Facebook Digital Forensic Analyst in Dublin, Ireland


Facebook's mission is to give people the power to build community and bring the world closer together. Through our family of apps and services, we're building a different kind of company that connects billions of people around the world, gives them ways to share what matters most to them, and helps bring people closer together. Whether we're creating new products or helping a small business expand its reach, people at Facebook are builders at heart. Our global teams are constantly iterating, solving problems, and working together to empower people around the world to build community and connect in meaningful ways. Together, we can help people build stronger communities — we're just getting started.


Facebook's Security team is looking for a highly motivated Digital Forensic Analyst to join our internal investigations team responsible for detecting and investigating abuse at Facebook. Candidates should have a strong technical background, experience with forensic and investigative tools, data analytics, system and network administration, and the ability to build or automate tasks and tools. This is a unique opportunity to protect the data and privacy of our company, employees, and community by detecting, investigating, and mitigating the insider threat. As part of this role, this person will work closely with our Human Resources and Legal teams during investigations. The analyst needs to be well organised with strong communication skills, demonstrate sound judgment, and be confident working independently with direction from Security management.

Required Skills:

  1. Monitor detection systems for anomalies and internal abuse.

  2. Conduct internal investigations with objectivity, empathy, respect, and discretion.

  3. Build alerts and rules to detect data anomalies, deter abusive behaviors, and defend against insider threats.

  4. Conduct forensic investigations of laptops, servers, and cell phone devices.

  5. Participate in an on-call schedule, responding to ad hoc requests, and surfacing areas of operational improvements.

  6. Identify and consult on the design of countermeasures to mitigate abuse.

  7. Summarise and present information from investigations to cross-functional teams.

  8. Interface with outside partners such as legal, law enforcement, and industry when appropriate.

Minimum Qualifications:

  1. BA/BS degree or higher in Computer Science, Engineering, or related technical or investigative discipline or equivalent experience.

  2. 2+ years of experience in computer forensic investigations or similar technical investigations.

  3. Proficient knowledge of common productivity tools (e.g. Microsoft Word/Excel, Outlook, Office365, Dropbox).

  4. Strong understanding of forensic software (e.g. F-Response, Encase, Blacklight, FTK, Sleuthkit, Autopsy).

  5. Good understanding of operating systems (Windows, macOS, Linux) and database tools (e.g. Hbase, SQL, or similar).

  6. Ability to interpret information from multiple sources and work with large data sets (data analytics).

  7. Capacity to work collaboratively in stressful situations with a sense of urgency.

Preferred Qualifications:

  1. Experience as a system or network administrator.

  2. Proficiency in multiple languages.

  3. Open source intelligence collection.

  4. Cloud or SAAS forensics/investigations.

  5. Certifications: EnCE, CISSP, GCFA/GCFE.

Industry: Internet