- Lead efforts in Incident Handling, including Detection, Analysis, and Triage.
- Conduct security event triage to discern legitimate security incidents.
- Investigate security incidents, implement countermeasures, and conduct incident response.
- Conduct Forensic Analysis on compromised systems using digital forensics tools.
- Analyze information technology security events for forensic purposes.
- Lead efforts in Hunting for anomalous patterns detection and content management.
- Apply strong logical/critical thinking abilities, especially in analyzing security events.
- Analyze windows event logs, network traffic, and IDS events for malicious intent.
- Utilize strong analytical and technical skills for hunting activities.
- Produce clear and thorough security incident reports and briefings.
- Identify and implement countermeasures or mitigating controls for deployment.
- Recommend and coordinate countermeasures to operational CND personnel.
- Develop rules, filters, views, signatures, and operationally relevant applications/scripts.
- Bachelor's Degree
- Possess at least 5 years of directly relevant experience performing digital forensic analysis with demonstrated leadership capabilities.
- Active Top Secret Security Clearance with the ability to obtain a TS/SCI is required.
- Strong analytical and technical skills in computer network defense operations, ability to lead efforts in Incident Handling (Detection, Analysis, Triage), Hunting (anomalous pattern detection and content management) and Forensic Analysis.
- Prior experience and ability to analyze information technology security events to discern events that qualify as a legitimate security incident as opposed to non-incidents. This includes security event triage, incident investigation, implementing countermeasures, and conducting incident response.
- Strong logical/critical thinking abilities, especially analyzing security events (windows event logs, network traffic, IDS events for malicious intent).
- Strong proficiency Report writing a technical writing sample and technical editing test will be required if the candidate has no prior published intelligence analysis reporting, excellent verbal and written communications skills and ability produce clear and thorough security incident reports and briefings.
- A working knowledge of the various operating systems (e.g., Windows, OS X, Linux) commonly deployed in enterprise networks, a conceptual understanding of Windows Active Directory.
- Working knowledge of network communications and routing protocols (e.g., TCP, UDP, ICMP, BGP, MPLS) and common internet applications and standards (e.g., SMTP, DNS, DHCP, SQL, HTTP, HTTPS).
- Experience with the identification and implementation of countermeasures or mitigating controls for deployment and implementation in the enterprise network environment.
- Experience conducting Forensic Analysis on compromised systems using digital forensics tools.
- Experience with Cyber, Insider Threat and Policy Violation, and eDiscovery investigations.
- Proficiency in cyber threat exploitation patterns, from first discovery through identification of persistent presence.
- Provide subject matter expertise support in the detection, analysis, and mitigation of insider threat activities.
- Previous firsthand experience with Security Information and Event Monitoring (SIEM) platforms and log management systems that perform log collection, analysis, correlation, and alerting is required (preferably within Splunk or MS Sentinel).
- Ability to develop rules, filters, views, signatures, countermeasures and operationally relevant applications and scripts to support analysis and detection efforts.
- Experience in recommending and coordinating countermeasures to operational CND personnel.
- Familiarity with scripting languages (BASH, PowerShell, Python, PERL, RUBY) or software development frameworks (.NET).
- GCIA
- GCED
- GCFA
- GCFE
- GCTI
- GNFA
- GCIH
- ECSA
- CHFI
- CISSP
- Security+
- Network+
- CEH
- CND
- CCE
- CFC
- EnCE
- CFCE
- GREM
-
Forensics Analyst
1 week ago
Insight Global Quantico, United States50-66hr · Must-haves · -Active Secret clearance (TS/SCI preferred) · -IAT III certification · -CSSP IR certification (or ability to obtain within 6 months of hire) · -Knowledge of chain of custody and the uniqueness of digital evidence. · -Demonstrated skill in performing p ...
-
External Forensic Analyst
3 weeks ago
Peraton Arlington, United StatesPeraton is looking for a Mobile Forensic Analyst in support of the Cyber Threat Analysis Division mission. Location: Arlington, VA; Hybrid work schedule possible; 3 days per week on-site required after onboarding process is complete. The Cyber Threat Forensic, Mobile, Analyst, Ex ...
-
Forensic Analyst
1 week ago
ARMISON TECH, INC. Chantilly, United StatesArmison Tech · is a minority owned small business located in the Northern Virginia area. The company was established in 2012 and serves a broad range of clients who operate in both the public and private sectors. · Armison Tech · is constantly searching for exceptionally quali ...
-
Forensics Analyst Sr
5 days ago
Gray Tier Technologies Washington, United States Full timeGray Tier Technologies is seeking a Senior Forensics Analyst with an active Secret clearance to support our DOI customer's Security Operation Center in DC or Reston Virginia.. · The Department of the Interior (DOI) protects America's natural resources and heritage, honors our cu ...
-
External Forensic Analyst Journeyman
4 days ago
Peraton Arlington, United StatesPeraton is currently seeking to hire a Digital Forensic Analyst Journeyman for its' U.S. Department of State, Computer Investigations and Forensics Division (DS/ CTI/ CIF) which conducts digital evidence recovery and analysis in support of Diplomatic Forensic, Journeyman, Analyst ...
-
Digital Forensics Analyst, Junior
4 days ago
Peraton Arlington, United StatesResponsibilities: · The U.S. Department of State, Computer Investigations and Forensics Division (DS/CTI/CIF) conducts digital evidence recovery and analysis in support of Diplomatic Security Service (DSS) criminal, cyber, and administrative investigations. The Digital Forensics ...
-
Digital Forensic Analyst
2 weeks ago
Buchanan & Edwards Chantilly, United StatesJob Details · Job Location : Chantilly, VA · Position Type : Full Time · Salary Range : Undisclosed · Job Category : Intelligence Operations Support · Description · RenXTech is looking for a Digital Forensic Analyst join our team in Chantilly, VA Position will support the deliv ...
-
Cybersecurity Network Forensics Analyst
10 hours ago
Nine Mind Solutions Arlington, United StatesClearance: TS/SCI · We are looking for a Cybersecurity Network Forensics Analyst to support this critical customer mission. Remote/Hybrid work may be an option: Travel as required · Eligibility: · Must be a US Citizen · Must have an active TS/SCI clearance · Must be able to ob ...
-
Digital Forensic Analyst
1 week ago
Vexterra Group Bethesda, United StatesVexterra Group is searching for a Digital Forensic Analysts to provide the following support: Conduct forensic examination of High Priority Digital Media to include: · Full-Scope forensic examinations · Advanced registry and Internet history analysis · Date obfuscation and ste ...
-
Forensic Analyst SME
1 day ago
Cyber Defense Technologies Chantilly, United StatesOverview: CDT is looking for a Forensic Analyst SME to support a government customer onsite in Chantilly, VA. · Clearance: An active Top Secret/SCI with Full Scope Poly clearance is required. Candidates who do not meet these clearance requirements will not be considered. · Qua ...
-
Digital Forensic Analyst
1 week ago
Vets Hired Stafford, United StatesAbout the job Digital Forensic Analyst · Exemplar responsibilities include but are not limited to: · Assisting with seizure of digital evidence from on-site search locations while minimizing possible data loss. · Preserving and archiving digital evidence using forensic best pr ...
-
Cyber Forensic Analyst
6 days ago
AntietamTechnologies Germantown, United StatesJob Description · Job DescriptionThis position is a hybrid work schedule/location with optional remote work when no onsite activities are required. · Responsibilities: · Perform Cyber Intrusion investigations; identify attack vectors and mitigation tactics · Evaluate, architect, ...
-
Network Forensic Analyst III
10 hours ago
Ampcus Arlington, United StatesNetwork Forensic Analyst · Multi Year Salaried Contract · 2-3 Weeks of Training in Arlington, VA · Consultants living within 50 miles of Arlington, VA will need to be onsite 1 time per week · Hybrid (2-3) days onsite for consultants living closer than 50 miles to Arlington, V ...
-
Junior Digital Forensic Analyst
2 days ago
Hexordia Bethesda, United StatesJob Title: Junior Digital Forensic Analyst -- officially titled Journeyman Data Management/Intelligence Analyst, · Location: Bethesda, MD · Employment Type: Full-time, In-person · Clearance Requirement: Active TS/SCI clearance with CI Polygraph · Company Overview: Hexordia is a l ...
-
Senior Forensics/Malware Analyst
3 days ago
Peraton Washington, United States Full timeResponsibilities · Responsibilities include, but are not limited to: · • Leads and participates in the evaluation and analysis of complex malicious code through the utilization of tools, including dissemblers, debuggers, hex editors, un-packers, virtual machines, and network snif ...
-
Cybersecurity Host Based Forensics Analyst
1 week ago
Solutions3 Arlington, United StatesTitle: Cybersecurity Host-Based Forensics Analyst (L4) · Description: · Solutions LLC is supporting our prime contractor and their U.S. Government customer's Hunt and Incident Response Team (HIRT) to assist in securing the Nation's cyber and communications infrastructure. The H ...
-
Cybersecurity Host Based Forensics Analyst
6 days ago
Solutions³ LLC Arlington, United StatesJob Description · Job DescriptionTitle: Cybersecurity Host-Based Forensics Analyst (L4) · Description: · Solutions3 LLC is supporting our prime contractor and their U.S. Government customer's Hunt and Incident Response Team (HIRT) to assist in securing the Nation's cyber and comm ...
-
Cyber Network Forensic Analyst II
2 weeks ago
Nightwing Arlington, United StatesDate Posted: · Country: · United States of America · Location: · VA149: 1110 N Glebe Road Arlington 1110 North Glebe Road Suite 630, Arlington, VA, 22201 USA · Position Role Type: · Hybrid · You have been redirected to RTXs career page as we have recently transitioned from ...
-
Digital Forensics Support Analyst
2 weeks ago
ManTech Chantilly, United States Full timeSecure our Nation, Ignite your Future · Join a highly recognized and elite team of technical leaders delivering advanced technical solutions in digital forensics to intelligence agencies. Our team solves the problems others have attempted to solve but couldn't. Our solutions enab ...
-
Digital Forensics Support Analyst
2 days ago
ManTech International Corporation Chantilly, United StatesSecure our Nation, Ignite your FutureJoin a highly recognized and elite team of technical leaders delivering advanced technical solutions in digital forensics to intelligence agencies. Our team solves the problems others have attempted to solve but couldn't. Our solutions enable ...
Digital Forensic Analyst - Springfield, United States - BDR Solutions LLC
4 weeks ago
![Default job background](https://contents.bebee.com/public/img/bg-user-ex-1.jpg)
Description
BDR Solutions, LLC, (BDR) supports the U.S. Federal Government in successfully achieving its mission and goals. Our service and solution delivery starts with understanding each client's end-state, and then seamlessly integrating within each Agency's organization to improve and enhance business and technical operations and deployments.
BDR is seeking a Digital Forensics Analyst (Top Secret Cleared) to join our growing team This position will be performed virtually from the individual's home office working on EST time schedule. This position requires US Citizenship with an active Top Secret clearance and SCI eligibility.
(Military Veterans are highly encouraged to apply)
Role Overview
The Digital Forensics Analyst will support an Agency-level Focused Operations (FO) team at DHS. The Senior Digital Forensics Analysts will conduct advanced security event analytics, insider threat monitoring, log analysis, host-based forensics, incident response, and case management. In support of this vital mission, BDR staff are on the forefront of providing Advanced CND (Computer Network Defense) Operations, and Systems Engineering support to include the development of advanced analytics and countermeasures to protect critical assets. To ensure the integrity, security, and resiliency of critical operations, we are seeking candidates with diverse backgrounds in cyber security systems operations, analysis, and incident response. Strong written and verbal communication skills are necessary. The ideal candidate will have a solid understanding of incident response, forensics investigations, and cyber threats. Additionally, the ideal candidate would be familiar with digital evidence collection, malware analysis, host-based forensic tools, intrusion detection systems, file systems, security information event management platforms, endpoint threat detection tools, and security operations ticket management.
***Onsite once a week in Springfield, VA
Responsibilities
BDR is an Equal Opportunity Employer. Qualified applicants will receive consideration for employment without regard to race, color, religion, sex, age, national origin, marital status, disability, veteran status, sexual orientation, or genetic information.