About The Position

The Senior Cybersecurity Digital Forensic Investigator is responsible for conducting digital forensic investigations in support of cybersecurity incidents across AT&T's enterprise environment. This role partners closely with Incident Response, Threat Intelligence, Malware Analysis, Engineering, and platform teams to determine what occurred, how it occurred, what systems were impacted, and what actions are required to reduce future risk. The investigator is responsible for analyzing digital evidence, reconstructing timelines, determining scope and impact, identifying attack vectors, and producing technically accurate and defensible reports. This position requires independent investigative work, strong technical analysis skills, and the ability to communicate findings to both technical and non-technical audiences. This role participates in an on-call rotation and supports investigations involving endpoint systems, cloud environments, identity platforms, network infrastructure, applications, and enterprise telecommunications systems. The position requires a strong foundation in digital forensics and a working understanding of modern threat actor tradecraft, incident response, cloud technologies, and artificial intelligence.

Requirements

  • Minimum 3 years of experience in Digital Forensics, Incident Response, Cyber Threat Hunting, Security Operations, or a related cybersecurity discipline.
  • Experience conducting investigations involving Windows, Linux, macOS, cloud platforms, or enterprise network environments.
  • Experience analyzing forensic artifacts, logs, endpoint telemetry, and other investigative data sources.
  • Experience documenting findings and preparing technical reports.
  • Experience or working knowledge in several of the following areas: Digital Forensics, Live Response, Memory Forensics, Endpoint Investigations, Cloud Forensics, Incident Response, Threat Intelligence, Malware Analysis Fundamentals, Log Analysis, Network Security and Protocols, SIEM Platforms, EDR Platforms, Windows, Linux, and macOS, Public Cloud Platforms (AWS and Azure), Scripting and Automation (Python, PowerShell, Bash, or similar), Identity and Access Management, Web Applications and APIs, Security Vulnerabilities and Attack Techniques.
  • Experience with Generative AI technologies, AI-assisted analysis techniques, and security considerations associated with AI systems.
  • Applicants should be comfortable leveraging AI as a productivity and analytical tool while maintaining human validation of investigative conclusions.
  • Bachelor’s degree (BS/BA) desired in Computer Science or Cybersecurity.
  • 3+ years of related experience.
  • Certification is required in some areas.

Nice To Haves

  • Industry certifications such as GCFA, GCFE, GCIH, GNFA, GCIA, CISSP, EnCE, CFCE, or equivalent.
  • Experience supporting large-scale enterprise investigations.
  • Experience with cloud-native security investigations.
  • Experience supporting investigations involving telecommunications, network infrastructure, or large distributed environments.

Responsibilities

  • Conduct digital forensic investigations associated with cybersecurity incidents and suspicious activity.
  • Collect, preserve, process, and analyze digital evidence while maintaining evidentiary integrity and chain of custody.
  • Perform endpoint, memory, log, cloud, network, and live-response forensic analysis.
  • Determine attack scope, affected assets, root cause, and extent of compromise.
  • Reconstruct investigative timelines using forensic artifacts, telemetry, and log sources.
  • Produce detailed technical reports and executive-level summaries documenting investigative findings.
  • Collaborate with Incident Response, Threat Intelligence, Malware Analysis, platform teams, Legal, and other stakeholders during investigations.
  • Support investigations involving on-premises, cloud, and hybrid environments.
  • Utilize forensic findings to identify security control gaps and recommend improvements.
  • Assist with the development and improvement of forensic processes, methodologies, automation, and tooling.
  • Participate in an on-call rotation supporting time-sensitive investigations.
  • Remain current on emerging threats, attack techniques, forensic methodologies, and investigative technologies.
  • Evaluate and utilize emerging technologies, including artificial intelligence, to improve investigative efficiency and analytical effectiveness while understanding associated risks and limitations.

Benefits

  • Medical/Dental/Vision coverage
  • 401(k) plan
  • Tuition reimbursement program
  • Paid Time Off and Holidays (based on date of hire, at least 23 days of vacation each year and 9 company-designated holidays)
  • Paid Parental Leave
  • Paid Caregiver Leave
  • Additional sick leave beyond what state and local law require may be available but is unprotected
  • Adoption Reimbursement
  • Disability Benefits (short term and long term)
  • Life and Accidental Death Insurance
  • Supplemental benefit programs: critical illness/accident hospital indemnity/group legal
  • Employee Assistance Programs (EAP)
  • Extensive employee wellness programs
  • Employee discounts up to 50% off on eligible AT&T mobility plans and accessories, AT&T internet (and fiber where available) and AT&T phone
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service