[Hiring] Principal Analyst Cyber Security Ops - Digital Forensics @Fresenius Medical Care
Principal Analyst Cyber Security Ops - Digital Forensics @Fresenius Medical Care
All Others
Salary usd 117,700 - 1..
Remote Location
🇺🇸 USA Only
Employment Type full-time
Posted 2d ago

[Hiring] Principal Analyst Cyber Security Ops - Digital Forensics @Fresenius Medical Care

2d ago - Fresenius Medical Care is hiring a remote Principal Analyst Cyber Security Ops - Digital Forensics. 💸 Salary: usd 117,700 - 196,200 per year 📍Location: USA

Role Description

The Principal Cyber Security Analyst specializing in Digital Forensics serves as the senior technical authority for forensic investigations across the enterprise. This role leads complex incident response cases, conducts advanced forensic analysis of endpoints, servers, cloud environments, and networks, and provides strategic insight to reduce organizational risk. The Principal Analyst acts as the highest level escalation point for investigative matters and mentors other analysts in evidence handling, methodology, and tooling. This is a U.S.-based remote position supporting Fresenius Medical Care’s global Cyber Security Operations Center.

Principal Duties and Responsibilities

  • Lead enterprise level forensic investigations involving malware, insider threats, credential compromise, data exfiltration, fraud, and targeted attacks.
  • Act as technical commander during priority incidents, directing scoping, containment, eradication, and root cause analysis in partnership with IR, IT, and Cloud teams.
  • Conduct root cause, impact, and attribution analysis for major cyber events; drive corrective and preventive actions.
  • Lead post incident reviews and oversee closure of remediation tasks, translating findings into hardening and control improvements.
  • Develop and maintain forensic methodologies, chain of custody procedures, and evidence handling standards.
  • Serve as the primary liaison with Legal, Privacy, HR, and external law enforcement during escalated or sensitive investigations.
  • Correlate forensic artifacts with threat intelligence insights to identify adversaries, campaigns, and TTPs.
  • Establish and maintain forensic readiness strategies, including tooling optimization, logging enhancements, and data retention standards.
  • Develop lightweight tools and scripts (Python/PowerShell) for artifact parsing, timeline generation, triage capabilities, and cloud log normalization.

Physical Demands and Working Conditions

The physical demands and work environment characteristics represent those typically encountered while performing essential duties. Reasonable accommodation may be made as needed. This is a remote role with availability expected during core hours and during escalations as required.

Supervision

Provides technical leadership and mentorship to threat engineers and SOC analysts globally. Does not directly manage staff.

Education

  • Bachelor’s degree in Cybersecurity, Information Technology, Computer Science, or related field (or equivalent professional experience).

Experience and Required Skills

  • 10+ years in Incident Response/DFIR, including leadership of complex, enterprise scale investigations.
  • Cloud & Identity: Sentinel/Splunk, Microsoft 365/Azure logs, AWS/GCP logging, Entra/Okta audit trails.
  • Network: Zeek, Suricata, Brim/Wireshark, PCAP/flow analytics.
  • Experience in evidence handling, legal hold/eDiscovery coordination, and working with Legal/HR/Privacy.
  • Mastery of Windows and Linux internals, authentication flows, common persistence mechanisms, and lateral movement TTPs.
  • Proficient in Python or PowerShell for automation and artifact analysis.
  • Excellent written and verbal communication—able to brief executives clearly under time pressure.

Preferred

  • Industry certifications (one or more): GCFA, GCFE, GNFA, GREM, GCIH, CISA, CISSP, Azure Security, AWS Security.
  • Experience with Zero Trust controls, identity threat detection, and SaaS forensics (O365, Google Workspace).
  • Familiarity with EPSS/SSVC, threat modeling, and purple team/ATT&CK evaluation practices.
  • Background in regulated environments (e.g., healthcare, financial services, manufacturing) and associated audit expectations.

Compensation

The rate of pay for this position will depend on the successful candidate’s work location and qualifications, including relevant education, work experience, skills, and competencies. Annual Rate: $117,700.00 - $196,200.00 for Waltham, MA location.

Benefits

  • Comprehensive benefits package including medical, dental, and vision insurance.
  • 401(k) with company match.
  • Paid time off.
  • Parental leave.
  • Potential for performance-based bonuses depending on company and individual performance.

Company Description

Fresenius Medical Care maintains a drug-free workplace in accordance with applicable federal and state laws. Fresenius Medical Care is an equal opportunity employer and does not discriminate on the basis of race, color, religion, sexual orientation, gender identity, parental status, national origin, age, disability, military service, or other non-merit-based factors.

Before You Apply
🇺🇸 Be aware of the location restriction for this remote position: USA Only
Beware of scams! When applying for jobs, you should NEVER have to pay anything. Learn more.
Principal Analyst Cyber Security Ops - Digital Forensics @Fresenius Medical Care
All Others
Salary usd 117,700 - 1..
Remote Location
🇺🇸 USA Only
Employment Type full-time
Posted 2d ago
Apply for this position
Did not apply
Applied
Sent Follow-Up
Interview Scheduled
Interview Completed
Offer Accepted
Offer Declined
Unlock 150,000+ Remote Jobs
🇺🇸 Be aware of the location restriction for this remote position: USA Only
Beware of scams! When applying for jobs, you should NEVER have to pay anything. Learn more.
Apply for this position
Did not apply
Applied
Sent Follow-Up
Interview Scheduled
Interview Completed
Offer Accepted
Offer Declined
Unlock 150,000+ Remote Jobs
×

Apply to the best remote jobs
before everyone else

Access 150,000+ vetted remote jobs and get daily alerts.

4.9 ★★★★★ from 500+ reviews
Unlock All Jobs Now

Maybe later