• Skip to primary navigation
  • Skip to main content
  • Skip to footer

Side Hustles

Side Hustles

Side Hustles For All

  • Best Side Hustles
    • Woman sitting on a pile of coins and working on a laptop surrounded by icons representing different side hustle ideas

      31 Best Side Hustles to Earn Extra Money in 2026

    • Bicycle courier delivering food for their side hustle.

      What Is a Side Hustle?

    • Remote worker sitting at his desk making money from home

      18 Ways to Make Money from Home (Online and Offline Jobs)

    • By Category
      • Arts & Crafts
      • Business Services
      • Caregiving
      • Creative Services
      • Digital Freelance Services
      • View All
    • By Lifestyle
      • I’m introverted
      • I’m a man
      • I’m a woman
      • I’m a stay-at-home mom
      • I’m unique
      • View All
    • By Profession
      • Artists & Creatives
      • Musicians
      • Nurses
      • Physicians
      • Teachers
      • View All
    • By Age Group
      • College Students
      • Teens
      • Age 50+
      • Seniors
      • View All
    • By Skills & Interests
      • Get Paid to Lose Weight
      • Get Paid to Play Games
      • Get Paid to Read
      • Get Paid to Sleep
      • Get Paid to Travel
      • View All
  • Best Gig Apps
    • Freelance worker popping out of a phone screen and considering gig apps on the App Store and Google Play

      Top 6 Gig Apps to Make Real Cash in 2026

    • Smartphone surrounded by the icons of different money-making apps

      Top 10 Best Money-Making Apps to Try in 2026

    • two teenagers using job apps on a phone and laptop

      19 Job Apps for Teens to Find Jobs and Make Money

    • By Gig Type
      • Cashback
      • Data Entry
      • Delivery
      • Games
      • Product Testing
      • View All
    • By Payment Method
      • Bingo Games that Pay to Cash App
      • Games that Pay Real Money
      • Games that Pay to Cash App
      • Games that Pay via PayPal
      • Surveys that Pay to Cash App
      • View All
    • By Benefits
      • $20 Signup Bonuses
      • $25 Signup Bonuses
      • $50 Signup Bonuses
      • Best Signup Bonuses
      • Instant Signup Bonuses
      • View All
    • By Skills & Interests
      • Driving
      • Losing Weight
      • Playing Games
      • Product Testing
      • Watching Ads
      • View All
  • Job Hunting
    • Freelance worker browsing a job post on a freelance job board.

      23 Job Boards You Can Use to Find Remote Work

    • Freelance writer sitting at her laptop working on a project

      15 Best Remote Jobs That Require No Paid Work Experience

    • Teenager sitting at laptop working an online job

      14 Online Jobs for Teens (With No Experience)

    • Freelancing
      • Freelance Writing Sites
      • Freelance Writing Job Boards
      • Freelance Writing Platforms
      • View More
    • Gig & Shift Work
      • Gig Work Apps
      • On-Demand Work Apps
      • Shift Work Apps
      • View More
    • GPT (Get Paid To)
      • Microtasking
      • Product Testing
      • Survey Taking
      • View More
    • Remote Working
      • Best Remote Job Boards
      • Top 15 Remote Jobs
      • View More
  • Job Board
    • Work Schedule
      • Part-Time Jobs
      • Per-Diem Jobs
      • Go Search
    • Work Environment
      • Hybrid Jobs
      • Remote Jobs
      • Go Search
    • Employment Type
      • Contractor Jobs
      • Internship Jobs
      • Temporary Jobs
      • Go Search
    • Job Title
      • Accounting Jobs
      • Data Entry Jobs
      • Nursing Jobs
      • Online Teaching Jobs
      • Software Engineer Jobs
      • Go Search
    • State
      • California Jobs
      • Florida Jobs
      • New York Jobs
      • Pennsylvania Jobs
      • Texas Jobs
      • Go Search
    • City
      • Chicago, IL
      • Houston, TX
      • Los Angeles, CA
      • New York City, NY
      • Phoenix, AZ
      • Go Search

Home Flexible Job Board Principal DFIR Consultant

$230,000–300,000/yr 14d ago

Principal DFIR Consultant

Boost your chances before you apply.

  • ✨ Apply 10x Faster Free

    It takes 30+ tailored applications to land jobs like this one. We'll help you get that done in 1 hour.

    No Credit Card Required

  • Proceed to Application Go directly to the company's job page to apply.
Logo

MOXFIVE

US

Full-time Permanent Remote

✨ Apply 10x Faster

Analyze your resume for missing keywords, then one-click optimize it. Don't be anything less than a 100% match candidate.

Free

No Credit Card Required

Summary

Lead and support complex incident response cases across traditional and cloud-native environments, including multi-cloud intrusions. Contribute to the development of an LLM-based investigative platform by translating forensic expertise into actionable logic and workflows.

Job Description

Who We Are
If you feel like Incident Response and Recovery hasn't changed in the past 10 years, you're not alone. Business operations aren't just on endpoints anymore. It's behind applications in Okta tiles, auto-scaling workloads, code repos, and sprawling data stores across one or many public clouds. At MOXFIVE, we're focused on eradicating adversaries across our client's entire digital footprint, and that demands a faster, nimbler approach to DFIR, one where AI-driven tooling helps our consultants investigate faster without cutting corners on rigor.

We're looking to expand our IR Consulting Team with individuals driven to protect clients, eliminate threat actors, and build the next era of digital forensics and incident response for the modern enterprise, including the LLM-based investigative platform we're building to get them there.

Who You Are
You know that $I30 isn't referring to your local interstate, and that the easiest way to get on your bad side is to be handed a timestamp that isn't in UTC. You've got a "Tools" folder sitting on your workstation somewhere with your favorite forensic scripts at the ready to tear into the next piece of suspicious activity you see. And speaking of suspicious activity, you've honed a keen sense for knowing the difference between legitimate users and threat actor activity because you've seen them in action. Hundreds of times.

Windows environment investigations feel like the back of your hand at this point, and you've been starting to expand your knowledge on cloud-native forensics. Account takeovers are the new malware after all, and investigating the latest threats across Azure, GCP, AWS, and SaaS Apps is the growing frontier you've been looking to sink your teeth into. You know your way around CloudTrail and GuardDuty findings in AWS, Admin Activity and Data Access logs in GCP, and sign-in and audit logs in Entra ID, and you're just as comfortable chasing a rogue service principal or a suspicious Workload Identity Federation grant as you are pulling apart a $MFT.

You've also got an eye toward where the work is heading. You're not afraid to put LLMs and AI tooling to work as part of the investigative process, whether that's rapidly triaging thousands of authentication logs for anomalous patterns, building timeline narratives faster without sacrificing accuracy, or using AI-assisted tooling to spot the needle in a haystack of cloud audit logs. You know these tools augment a sharp analyst, they don't replace one, and you hold the output to the same evidentiary standard you'd hold your own analysis to. And you don't just want to be a consumer of that tooling. You want a hand in building it, translating what you know about how a real investigation actually unfolds into the logic, prompts, and guardrails of an LLM-based investigative platform that can eventually help the next analyst move faster than you did.

You're insatiably curious, addicted to threat intel, and a builder at heart. Ultimately, you're looking for the right opportunity that uses your technical chops to find and eliminate meaningful adversaries while putting your stamp on a better approach to traditional DFIR consulting.

Why You Matter
You'll be joining a seasoned team of high performing incident response consultants that are the tip of the spear for all forensic activity at MOXFIVE. From ransomware to nation-state threats, you'll be supporting and leading meaningful cases across traditional enterprise and cloud-native environments, including multi-cloud intrusions spanning AWS, GCP, and Azure where the adversary is living off cloud-native identity and API abuse rather than dropping malware on disk. Your voice has significant weight in shaping our technology stack, investigative methodology, and service offerings as we continue to scale, including how we responsibly build LLM-driven capabilities into the investigative workflow itself. You won't just be a user of that platform. Your casework, your instincts for what matters in an investigation, and your judgment calls in the field will directly shape how it's built, so that the methodology baked into the tooling reflects the same rigor you bring to a report.

What You'll Bring

  • Experience responding to threat activity as an IR consultant or SOC analyst

  • Strong understanding of Windows/Mac/Linux fundamentals, forensic artifacts, and network analysis

  • Existing knowledge or passion to learn cloud-native investigations across AWS, GCP, and Azure, including familiarity with core log sources like CloudTrail, VPC Flow Logs, GCP Admin Activity/Data Access logs, and Entra ID/M365 audit logs

  • Curiosity about how LLMs and AI-assisted tooling can accelerate investigation and reporting without compromising forensic rigor, and interest in helping shape an internal LLM-based investigative platform built to accelerate future casework

  • An unwavering emphasis on investigation at the highest level of quality

About the company

MOXFIVE

MOXFIVE is cybersecurity company helping organizations respond to incidents and minimize the risk of future attacks. Over the last decade, our team of experts has helped thousands of businesses respond to major incidents and saw firsthand that there needed to be a better way for organizations to get the technical expertise they need when they need it most. Through a combination of our technical experts and proprietary platform, we bring order to chaos and deliver a tailored incident response approach and resilience-minded path forward for clients of all sizes, faster and more efficiently.

Founded

2019

Company size

51-200 employees

Industry

Computer and Network Security

Org type

Privately Held

Headquarters

McLean, VA

Apply Now

About the company

MOXFIVE

MOXFIVE is cybersecurity company helping organizations respond to incidents and minimize the risk of future attacks. Over the last decade, our team of experts has helped thousands of businesses respond to major incidents and saw firsthand that there needed to be a better way for organizations to get the technical expertise they need when they need it most. Through a combination of our technical experts and proprietary platform, we bring order to chaos and deliver a tailored incident response approach and resilience-minded path forward for clients of all sizes, faster and more efficiently.

Founded

2019

Company size

51-200 employees

Industry

Computer and Network Security

Org type

Privately Held

Headquarters

McLean, VA

Footer

sidehustles.com
Facebook Twitter Instagram LinkedIn Reddit TikTok YouTube

Show Me The Money

  • Side Hustle Basics
  • Side Hustle Job Board (Remote & Part-Time Jobs)
  • Gig App Reviews
  • Job Hunting
  • Manage Your Money
  • The Gig Apple: News & Events

Company

  • About Us
  • Contact Us
  • Become a Contributor
  • Advertising & Sponsorships
  • Partner With Us
  • Editorial Guidelines

Side Hustles © All rights reserved

  • Privacy Policy
  • Terms of Service

Thanks for using our free job board

Your review would mean a lot to us.

If you love that we're just giving away remote jobs for free with no paywall, please spread the word. (You will need to create an account on Trustpilot, for which we'll be eternally grateful.) Good luck out there!

Leave a Review Not yet. Send me to the job post.