- Lead efforts in Incident Handling, including Detection, Analysis, and Triage.
- Conduct security event triage to discern legitimate security incidents.
- Investigate security incidents, implement countermeasures, and conduct incident response.
- Conduct Forensic Analysis on compromised systems using digital forensics tools.
- Analyze information technology security events for forensic purposes.
- Lead efforts in Hunting for anomalous patterns detection and content management.
- Apply strong logical/critical thinking abilities, especially in analyzing security events.
- Analyze windows event logs, network traffic, and IDS events for malicious intent.
- Utilize strong analytical and technical skills for hunting activities.
- Produce clear and thorough security incident reports and briefings.
- Identify and implement countermeasures or mitigating controls for deployment.
- Recommend and coordinate countermeasures to operational CND personnel.
- Develop rules, filters, views, signatures, and operationally relevant applications/scripts.
- Bachelor's Degree
- Possess at least 5 years of directly relevant experience performing digital forensic analysis with demonstrated leadership capabilities.
- Active Top Secret Security Clearance with the ability to obtain a TS/SCI is required.
- Strong analytical and technical skills in computer network defense operations, ability to lead efforts in Incident Handling (Detection, Analysis, Triage), Hunting (anomalous pattern detection and content management) and Forensic Analysis.
- Prior experience and ability to analyze information technology security events to discern events that qualify as a legitimate security incident as opposed to non-incidents. This includes security event triage, incident investigation, implementing countermeasures, and conducting incident response.
- Strong logical/critical thinking abilities, especially analyzing security events (windows event logs, network traffic, IDS events for malicious intent).
- Strong proficiency Report writing a technical writing sample and technical editing test will be required if the candidate has no prior published intelligence analysis reporting, excellent verbal and written communications skills and ability produce clear and thorough security incident reports and briefings.
- A working knowledge of the various operating systems (e.g., Windows, OS X, Linux) commonly deployed in enterprise networks, a conceptual understanding of Windows Active Directory.
- Working knowledge of network communications and routing protocols (e.g., TCP, UDP, ICMP, BGP, MPLS) and common internet applications and standards (e.g., SMTP, DNS, DHCP, SQL, HTTP, HTTPS).
- Experience with the identification and implementation of countermeasures or mitigating controls for deployment and implementation in the enterprise network environment.
- Experience conducting Forensic Analysis on compromised systems using digital forensics tools.
- Experience with Cyber, Insider Threat and Policy Violation, and eDiscovery investigations.
- Proficiency in cyber threat exploitation patterns, from first discovery through identification of persistent presence.
- Provide subject matter expertise support in the detection, analysis, and mitigation of insider threat activities.
- Previous firsthand experience with Security Information and Event Monitoring (SIEM) platforms and log management systems that perform log collection, analysis, correlation, and alerting is required (preferably within Splunk or MS Sentinel).
- Ability to develop rules, filters, views, signatures, countermeasures and operationally relevant applications and scripts to support analysis and detection efforts.
- Experience in recommending and coordinating countermeasures to operational CND personnel.
- Familiarity with scripting languages (BASH, PowerShell, Python, PERL, RUBY) or software development frameworks (.NET).
- GCIA
- GCED
- GCFA
- GCFE
- GCTI
- GNFA
- GCIH
- ECSA
- CHFI
- CISSP
- Security+
- Network+
- CEH
- CND
- CCE
- CFC
- EnCE
- CFCE
- GREM
-
Digital Forensic Analyst
3 weeks ago
BDR Solutions LLC Springfield, United States· BDR Solutions, LLC, (BDR) supports the U.S. Federal Government in successfully achieving its mission and goals. Our service and solution delivery starts with understanding each client's end-state, and then seamlessly integrating within each Agency's organization to improve an ...
-
Mobile Forensic Analyst
3 weeks ago
Peraton Arlington, United States Full timeResponsibilities · Peraton is looking for a Mobile Forensic Analyst in support of the Cyber Threat Analysis Division mission. · Location: Arlington, VA; Hybrid work schedule possible; 3 days per week on-site required after onboarding process is complete. · The Cyber Threat Analy ...
-
Forensics Analyst
5 days ago
Insight Global Quantico, United States50-66hr · Must-haves · -Active Secret clearance (TS/SCI preferred) · -IAT III certification · -CSSP IR certification (or ability to obtain within 6 months of hire) · -Knowledge of chain of custody and the uniqueness of digital evidence. · -Demonstrated skill in performing p ...
-
Forensic Analyst
5 days ago
ARMISON TECH, INC. Chantilly, United StatesArmison Tech · is a minority owned small business located in the Northern Virginia area. The company was established in 2012 and serves a broad range of clients who operate in both the public and private sectors. · Armison Tech · is constantly searching for exceptionally quali ...
-
External Forensic Analyst
3 weeks ago
Peraton Arlington, United StatesPeraton is looking for a Mobile Forensic Analyst in support of the Cyber Threat Analysis Division mission. Location: Arlington, VA; Hybrid work schedule possible; 3 days per week on-site required after onboarding process is complete. The Cyber Threat Forensic, Mobile, Analyst, Ex ...
-
Forensics Analyst Sr
18 hours ago
Gray Tier Technologies Washington, United States Full timeGray Tier Technologies is seeking a Senior Forensics Analyst with an active Secret clearance to support our DOI customer's Security Operation Center in DC or Reston Virginia.. · The Department of the Interior (DOI) protects America's natural resources and heritage, honors our cu ...
-
Digital Forensic Analyst
5 days ago
Vexterra Group Bethesda, United StatesVexterra Group is searching for a Digital Forensic Analysts to provide the following support: Conduct forensic examination of High Priority Digital Media to include: · Full-Scope forensic examinations · Advanced registry and Internet history analysis · Date obfuscation and ste ...
-
Network Forensics Cybersecurity Analyst
3 weeks ago
Nodel Arlington, United StatesJob Description · Job DescriptionNetwork Forensics Cybersecurity Analyst / Network Based Systems Analyst · Location: Arlington, VA · Must have Top Secret Security Clearance · Node provides support for on and offsite incident response to Government agencies and critical infrastruc ...
-
Network Forensic Analyst III
3 weeks ago
Ampcus Incorporated Arlington, United StatesNetwork Forensic Analyst · Multi Year Salaried Contract · 2-3 Weeks of Training in Arlington, VA · Consultants living within 50 miles of Arlington, VA will need to be onsite 1 time per week · Hybrid (2-3) days onsite for consultants living closer than 50 miles to Arlington, VA ...
-
Digital Forensic Analyst
3 weeks ago
Vexterra Group Bethesda, United StatesJob Description · Job DescriptionVexterra Group is searching for a Digital Forensic Analysts to provide the following support: · Conduct forensic examination of High Priority Digital Media to include: · Full-Scope forensic examinations · Advanced registry and Internet history ana ...
-
Digital Forensic Analyst
1 week ago
Buchanan & Edwards Chantilly, United StatesJob Details · Job Location : Chantilly, VA · Position Type : Full Time · Salary Range : Undisclosed · Job Category : Intelligence Operations Support · Description · RenXTech is looking for a Digital Forensic Analyst join our team in Chantilly, VA Position will support the deliv ...
-
Cyber Forensic Analyst
1 day ago
AntietamTechnologies Germantown, United StatesJob Description · Job DescriptionThis position is a hybrid work schedule/location with optional remote work when no onsite activities are required. · Responsibilities: · Perform Cyber Intrusion investigations; identify attack vectors and mitigation tactics · Evaluate, architect, ...
-
Digital Forensic Analyst
5 days ago
Vets Hired Stafford, United StatesAbout the job Digital Forensic Analyst · Exemplar responsibilities include but are not limited to: · Assisting with seizure of digital evidence from on-site search locations while minimizing possible data loss. · Preserving and archiving digital evidence using forensic best pr ...
-
Mobile Forensic Analyst
3 weeks ago
Peraton Arlington, United StatesResponsibilities: · Peraton is looking for a Mobile Forensic Analyst in support of the Cyber Threat Analysis Division mission. · Location: Arlington, VA; Hybrid work schedule possible; 3 days per week on-site required after onboarding process is complete. · The Cyber Threat An ...
-
Cyber Forensics and Malware Analyst
3 weeks ago
00100 LEIDOS, INC. Ashburn, United States Full timeUNLEASH YOUR POTENTIAL · At Leidos, we deliver innovative solutions through the efforts of our diverse and talented people who are dedicated to our customers' success. We empower our teams, contribute to our communities, and operate sustainably. Everything we do is built on a c ...
-
Cybersecurity Host Based Forensics Analyst
1 week ago
Solutions3 Arlington, United StatesTitle: Cybersecurity Host-Based Forensics Analyst (L4) · Description: · Solutions LLC is supporting our prime contractor and their U.S. Government customer's Hunt and Incident Response Team (HIRT) to assist in securing the Nation's cyber and communications infrastructure. The H ...
-
Digital Forensic Senior Analyst
3 weeks ago
Contact Discovery Services LLC Washington, United StatesJob Description · Job Description · Digital Forensic Senior Analyst · Contact Discovery Services - Washington, DC · Location: Washington, DC · Start Date: Negotiable · A leading eDiscovery technology and consulting firm headquartered in Washington, DC is looking for a qualified ...
-
Solutions³ LLC Arlington, United StatesJob Description · Job DescriptionTitle: Cybersecurity Host-Based Forensics Analyst (L4) · Description: · Solutions3 LLC is supporting our prime contractor and their U.S. Government customer's Hunt and Incident Response Team (HIRT) to assist in securing the Nation's cyber and comm ...
-
Cyber Network Forensic Analyst II
1 week ago
Nightwing Arlington, United StatesDate Posted: · Country: · United States of America · Location: · VA149: 1110 N Glebe Road Arlington 1110 North Glebe Road Suite 630, Arlington, VA, 22201 USA · Position Role Type: · Hybrid · You have been redirected to RTXs career page as we have recently transitioned from ...
-
Nodel Arlington, United StatesJob Description · Job DescriptionHost Forensics Analysts/Host Based Systems Analyst · Location: Arlington, VA · Must have Top Secret Security Clearance · Node provides remote and onsite advanced technical assistance, proactive hunting, rapid onsite incident response, and immediat ...
Digital Forensic Analyst - Springfield, United States - BDR Solutions LLC
3 weeks ago
![Default job background](https://contents.bebee.com/public/img/bg-user-ex-1.jpg)
Description
BDR Solutions, LLC, (BDR) supports the U.S. Federal Government in successfully achieving its mission and goals. Our service and solution delivery starts with understanding each client's end-state, and then seamlessly integrating within each Agency's organization to improve and enhance business and technical operations and deployments.
BDR is seeking a Digital Forensics Analyst (Top Secret Cleared) to join our growing team This position will be performed virtually from the individual's home office working on EST time schedule. This position requires ship with an active Top Secret clearance and SCI eligibility.
(Military Veterans are highly encouraged to apply)
Role Overview
The Digital Forensics Analyst will support an Agency-level Focused Operations (FO) team at DHS. The Senior Digital Forensics Analysts will conduct advanced security event analytics, insider threat monitoring, log analysis, host-based forensics, incident response, and case management. In support of this vital mission, BDR staff are on the forefront of providing Advanced CND (Computer Network Defense) Operations, and Systems Engineering support to include the development of advanced analytics and countermeasures to protect critical assets. To ensure the integrity, security, and resiliency of critical operations, we are seeking candidates with diverse backgrounds in cyber security systems operations, analysis, and incident response. Strong written and verbal communication skills are necessary. The ideal candidate will have a solid understanding of incident response, forensics investigations, and cyber threats. Additionally, the ideal candidate would be familiar with digital evidence collection, malware analysis, host-based forensic tools, intrusion detection systems, file systems, security information event management platforms, endpoint threat detection tools, and security operations ticket management.
***Onsite once a week in Springfield, VA
Responsibilities
Required Minimum Qualifications
Required Certifications (One or more of the following)
In addition, U.S Citizenship is required. Select applicants will be subject to a government security investigation and must meet eligibility requirements for access to classified information and be able to obtain a government-granted security clearance. Individuals may also be subject to a background investigation including, but not limited to criminal history, employment and education verification, drug testing, and creditworthiness. BDR is an Equal Opportunity Employer. Qualified applicants will receive consideration for employment without regard to race, color, religion, sex, age, national origin, marital status, disability, veteran status, sexual orientation, or genetic information.
Digital Forensic Analyst (Top Secret Cleared)