Associate Consultant, Digital Forensics and Incident Response

Company: Control Risks
Apply for the Associate Consultant, Digital Forensics and Incident Response
Location: London
Job Description:

Overview

In this role you will combine digital forensics, incident response and eDiscovery to support clients across law firms, corporates and government sectors. You’ll preserve and analyze digital evidence, deliver defensible results, and contribute to DFIR and data insights teams while collaborating with cyber response and investigations groups. You will stay current with forensic techniques and may provide expert testimony. This role offers hands-on DFIR work, international exposure and opportunities to shape client outcomes.

Pay / Benefits

  • discretionary global bonus scheme
  • hybrid working
  • flexible and remote working
  • equal opportunities employer
  • transparent compensation package
  • career development opportunities

Responsibilities

  • Collect and preserve digital data using industry-standard tools
  • Assist with forensic analysis and cyber security services for clients
  • Support Investigation teams across regions
  • Deliver high-quality, timely client deliverables
  • Ensure work is defensible and evidential
  • Provide expert testimony in court when required
  • Demonstrate initiative and innovation in day-to-day tasks
  • Travel internationally up to 25%
  • Stay up to date with latest digital forensic techniques and trends

Key requirements

  • Experience in forensic data acquisitions and involvement in digital investigations with detailed notes
  • Knowledge of Windows, Linux, on-premise and cloud infrastructures (Microsoft 365, Azure, AWS, Google Workspace)
  • Experience with common forensic tools (e.g., Logicube Falcon, Velociraptor, EnCase, FTK, Nuix, X-Ways, Axiom, IEF, Blacklight, Kali, WinFE, DEFT, Cellebrite, XRY)
  • Ability to use PowerShell, Bash, Python, SQL and data wrangling for log analysis
  • Demonstrable computer forensics experience and awareness of international standards
  • Understanding of best practices (NPCC, NIST, ISO17025) for evidence handling
  • Knowledge of MITRE ATT&CK, Cyber Kill Chain, network topology and EDR solutions
  • Excellent written and verbal communication skills
  • Educated to BSc in IT or related technical degree (or equivalent experience)
  • Forensic accreditation (e.g., EnCE, ACE, GCFE) (preferred)
  • DFIR/security operations internship or work experience (preferred)
  • Excellent presentation skills
  • Client-facing communication and consultative service experience
  • Strong written and verbal communication
  • Forensic tools and data acquisition/analysis
  • Scripting and data analysis (PowerShell, Bash, Python, SQL)
  • Cloud and multi-OS infrastructure knowledge (Windows, Linux)

…

Posted: September 14th, 2026