Cybersecurity Digital Forensics Investigator

Integra Mission CriticalDallas, TX

About The Position

The Cybersecurity Digital Forensics Investigator is responsible for conducting cybersecurity investigations involving company-owned cellphones, computers, tablets, electronic devices, cloud services, applications, and digital records. This position collects, preserves, analyzes, documents, and tracks digital evidence while maintaining strict chain-of-custody and confidentiality requirements. The role works closely with internal Cybersecurity, Information Technology, Human Resources, Legal, Compliance, Corporate Security, and executive leadership teams. The investigator may also coordinate with federal law enforcement agencies, government investigators, outside legal counsel, and approved third-party forensic specialists. This position requires strong technical expertise, sound professional judgment, exceptional attention to detail, and the ability to handle sensitive investigations in a confidential, legally defensible, and impartial manner.

Requirements

  • Working knowledge of forensic imaging, evidence validation, file systems, operating-system artifacts, network logs, and security-event data.
  • Experience coordinating sensitive investigations with Legal, Human Resources, Compliance, Corporate Security, or government agencies.
  • Ability to handle highly confidential, privileged, personal, and legally sensitive information.
  • Strong written, verbal, analytical, interviewing, and presentation skills.
  • Ability to obtain and maintain any security clearance, background investigation, or federal eligibility requirement applicable to the position.
  • Bachelor’s degree in Cybersecurity, Digital Forensics, Computer Science, Information Technology, Criminal Justice, or a related field.
  • A minimum of 7 years of experience in cybersecurity, digital forensics, incident response, law enforcement investigations, corporate investigations, or a related discipline.
  • At least 3 years of hands-on experience conducting digital forensic examinations or cybersecurity investigations.
  • Demonstrated experience investigating mobile devices, computers, email systems, cloud environments, and electronic records.
  • Experience maintaining chain-of-custody documentation and producing legally defensible investigation reports.

Nice To Haves

  • Certified Information Systems Security Professional – CISSP
  • GIAC Certified Forensic Examiner – GCFE
  • GIAC Certified Forensic Analyst – GCFA
  • GIAC Advanced Smartphone Forensics – GASF
  • Certified Computer Examiner – CCE
  • EnCase Certified Examiner – EnCE
  • Certified Cyber Forensics Professional – CCFP or equivalent
  • Cellebrite Certified Mobile Examiner – CCME

Responsibilities

  • Conduct cybersecurity and digital forensic investigations involving cellphones, laptops, desktops, tablets, removable media, servers, email systems, cloud platforms, and other electronic devices.
  • Investigate suspected data theft, unauthorized access, insider threats, cybersecurity incidents, policy violations, fraud, intellectual property theft, and misuse of company technology.
  • Acquire and preserve forensic images and other digital evidence using approved forensic tools and legally defensible procedures.
  • Analyze mobile-device data, including call records, text messages, application data, device logs, photographs, files, location-related artifacts, and system activity, when authorized.
  • Examine Windows, macOS, iOS, Android, cloud, email, network, and application artifacts relevant to investigations.
  • Recover, correlate, and analyze deleted, hidden, encrypted, or otherwise protected information when legally authorized and technically feasible.
  • Develop investigation timelines by correlating information from devices, security systems, access records, network logs, email, cloud services, and other authorized sources.
  • Identify indicators of compromise, suspicious behavior, unauthorized data transfers, and potential violations of company policies or applicable laws.
  • Support incident-response activities, including evidence collection, containment analysis, root-cause investigation, and post-incident reporting.
  • Collect, label, preserve, store, transfer, and track digital evidence according to established chain-of-custody procedures.
  • Maintain complete and accurate evidence logs, forensic notes, investigation records, device inventories, and custody documentation.
  • Protect the integrity, authenticity, confidentiality, and availability of all evidence throughout the investigation lifecycle.
  • Verify forensic images and collected data using industry-standard hashing and validation techniques.
  • Ensure evidence is stored securely and accessed only by authorized personnel.
  • Maintain investigation case files in accordance with company retention requirements, legal-hold instructions, contractual obligations, and applicable regulations.
  • Document every investigative action sufficiently to support internal reviews, legal proceedings, regulatory inquiries, or law-enforcement requests.
  • Serve as a technical liaison between the company and authorized federal law enforcement or government investigation teams.
  • Coordinate the secure exchange of approved digital evidence, forensic reports, technical findings, and supporting documentation.
  • Respond to authorized subpoenas, warrants, preservation requests, legal holds, and government information requests in coordination with Legal and executive leadership.
  • Support interviews, technical briefings, case reviews, and evidence presentations involving internal stakeholders, outside counsel, or government investigators.
  • Explain technical findings clearly to investigators, attorneys, executives, and other nontechnical audiences.
  • Provide factual testimony, declarations, affidavits, or expert technical support when authorized and required.
  • Maintain professional independence and ensure that investigative conclusions are based on documented evidence.
  • Maintain a centralized system for tracking investigation cases, devices, evidence, activities, findings, deadlines, and case status.
  • Create detailed forensic reports that clearly describe the scope, methodology, tools used, evidence examined, findings, limitations, and conclusions.

Benefits

  • Competitive pay with incentive opportunities that recognize your results and contributions.
  • Medical, dental, and vision coverage that supports you and your family’s total well-being.
  • Life and disability insurance programs that provide protection when it matters most.
  • A variety of voluntary benefits so you can personalize coverage to fit your needs.
  • Generous paid time off to relax, travel, and maintain a healthy work-life balance.
  • Education assistance and tuition support to help you build skills and advance your career.
  • Retirement and savings programs that help you achieve long-term financial confidence.
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service