DFIR Analyst

Columbia Advisory GroupAlbany, NY
Hybrid

About The Position

Junior-level security operations and incident response role supporting SOC investigations, alert triage, endpoint analysis, incident escalation, and active cybersecurity response. The position will provide exposure to broader DFIR investigations, but the primary day-to-day focus is security operations and incident response rather than forensic lab work.

Requirements

  • Must currently reside in the Albany, NY area and be willing to work partially onsite.
  • Degree, technical training, internship, or early professional experience in cybersecurity, information technology, or a related field
  • Foundational understanding of Windows systems, networking, Active Directory, and general cybersecurity concepts
  • Familiarity with SIEM, EDR, security alerts, endpoint telemetry, or security monitoring concepts
  • Basic understanding of incident response processes and common attacker techniques
  • Ability to investigate alerts, gather relevant evidence, and clearly document investigative steps and findings
  • Strong analytical skills and attention to detail
  • Comfortable escalating findings and working alongside senior SOC and incident response personnel
  • Eligible to work for any U.S. employer without ever requiring sponsorship or a 3rd party
  • Able to pass a background check
  • Currently living in the Albany, NY area and willing to work hybrid/partially onsite

Nice To Haves

  • Exposure to Microsoft 365, Entra ID, CrowdStrike, or similar security platforms is beneficial
  • Familiarity with PowerShell, command-line tools, log analysis, or scripting is a plus
  • Digital forensics knowledge is beneficial but not required
  • Prior internship, military, law enforcement technical, help desk, MSP, NOC, or SOC experience is a plus
  • High-potential candidate with strong technical fundamentals who wants to develop into incident response and DFIR.
  • Prior full-time DFIR experience is not required.

Responsibilities

  • Supporting SOC investigations
  • Alert triage
  • Endpoint analysis
  • Incident escalation
  • Active cybersecurity response
  • Broader DFIR investigations

Benefits

  • benefits package
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service