// CAREERS · JOB OPENING
Professional Cloud & Forensic Operator.
In this position you are far more than a pure analyst. You are a hybrid expert who combines forensic precision with the ability to understand and question complex IT infrastructures. You reconstruct attacks in hybrid environments and use cloud-native technologies to accelerate forensics.
Your core responsibilities
- 01Deep-dive forensics
Conducting court-proof digital forensics (disk, memory, network) in complex enterprise scenarios.
- 02Cloud incident response
Investigating compromises in M365, AWS, GCP and Azure. You know log sources such as CloudTrail, GuardDuty or Sentinel by heart.
- 03Infrastructure transfer skills
You don’t just analyze the intrusion — you understand the underlying architecture (AD, virtualization, network segments) to eliminate the root cause holistically.
- 04Forensic Infrastructure as Code (IaC)
You build forward-looking cloud infrastructures for the incident case. Using Terraform and SaltStack you realize on-demand deployment of isolated analysis environments (e.g. forensic VMs with automated connection to central analysis servers).
- 05Automated collection & processing
Developing automation to accelerate the forensic workflow. You use Python or scripting languages to scale data collection, triage and processing at large scale.
- 06Strategic hardening guidance
Deriving hardening strategies from forensic findings to sustainably increase the resilience of customer environments.
Your profile (Professional Level)
- 01Forensic excellence
Several years of relevant experience in digital forensics and incident response (DFIR). Confident use of common toolsets for artifact analysis, triage and disk forensics.
- 02Cloud-native expertise
In-depth knowledge of the security architectures of AWS, GCP or Azure and a solid understanding of how M365 tenants work.
- 03Infrastructure generalist
Broad understanding of modern IT infrastructures (hybrid cloud, Kubernetes, Active Directory, complex routing stacks). You speak infrastructure fluently and know how to isolate it for analysis.
- 04DevOps & automation skills
Confident use of IaC tools (Terraform) and configuration management (SaltStack, Ansible or comparable) to provision forensic stacks at the push of a button.
- 05Coding basics
You have minimal coding experience (Python, PowerShell or Go) to script forensic processes and work with APIs.
- 06Mindset
A problem solver with an eye for the big picture. In crisis situations you remain the technical anchor and make well-founded decisions.
APPLY NOW
Sound like you?
Send us your application via our secure contact channel — confidential and straightforward.