Bechtel Corporation · 1 day ago
Digital Forensics Response Automation Analyst (DFIR Automation Analyst)
Bechtel Corporation is a global leader in engineering and construction, known for its commitment to delivering successful outcomes. The DFIR Automation Analyst will design and implement automation solutions to enhance incident response capabilities, collaborate with various teams, and lead incident response efforts as needed.
ArchitectureConstructionProject Management
Responsibilities
Design, implement, and continuously improve our incident response capabilities and modernize Bechtel’s computer forensics operations
Assist efforts to modernize our digital forensics tooling and collection processes while leveraging SOAR, Cloud infrastructure, and CI/CD pipelines
Develop and maintain scripts, playbooks, and integrations for forensic data collection, analysis, and reporting
Conduct forensic investigations across cloud (e.g., AWS, Azure, GCP, SaaS, PaaS, and IaaS) and on-premise environments to identify, preserve, and analyze evidence
Collaborate with security operations, IT, and engineering teams to identify automation opportunities and implement scalable solutions
Lead and prioritize incident response command staff efforts across the enterprise, including providing forensic analysis support and/or serving as incident commander
Utilize your expert communication skills to produce greater awareness of goals, projects, and tasks amongst customers and stakeholders
Participate in post-incident reviews and help implement lessons learned into automation strategies
Qualification
Required
Bachelor's Degree in Information Technology, Computer Science, or a related field or 8 years equivalent experience (in lieu of degree)
Must be a United States citizen
5 or more years of general information technology experience with at least 2 of those years in the area of digital forensics or incident response
Familiarity with SOAR (Security Orchestration, Automation, and Response) software with an emphasis on building complex playbooks for automating routine incidents
Familiarity with Incident Response in cloud/hybrid environments (AWS, Azure, GCP, etc)
Demonstrated experience with Gitops, CI/CD, and infrastructure as code (IaC) solutions
Demonstrated knowledge of Windows, Mac, and Linux operating systems
Strong working knowledge of Python, PowerShell, or similar scripting languages
Skilled in SIEM/XDR/EDR platforms (e.g., Splunk, Sentinel, CrowdStrike) including log analysis, correlation, and detection tuning
Solid experience applying all facets of digital forensics and incident response to on-prem and cloud environments
Proven ability to manage yourself, prioritize tasks, and produce high-quality results in a fast-paced environment
Able to work across team boundaries, reach consensus amongst disparate viewpoints, and graciously receive feedback
Strong analytical, documentation, and communication skills
Benefits
Comprehensive medical, dental, and vision plans
Optional disability and supplemental insurance options
Generous paid time off (160 hours annually, accrued 6.16 hours per pay period)
Nine paid holidays
Paid parental leave
Discretionary bonuses
A well-designed 401K plan with matching and profit-sharing components
Company
Bechtel Corporation
Bechtel is a construction company that offers engineering, construction, and project management solutions to its customers.
Funding
Current Stage
Late StageTotal Funding
$499.38MKey Investors
U.K. Export Finance
2021-10-18Debt Financing· $499.38M
Recent News
Morningstar.com
2026-01-20
2025-10-31
Morningstar.com
2025-10-31
Company data provided by crunchbase