The Engineer III will lead complex digital forensic investigations, ensure proper evidence handling, and support incident response and legal inquiries while mentoring junior analysts.
What you will be doing
Position Summary
The Engineer III, Digital Forensics, is a senior technical role within the Cyber Defense organization responsible for conducting complex forensic investigations across endpoints, servers, cloud platforms, and mobile devices. This role serves as an escalation point for junior analysts, ensuring digital evidence is collected, preserved, and analyzed in a defensible manner. The Engineer III will play a critical role in supporting incident response, insider threat investigations, and legal or HR inquiries while collaborating with global stakeholders to mature forensic capabilities across the enterprise.
Primary Duties and Responsibilities
Education and Qualifications
What your background should look like
Preferred Certifications
Work Experience
Schedule
Full time
Position Summary
The Engineer III, Digital Forensics, is a senior technical role within the Cyber Defense organization responsible for conducting complex forensic investigations across endpoints, servers, cloud platforms, and mobile devices. This role serves as an escalation point for junior analysts, ensuring digital evidence is collected, preserved, and analyzed in a defensible manner. The Engineer III will play a critical role in supporting incident response, insider threat investigations, and legal or HR inquiries while collaborating with global stakeholders to mature forensic capabilities across the enterprise.
Primary Duties and Responsibilities
- Lead digital forensic investigations involving cyber incidents, insider threats, fraud, or policy violations.
- Perform advanced forensic analysis on endpoints, servers, cloud platforms, and mobile devices to identify malicious activity, data exfiltration, or system compromise.
- Ensure proper evidence collection, preservation, documentation, and chain of custody in compliance with legal and regulatory standards.
- Develop and refine forensic playbooks, procedures, and workflows for global use.
- Partner with incident response, insider threat, HR, Legal, and Corporate Security teams to support sensitive investigations.
- Analyze malware, artifacts, and logs to determine attack vectors, timelines, and root causes.
- Act as a technical escalation point for Engineer I/II forensic analysts.
- Provide clear written reports and investigative summaries for leadership, legal, and non-technical audiences.
- Mentor and train junior forensic engineers on investigative techniques, tools, and evidence handling.
- Stay current on emerging forensic tools, technologies, and best practices to continuously improve program maturity.
Education and Qualifications
- Bachelor's degree in Cybersecurity, Digital Forensics, Computer Science, or equivalent work experience; Master's degree preferred.
- Strong knowledge of forensic methodologies, evidence handling, and investigative processes.
- Familiarity with industry frameworks such as NIST, ISO 27037, and SANS best practices.
What your background should look like
Preferred Certifications
- EnCase Certified Examiner (EnCE)
- Certified Computer Examiner (CCE)
- GIAC Certified Forensic Analyst (GCFA)
- GIAC Advanced Smartphone Forensics (GASF)
- Certified Information Systems Security Professional (CISSP)
Work Experience
- 5-7 years of progressive experience in cybersecurity, with at least 3 years focused on digital forensics.
- Hands-on experience with forensic tools such as EnCase, FTK, X-Ways, Cellebrite, or Magnet Axiom.
- Demonstrated expertise in forensic investigations supporting cyber incidents, insider threats, or HR/Legal matters.
- Proven ability to handle sensitive investigations and maintain confidentiality.
- Strong communication skills, with the ability to present technical findings to technical and non-technical stakeholders.
Schedule
Full time
Top Skills
Cellebrite
Encase
Ftk
Magnet Axiom
X-Ways
Similar Jobs at Cencora
Healthtech • Logistics • Pharmaceutical
The Engineer III, Digital Forensics conducts complex investigations, analyzes forensic data, leads investigations, ensures evidence integrity, and trains junior analysts.
Top Skills:
CellebriteEncaseFtkMagnet AxiomX-Ways
Healthtech • Logistics • Pharmaceutical
Lead and manage application development projects, provide technical guidance, mentor junior developers, and ensure adherence to design standards and quality assurance during software lifecycle.
Top Skills:
Asp.NetC#Microsoft .Net TechnologiesSQL Server
Healthtech • Logistics • Pharmaceutical
The Principal Engineer will lead technical investigations on cyber incidents, enhance detection capabilities, mentor teams, and contribute to security strategies through advanced expertise in incident response and forensics.
Top Skills:
CrowdstrikeEdrEncaseMagnetPowershellPythonSIEMSoarSplunkWireshark
What you need to know about the Charlotte Tech Scene
Ranked among the hottest tech cities in 2024 by CompTIA, Charlotte is quickly cementing its place as a major U.S. tech hub. Home to more than 90,000 tech workers, the city’s ecosystem is primed for continued growth, fueled by billions in annual funding from heavyweights like Microsoft and RevTech Labs, which has created thousands of fintech jobs and made the city a go-to for tech pros looking for their next big opportunity.
Key Facts About Charlotte Tech
- Number of Tech Workers: 90,859; 6.5% of overall workforce (2024 CompTIA survey)
- Major Tech Employers: Lowe’s, Bank of America, TIAA, Microsoft, Honeywell
- Key Industries: Fintech, artificial intelligence, cybersecurity, cloud computing, e-commerce
- Funding Landscape: $3.1 billion in venture capital funding in 2024 (CED)
- Notable Investors: Microsoft, Google, Falfurrias Management Partners, RevTech Labs Foundation
- Research Centers and Universities: University of North Carolina at Charlotte, Northeastern University, North Carolina Research Campus

