Forensics Investigator
The Forensics Investigator is responsible for the investigation processes after a cyber-threat or incident. He/ She is responsible to collect and analyze the threat data from the affected systems. He is also responsible for performing the forensics investigation and determining the root cause of cyber-attacks. He is familiar with different types of threats, cyber security standards, protocols and frameworks, and acts in accordance with the Cyber Security Act 2018. He is knowledgeable of hardware and software applications to analyze threat data from various sources. The Forensics Investigator is diligent and takes an analytical approach to perform analyses and uncover insights. He is skilled in synthesizing trends and insights, and is confident in putting forth creative mitigation plans and solutions to mitigate security incidents.
Skills and Competencies
Technical Skills & Competencies
Generic Skills & Competencies
Critical Work Functions and Key Tasks
• Collect information from affected stakeholders and document the impact of the cyber-attack
• Scan IT systems to retrieve information from storage and other electronic devices
• Collect and decrypt threat data from affected IT systems
• Perform cross analysis of threat data with existing threat database to classify the threat data
• Conduct forensic analysis and investigations to determine the causes of security incidents
• Distil key insights and impact from analyses of security incidents
• Contain the impact of security incidents
• Prepare investigative reports detailing incident findings, analysis and conclusions
• Update threat database based on investigation findings
• Provide insights and recommendations to affected stakeholders on post investigation findings
and cyber-attack mitigation strategies