We use cookies. Find out more about it here. By continuing to browse this site you are agreeing to our use of cookies.
#alert
Back to search results

Cyber Forensics Senior Investigator - Vice President

Deutsche Bank
parental leave, remote work
United States, Florida, Jacksonville
5022 Gate Parkway (Show on map)
Jan 12, 2026
Job Description:

Job Title Cyber Forensics Senior Investigator
Corporate Title Vice President
Location Jacksonville, FL

Overview

At Deutsche Bank, our defense is as sophisticated as the threats we face. The Information Security Threat Operations (ISTO) team is the front line, defending a global enterprise against thousands of daily intrusion attempts. You will be joining the Advanced Threat Response (ATR) group, an elite unit of specialists in digital forensics, malware analysis, and threat hunting.

As a Senior Investigator for Cyber Forensics & Incident Response, you will be at the heart of our most complex and sensitive investigations. This is a highly visible, hands-on technical leadership role where you will investigate sophisticated cyber threats, from advanced persistent threats (APTs) to complex insider risk scenarios. Your work will directly shape our investigative strategy, uncover hidden risks, and materially strengthen the Bank's resilience against the evolving threat landscape. This role is focused on enterprise cybersecurity investigations.

What We Offer You

  • A diverse and inclusive environment that embraces change, innovation, and collaboration
  • A hybrid working model, allowing for in-office / work from home flexibility, generous vacation, personal and volunteer days
  • Employee Resource Groups support an inclusive workplace for everyone and promote community engagement
  • Competitive compensation packages including health and wellbeing benefits, retirement savings plans, parental leave, and family building benefits
  • Educational resources, matching gift and volunteer programs

What You'll Do

  • Conduct and oversee complex, forensically sound investigations into security incidents, including network intrusions, malware infections, data exfiltration, and insider threats
  • Execute expert-level collection and analysis of digital evidence from a wide range of sources, including volatile memory (RAM), disk images (Windows, Linux, macOS), network packet captures, and enterprise-wide log data
  • Serve as a key technical lead during critical security incidents, partnering with the Threat Detection & Response team (SOC function), malware analysts, and threat hunters to identify threat actor TTPs (Tactics, Techniques, and Procedures), contain threats, and support remediation efforts
  • Translate complex technical findings from forensic artifacts into clear, concise, and structured reports for both technical peers and senior non-technical stakeholders, including Legal, HR/Employee Relations, and Compliance
  • Enhance and mature the team's forensic capabilities by developing new analytical techniques, automating workflows and documentation in line with industry best practices

How You'll Lead

  • Act as a local lead and technical advisor / mentor for junior forensic investigators, malware analysts and threat hunters, providing guidance on investigative methodology, ensuring the quality and integrity of forensic analysis, and fostering a culture of technical excellence
  • Drive cross-functional collaboration between the ATR group and interfacing functions like Threat Intelligence and Red Team to ensure a unified and efficient response to threats
  • Serve as the local point of contact for the ATR group in USA, coordinating effectively with partners across the Bank to manage expectations and deliver clear, impactful results

Skills You'll Need

  • Significant, proven experience conducting full-lifecycle digital forensics and incident response (DFIR) investigations in an enterprise environment
  • Deep, hands-on expertise with industry-standard forensic tools (e.g., EnCase, FTK, X-Ways, SIFT Workstation) and methodologies for disk, memory, and log analysis. Strong command of the Windows file system and artifacts is essential
  • A strong understanding of the incident response lifecycle, threat actor methodologies (MITRE ATT&CK Framework), and the interplay between forensics, threat intelligence, and security operations
  • The ability to independently scope and manage complex investigations from start to finish, demonstrating persistence and a hypothesis-driven approach to analysis
  • A bachelor's degree in computer science, Information Security, or a related field, or equivalent professional experience. One or more of the following certifications are highly preferred: GCFA, GCFE, GCIH, GREM, CFCE, OSCP, or similar.

Skills That Will Help You Excel

  • Experience with scripting (e.g., Python, PowerShell) for automation and analysis, malware reverse engineering, or forensic analysis of non-Windows systems (Linux, macOS)
  • The ability to distill highly complex technical concepts into clear, impactful summaries for executive leadership and non-technical partners
  • A demonstrated ability to maintain composure and lead decisively during high-pressure, high-visibility security incidents
  • A natural tendency to partner with and learn from subject matter experts across the security organization, contributing to a stronger, more integrated team

Expectations

It is the Bank's expectation that employees hired into this role will work in the Jacksonville office in accordance with the Bank's hybrid working model.

Deutsche Bank provides reasonable accommodations to candidates and employees with a substantiated need based on disability and/or religion.

The salary range for this position in Jacksonville, FL is 100,000 to 145,500.Actual salaries may be based on a number of factors including, but not limited to, a candidate's skill set, experience, education, work location and other qualifications. Posted salary ranges do not include incentive compensation or any other type of remuneration.

Deutsche Bank Benefits

At Deutsche Bank, we recognize that our benefit programs have a profound impact on our colleagues. That's why we are focused on providing benefits and perks that enable our colleagues to live authentically and be their whole selves, at every stage of life. We provide access to physical, emotional, and financial wellness benefits that allow our colleagues to stay financially secure and strike balance between work and home. Click here to learn more!

Learn more about your life at Deutsche Bank through the eyes of our current employees https://careers.db.com/life

The California Consumer Privacy Act outlines how companies can use personal information. If you are interested in receiving a copy of Deutsche Bank's California Privacy Notice please emailHR.Direct@DB.com.

#LI-HYBRID

We strive for a culture in which we are empowered to excel together every day. This includes acting responsibly, thinking commercially, taking initiative and working collaboratively.

Together we share and celebrate the successes of our people. Together we are Deutsche Bank Group.

We welcome applications from all people and promote a positive, fair and inclusive work environment.

Qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, protected veteran status or other characteristics protected by law. Click these links to viewDeutsche Bank's Equal Opportunity Policy Statementand the following notices:EEOC Know Your Rights;Employee Rights and Responsibilities under the Family and Medical Leave Act; andEmployee Polygraph Protection Act.

Applied = 0

(web-54bd5f4dd9-dz8tw)