital evidence while maintaining proper chain-of-custody procedures.
- Experience preparing evidential/forensic reports and presenting findings to senior stakeholders, legal representatives, regulators or other relevant parties.
- Experience providing forensic evidence or testimony in disciplinary, regulatory, civil or criminal proceedings would be advantageous.
Preferred Certifications
- GIAC: GCFA, GCFE, GNFA, GCTI
- Digital Forensics: EnCE, CFCE, CCE, CHFI
- Information Security: CISSP, CISM
- Microsoft Security Certifications
- AWS Certified Security – Specialty
- Google Professional Cloud Security Engineer
Desired Skills
- Incident Response
- Endpoint Forensics
- Cloud Forensics
Employer & Job Benefits
- Leave benefits
Found on LinkedIn · Posted 3 weeks ago · Last checked 2 weeks ago
Good to know
What does this cyber security job pay?
The salary is not listed on this cyber security role. Check the source listing or ask the employer when you apply.
Do I need experience for cyber security jobs in George?
This cyber security role may ask for some experience or a relevant qualification. Read the listing for the specifics before you apply.
How do I apply for this job?
Tap "Apply on LinkedIn" to open the original listing, where you can read the full description and apply directly. JobsZA never charges you to apply, and you should never pay money to get a job.
Found on LinkedIn · Posted 3 weeks ago
More cyber security and similar jobs in George
Placements24 · George, Western Cape