bluedoor data·Job Postings API·bluedoor.sh ↗

HomeCompaniesEnghouseSenior Cybersecurity Forensic Administrator

Senior Cybersecurity Forensic Administrator

Enghouse · Reading, Berkshire, RG2 0TD, United Kingdom · Hybrid · Active · BambooHR

Job facts

FieldValue
CompanyEnghouse
TitleSenior Cybersecurity Forensic Administrator
Normalized title-
Department / teamAdmin - IT
LocationReading, Berkshire
Work modelHybrid / Hybrid
Employment typeFull Time
Salary-
Statusactive
ATS providerBambooHR
Posted / first seen2026-05-19 / 2026-05-30
Changed / last seen2026-05-30 / 2026-06-06

Related slices

PageWhat it containsOpen
Company jobsActive postings from Enghouse.Open
Company breakdownsRole, location, ATS, and work model facets for this company.Open
ATS provider jobsActive postings observed through BambooHR.Open
Provider filtered searchThe same provider as a filtered job collection.Open
City jobsActive postings in Reading.Open
Department jobsActive postings in Admin - IT.Open
Work model jobsActive Hybrid postings.Open
Lifecycle eventsOpen, update, close, and reopen events for this posting.Open
Original postingCanonical source or apply URL captured from the ATS.Open

Linked records

CompanyEnghouse
Source19d36ddf-e7e2-46ab-85d7-b99e0ed7c62d
ATS providerBambooHR

Description

Enghouse is looking for a Senior Cybersecurity Forensic Administrator. Reporting to the VP, IT, this senior-level role is responsible for leading digital forensics and cyber incident investigation activities across the organization. The Senior Cybersecurity Forensics Admin preserves, collects, analyzes, and documents digital evidence related to security incidents, policy violations, insider threats, and potential compromises. The role partners closely with security operations, infrastructure, legal, compliance, and leadership teams to support incident response, strengthen controls, and improve organizational resilience. This is a hybrid opportunity, that requires an in-office presence 1 to 2 days a week. Key Responsibilities Lead forensic investigations involving endpoints, servers, cloud environments, email systems, and network artifacts. Collect, preserve, and analyze digital evidence using forensically sound methods while maintaining chain of custody and evidence integrity. Support cyber incident response activities including triage, containment support, root cause analysis, scope determination, and post-incident reporting. Perform host, file system, log, memory, and malware-related analysis to identify indicators of compromise, attacker activity, and persistence mechanisms. Administer and optimize forensic and security investigation tools, including endpoint detection, log analysis, SIEM, and evidence collection platforms. Develop and maintain forensic procedures, investigation playbooks, and documentation standards aligned with legal, regulatory, and internal policy requirements. Partner with security operations, IT, privacy, compliance, HR, and legal teams on investigations involving data misuse, unauthorized access, and insider risk. Prepare clear technical and executive-level reports summarizing findings, business impact, timelines, and recommended corrective actions. Identify gaps in logging, monitoring, evidence retention, and investigative readiness, and recommend improvements. Mentor junior analysts and administrators in forensic methodology, investigative rigor, and evidence handling best practices. Support audits, litigation holds, eDiscovery coordination, and regulatory requests where digital evidence or incident documentation is required. Stay current on emerging threats, attacker techniques, forensic tools, and industry frameworks relevant to digital investigations and incident response. Required Qualifications Bachelor’s degree in Cybersecurity, Computer Science, Information Technology, Digital Forensics, or a related field, or equivalent practical experience. 5+ years of experience in cybersecurity, incident response, digital forensics, or security administration, including experience in a senior or lead capacity. Hands-on experience with forensic acquisition and analysis across Windows, Linux, and cloud-based environments. Strong knowledge of incident response processes, evidence preservation, log analysis, endpoint investigations, and threat investigation workflows. Experience administering or using enterprise security tools such as SIEM, EDR/XDR, email security, case management, and vulnerability management platforms. Strong understanding of operating systems, file systems, network protocols, authentication mechanisms, and attacker tactics, techniques, and procedures. Ability to produce accurate documentation, defensible findings, and concise reports for technical and non-technical audiences. Preferred Qualifications Relevant certifications such as GCFA, GCFE, GCIH, CISSP, CISM, CHFI, or equivalent. Experience supporting legal, regulatory, or HR-led investigations. Knowledge of cloud forensics, identity investigations, and data loss scenarios in Microsoft 365, Azure, AWS, or similar platforms. Familiarity with scripting or automation using PowerShell, Python, or similar languages. Experience with malware triage, memory forensics, and timeline analysis. Core Skills Digital forensics and evidence handling Incident response and investigative analysis SIEM, EDR/XDR, and log correlation Root cause analysis and technical reporting Cross-functional collaboration and stakeholder communication Analytical thinking, discretion, and sound judgment Policy, process, and playbook development Coaching and knowledge sharing Working Conditions This role may require participation in on-call incident response activities, after-hours investigations, and coordination during active security events. The position handles sensitive and confidential information and requires a high level of professionalism, integrity, and attention to detail. #LI-EN

Full job record

Job ID229ae572315208f74f07fdd2fdc5e9eac52afa69
Org ID7925368c-7ca6-4d87-b04c-7cd7eb816509
Source ID19d36ddf-e7e2-46ab-85d7-b99e0ed7c62d
Board ID19d36ddf-e7e2-46ab-85d7-b99e0ed7c62d
Providerbamboohr
Provider Job Key2217
TitleSenior Cybersecurity Forensic Administrator
Normalized Title
Statusactive
Activeyes
Location TextReading, Berkshire, RG2 0TD, United Kingdom
DepartmentAdmin - IT
Team
Employment Typefull_time
Workplace Typehybrid
Remote Policyhybrid
Country
RegionBerkshire
CityReading
Salary Raw
Salary Min
Salary Max
Salary Currency
Salary Period
Source URLhttps://enghouse.bamboohr.com/careers/2217
Apply URLhttps://enghouse.bamboohr.com/careers/2217
First Seen At2026-05-30 05:42:48Z
Last Seen At2026-06-06 10:26:56Z
Last Checked At2026-06-06 10:26:56Z
Last Changed At2026-05-30 05:42:48Z
Inactive At
Source Posted At2026-05-19 00:00:00Z
Source Updated At
Raw Payload Uris3://job-postings-prod-raw-590183727216/raw/provider=bamboohr/board=enghouse/date=2026-06-06/2026-06-06T10-26-52-831Z-966e85e581998ab586ebefddb1ed3ef29cef896c1ee967fa6754169589fca47d.json
Event Fields
{
  "content_hash": "68bee2a2d8d983088bb59511a129d023cee30c632f07902b0b881c69c4abc640",
  "source_hash": "e0ba3aef0a2d5987daa68ca6f7e1dad13ba86b1e8e65cb5996aa9eafe6013d1d",
  "last_changed_at": "2026-05-30T05:42:48.984Z",
  "active_status": "active"
}
Parsed Structured
{
  "language": "en",
  "location": {
    "raw": "Reading, Berkshire, RG2 0TD, United Kingdom",
    "city": "Reading",
    "region": "Berkshire",
    "country": null,
    "is_remote": false,
    "confidence": 0.8
  },
  "salary_max": null,
  "salary_min": null,
  "inferred_at": "2026-06-06T10:26:56.615Z",
  "launch_scope": {
    "reason": "bamboohr_production_catalog",
    "included": true,
    "location": {
      "raw": "Reading, Berkshire, RG2 0TD, United Kingdom",
      "city": "Reading",
      "region": "Berkshire",
      "country": null,
      "is_remote": false,
      "confidence": 0.8
    },
    "countries": []
  },
  "remote_policy": "hybrid",
  "salary_period": null,
  "workplace_type": "hybrid",
  "salary_currency": null
}
Extensions
{}
Native Structured
{
  "list_job": {
    "id": "2217",
    "isRemote": null,
    "location": {
      "city": "Reading",
      "state": "Berkshire"
    },
    "atsLocation": {
      "city": null,
      "state": null,
      "country": null,
      "province": null
    },
    "departmentId": "27752",
    "locationType": "2",
    "jobOpeningName": "Senior Cybersecurity Forensic Administrator",
    "departmentLabel": "Admin - IT",
    "employmentStatusLabel": "Full Time"
  },
  "detail_errors": [],
  "detail_job_opening": {
    "location": {
      "city": "Reading",
      "state": "Berkshire",
      "postalCode": "RG2 0TD",
      "addressCountry": "United Kingdom"
    },
    "datePosted": "2026-05-19",
    "atsLocation": {
      "city": null,
      "state": null,
      "country": null,
      "countryId": null
    },
    "description": "<p>Enghouse is looking for a Senior Cybersecurity Forensic Administrator. Reporting to the VP, IT, this senior-level role is responsible for leading digital forensics and cyber incident investigation activities across the organization. The <span style=\"font-weight: bold\">Senior Cybersecurity Forensics Admin</span> preserves, collects, analyzes, and documents digital evidence related to security incidents, policy violations, insider threats, and potential compromises. The role partners closely with security operations, infrastructure, legal, compliance, and leadership teams to support incident response, strengthen controls, and improve organizational resilience.</p>\n<p><br></p>\n<p>This is a hybrid opportunity, that requires an in-office presence 1 to 2 days a week. </p>\n<p><br></p>\n<p><span style=\"text-decoration: underline\"><span style=\"font-size: 14pt; font-weight: bold\">Key Responsibilities</span></span></p>\n<ul>\n<li>Lead forensic investigations involving endpoints, servers, cloud environments, email systems, and network artifacts.</li>\n<li>Collect, preserve, and analyze digital evidence using forensically sound methods while maintaining chain of custody and evidence integrity.</li>\n<li>Support cyber incident response activities including triage, containment support, root cause analysis, scope determination, and post-incident reporting.</li>\n<li>Perform host, file system, log, memory, and malware-related analysis to identify indicators of compromise, attacker activity, and persistence mechanisms.</li>\n<li>Administer and optimize forensic and security investigation tools, including endpoint detection, log analysis, SIEM, and evidence collection platforms.</li>\n<li>Develop and maintain forensic procedures, investigation playbooks, and documentation standards aligned with legal, regulatory, and internal policy requirements.</li>\n<li>Partner with security operations, IT, privacy, compliance, HR, and legal teams on investigations involving data misuse, unauthorized access, and insider risk.</li>\n<li>Prepare clear technical and executive-level reports summarizing findings, business impact, timelines, and recommended corrective actions.</li>\n<li>Identify gaps in logging, monitoring, evidence retention, and investigative readiness, and recommend improvements.</li>\n<li>Mentor junior analysts and administrators in forensic methodology, investigative rigor, and evidence handling best practices.</li>\n<li>Support audits, litigation holds, eDiscovery coordination, and regulatory requests where digital evidence or incident documentation is required.</li>\n<li>Stay current on emerging threats, attacker techniques, forensic tools, and industry frameworks relevant to digital investigations and incident response.</li>\n</ul>\n<p><span style=\"text-decoration: underline\"><br></span></p>\n<p><span style=\"text-decoration: underline\"><span style=\"font-size: 14pt; font-weight: bold\">Required Qualifications</span></span></p>\n<ul>\n<li>Bachelor’s degree in Cybersecurity, Computer Science, Information Technology, Digital Forensics, or a related field, or equivalent practical experience.</li>\n<li>5+ years of experience in cybersecurity, incident response, digital forensics, or security administration, including experience in a senior or lead capacity.</li>\n<li>Hands-on experience with forensic acquisition and analysis across Windows, Linux, and cloud-based environments.</li>\n<li>Strong knowledge of incident response processes, evidence preservation, log analysis, endpoint investigations, and threat investigation workflows.</li>\n<li>Experience administering or using enterprise security tools such as SIEM, EDR/XDR, email security, case management, and vulnerability management platforms.</li>\n<li>Strong understanding of operating systems, file systems, network protocols, authentication mechanisms, and attacker tactics, techniques, and procedures.</li>\n<li>Ability to produce accurate documentation, defensible findings, and concise reports for technical and non-technical audiences.</li>\n</ul>\n<p><br></p>\n<p><span style=\"text-decoration: underline\"><span style=\"font-size: 14pt; font-weight: bold\">Preferred Qualifications</span></span></p>\n<ul>\n<li>Relevant certifications such as GCFA, GCFE, GCIH, CISSP, CISM, CHFI, or equivalent.</li>\n<li>Experience supporting legal, regulatory, or HR-led investigations.</li>\n<li>Knowledge of cloud forensics, identity investigations, and data loss scenarios in Microsoft 365, Azure, AWS, or similar platforms.</li>\n<li>Familiarity with scripting or automation using PowerShell, Python, or similar languages.</li>\n<li>Experience with malware triage, memory forensics, and timeline analysis.</li>\n</ul>\n<p><br></p>\n<p><span style=\"text-decoration: underline\"><span style=\"font-size: 14pt; font-weight: bold\">Core Skills</span></span></p>\n<ul>\n<li>Digital forensics and evidence handling</li>\n<li>Incident response and investigative analysis</li>\n<li>SIEM, EDR/XDR, and log correlation</li>\n<li>Root cause analysis and technical reporting</li>\n<li>Cross-functional collaboration and stakeholder communication</li>\n<li>Analytical thinking, discretion, and sound judgment</li>\n<li>Policy, process, and playbook development</li>\n<li>Coaching and knowledge sharing</li>\n</ul>\n<p><br></p>\n<p><span style=\"font-size: 14pt; text-decoration: underline\"><span style=\"font-weight: bold\">Working Conditions</span></span></p>\n<p>This role may require participation in on-call incident response activities, after-hours investigations, and coordination during active security events. The position handles sensitive and confidential information and requires a high level of professionalism, integrity, and attention to detail.</p>\n<p><br></p>\n<p><br></p>\n<p>#LI-EN</p>",
    "compensation": "55,000 - 65,000",
    "departmentId": "27752",
    "locationType": "2",
    "seekPromoted": false,
    "jobCategoryId": null,
    "jobOpeningName": "Senior Cybersecurity Forensic Administrator",
    "departmentLabel": "Admin - IT",
    "jobOpeningStatus": "Open",
    "minimumExperience": "Experienced",
    "jobOpeningShareUrl": "https://enghouse.bamboohr.com/careers/2217",
    "employmentStatusLabel": "Full Time"
  }
}
Get this page with API

Rendered from the bluedoor Job Postings API. Reproduce it:

GET https://api.bluedoor.sh/job-postings/v1/jobs/229ae572315208f74f07fdd2fdc5e9eac52afa69?include=descriptionJSON
GET https://api.bluedoor.sh/job-postings/v1/orgs/7925368c-7ca6-4d87-b04c-7cd7eb816509JSON
GET https://api.bluedoor.sh/job-postings/v1/sources/19d36ddf-e7e2-46ab-85d7-b99e0ed7c62dJSON
GET https://api.bluedoor.sh/job-postings/v1/jobs/229ae572315208f74f07fdd2fdc5e9eac52afa69/eventsJSON