Jobs
>
Springfield

    Digital Forensic Analyst - Springfield, United States - BDR Solutions LLC

    BDR Solutions LLC
    BDR Solutions LLC Springfield, United States

    4 weeks ago

    Show more Collapse job
    Default job background
    Description


    BDR Solutions, LLC, (BDR) supports the U.S. Federal Government in successfully achieving its mission and goals. Our service and solution delivery starts with understanding each client's end-state, and then seamlessly integrating within each Agency's organization to improve and enhance business and technical operations and deployments.

    BDR is seeking a Digital Forensics Analyst (Top Secret Cleared) to join our growing team This position will be performed virtually from the individual's home office working on EST time schedule. This position requires US Citizenship with an active Top Secret clearance and SCI eligibility.

    (Military Veterans are highly encouraged to apply)

    Role Overview

    The Digital Forensics Analyst will support an Agency-level Focused Operations (FO) team at DHS. The Senior Digital Forensics Analysts will conduct advanced security event analytics, insider threat monitoring, log analysis, host-based forensics, incident response, and case management. In support of this vital mission, BDR staff are on the forefront of providing Advanced CND (Computer Network Defense) Operations, and Systems Engineering support to include the development of advanced analytics and countermeasures to protect critical assets. To ensure the integrity, security, and resiliency of critical operations, we are seeking candidates with diverse backgrounds in cyber security systems operations, analysis, and incident response. Strong written and verbal communication skills are necessary. The ideal candidate will have a solid understanding of incident response, forensics investigations, and cyber threats. Additionally, the ideal candidate would be familiar with digital evidence collection, malware analysis, host-based forensic tools, intrusion detection systems, file systems, security information event management platforms, endpoint threat detection tools, and security operations ticket management.

    ***Onsite once a week in Springfield, VA

    Responsibilities
    • Lead efforts in Incident Handling, including Detection, Analysis, and Triage.
    • Conduct security event triage to discern legitimate security incidents.
    • Investigate security incidents, implement countermeasures, and conduct incident response.
    • Conduct Forensic Analysis on compromised systems using digital forensics tools.
    • Analyze information technology security events for forensic purposes.
    • Lead efforts in Hunting for anomalous patterns detection and content management.
    • Apply strong logical/critical thinking abilities, especially in analyzing security events.
    • Analyze windows event logs, network traffic, and IDS events for malicious intent.
    • Utilize strong analytical and technical skills for hunting activities.
    • Produce clear and thorough security incident reports and briefings.
    • Identify and implement countermeasures or mitigating controls for deployment.
    • Recommend and coordinate countermeasures to operational CND personnel.
    • Develop rules, filters, views, signatures, and operationally relevant applications/scripts.
    Required Minimum Qualifications
    • Bachelor's Degree
    • Possess at least 5 years of directly relevant experience performing digital forensic analysis with demonstrated leadership capabilities.
    • Active Top Secret Security Clearance with the ability to obtain a TS/SCI is required.
    • Strong analytical and technical skills in computer network defense operations, ability to lead efforts in Incident Handling (Detection, Analysis, Triage), Hunting (anomalous pattern detection and content management) and Forensic Analysis.
    • Prior experience and ability to analyze information technology security events to discern events that qualify as a legitimate security incident as opposed to non-incidents. This includes security event triage, incident investigation, implementing countermeasures, and conducting incident response.
    • Strong logical/critical thinking abilities, especially analyzing security events (windows event logs, network traffic, IDS events for malicious intent).
    • Strong proficiency Report writing a technical writing sample and technical editing test will be required if the candidate has no prior published intelligence analysis reporting, excellent verbal and written communications skills and ability produce clear and thorough security incident reports and briefings.
    • A working knowledge of the various operating systems (e.g., Windows, OS X, Linux) commonly deployed in enterprise networks, a conceptual understanding of Windows Active Directory.
    • Working knowledge of network communications and routing protocols (e.g., TCP, UDP, ICMP, BGP, MPLS) and common internet applications and standards (e.g., SMTP, DNS, DHCP, SQL, HTTP, HTTPS).
    • Experience with the identification and implementation of countermeasures or mitigating controls for deployment and implementation in the enterprise network environment.
    • Experience conducting Forensic Analysis on compromised systems using digital forensics tools.
    • Experience with Cyber, Insider Threat and Policy Violation, and eDiscovery investigations.
    • Proficiency in cyber threat exploitation patterns, from first discovery through identification of persistent presence.
    • Provide subject matter expertise support in the detection, analysis, and mitigation of insider threat activities.
    • Previous firsthand experience with Security Information and Event Monitoring (SIEM) platforms and log management systems that perform log collection, analysis, correlation, and alerting is required (preferably within Splunk or MS Sentinel).
    • Ability to develop rules, filters, views, signatures, countermeasures and operationally relevant applications and scripts to support analysis and detection efforts.
    • Experience in recommending and coordinating countermeasures to operational CND personnel.
    • Familiarity with scripting languages (BASH, PowerShell, Python, PERL, RUBY) or software development frameworks (.NET).
    Required Certifications (One or more of the following)
    • GCIA
    • GCED
    • GCFA
    • GCFE
    • GCTI
    • GNFA
    • GCIH
    • ECSA
    • CHFI
    • CISSP
    • Security+
    • Network+
    • CEH
    • CND
    • CCE
    • CFC
    • EnCE
    • CFCE
    • GREM
    In addition, U.S Citizenship is required. Select applicants will be subject to a government security investigation and must meet eligibility requirements for access to classified information and be able to obtain a government-granted security clearance. Individuals may also be subject to a background investigation including, but not limited to criminal history, employment and education verification, drug testing, and creditworthiness.

    BDR is an Equal Opportunity Employer. Qualified applicants will receive consideration for employment without regard to race, color, religion, sex, age, national origin, marital status, disability, veteran status, sexual orientation, or genetic information.

    We have other current jobs related to this field that you can find below

  • Insight Global

    Forensics Analyst

    1 week ago


    Insight Global Quantico, United States

    50-66hr · Must-haves · -Active Secret clearance (TS/SCI preferred) · -IAT III certification · -CSSP IR certification (or ability to obtain within 6 months of hire) · -Knowledge of chain of custody and the uniqueness of digital evidence. · -Demonstrated skill in performing p ...


  • Peraton Arlington, United States

    Peraton is looking for a Mobile Forensic Analyst in support of the Cyber Threat Analysis Division mission. Location: Arlington, VA; Hybrid work schedule possible; 3 days per week on-site required after onboarding process is complete. The Cyber Threat Forensic, Mobile, Analyst, Ex ...

  • ARMISON TECH, INC.

    Forensic Analyst

    1 week ago


    ARMISON TECH, INC. Chantilly, United States

    Armison Tech · is a minority owned small business located in the Northern Virginia area. The company was established in 2012 and serves a broad range of clients who operate in both the public and private sectors. · Armison Tech · is constantly searching for exceptionally quali ...


  • Gray Tier Technologies Washington, United States Full time

    Gray Tier Technologies is seeking a Senior Forensics Analyst with an active Secret clearance to support our DOI customer's Security Operation Center in DC or Reston Virginia.. · The Department of the Interior (DOI) protects America's natural resources and heritage, honors our cu ...


  • Peraton Arlington, United States

    Peraton is currently seeking to hire a Digital Forensic Analyst Journeyman for its' U.S. Department of State, Computer Investigations and Forensics Division (DS/ CTI/ CIF) which conducts digital evidence recovery and analysis in support of Diplomatic Forensic, Journeyman, Analyst ...


  • Peraton Arlington, United States

    Responsibilities: · The U.S. Department of State, Computer Investigations and Forensics Division (DS/CTI/CIF) conducts digital evidence recovery and analysis in support of Diplomatic Security Service (DSS) criminal, cyber, and administrative investigations. The Digital Forensics ...


  • Buchanan & Edwards Chantilly, United States

    Job Details · Job Location : Chantilly, VA · Position Type : Full Time · Salary Range : Undisclosed · Job Category : Intelligence Operations Support · Description · RenXTech is looking for a Digital Forensic Analyst join our team in Chantilly, VA Position will support the deliv ...


  • Nine Mind Solutions Arlington, United States

    Clearance: TS/SCI · We are looking for a Cybersecurity Network Forensics Analyst to support this critical customer mission. Remote/Hybrid work may be an option: Travel as required · Eligibility: · Must be a US Citizen · Must have an active TS/SCI clearance · Must be able to ob ...


  • Vexterra Group Bethesda, United States

    Vexterra Group is searching for a Digital Forensic Analysts to provide the following support: Conduct forensic examination of High Priority Digital Media to include: · Full-Scope forensic examinations · Advanced registry and Internet history analysis · Date obfuscation and ste ...


  • Cyber Defense Technologies Chantilly, United States

    Overview: CDT is looking for a Forensic Analyst SME to support a government customer onsite in Chantilly, VA. · Clearance: An active Top Secret/SCI with Full Scope Poly clearance is required. Candidates who do not meet these clearance requirements will not be considered. · Qua ...


  • Vets Hired Stafford, United States

    About the job Digital Forensic Analyst · Exemplar responsibilities include but are not limited to: · Assisting with seizure of digital evidence from on-site search locations while minimizing possible data loss. · Preserving and archiving digital evidence using forensic best pr ...


  • AntietamTechnologies Germantown, United States

    Job Description · Job DescriptionThis position is a hybrid work schedule/location with optional remote work when no onsite activities are required. · Responsibilities: · Perform Cyber Intrusion investigations; identify attack vectors and mitigation tactics · Evaluate, architect, ...


  • Ampcus Arlington, United States

    Network Forensic Analyst · Multi Year Salaried Contract · 2-3 Weeks of Training in Arlington, VA · Consultants living within 50 miles of Arlington, VA will need to be onsite 1 time per week · Hybrid (2-3) days onsite for consultants living closer than 50 miles to Arlington, V ...


  • Hexordia Bethesda, United States

    Job Title: Junior Digital Forensic Analyst -- officially titled Journeyman Data Management/Intelligence Analyst, · Location: Bethesda, MD · Employment Type: Full-time, In-person · Clearance Requirement: Active TS/SCI clearance with CI Polygraph · Company Overview: Hexordia is a l ...


  • Peraton Washington, United States Full time

    Responsibilities · Responsibilities include, but are not limited to: · • Leads and participates in the evaluation and analysis of complex malicious code through the utilization of tools, including dissemblers, debuggers, hex editors, un-packers, virtual machines, and network snif ...


  • Solutions3 Arlington, United States

    Title: Cybersecurity Host-Based Forensics Analyst (L4) · Description: · Solutions LLC is supporting our prime contractor and their U.S. Government customer's Hunt and Incident Response Team (HIRT) to assist in securing the Nation's cyber and communications infrastructure. The H ...


  • Solutions³ LLC Arlington, United States

    Job Description · Job DescriptionTitle: Cybersecurity Host-Based Forensics Analyst (L4) · Description: · Solutions3 LLC is supporting our prime contractor and their U.S. Government customer's Hunt and Incident Response Team (HIRT) to assist in securing the Nation's cyber and comm ...


  • Nightwing Arlington, United States

    Date Posted: · Country: · United States of America · Location: · VA149: 1110 N Glebe Road Arlington 1110 North Glebe Road Suite 630, Arlington, VA, 22201 USA · Position Role Type: · Hybrid · You have been redirected to RTXs career page as we have recently transitioned from ...


  • ManTech Chantilly, United States Full time

    Secure our Nation, Ignite your Future · Join a highly recognized and elite team of technical leaders delivering advanced technical solutions in digital forensics to intelligence agencies. Our team solves the problems others have attempted to solve but couldn't. Our solutions enab ...


  • ManTech International Corporation Chantilly, United States

    Secure our Nation, Ignite your FutureJoin a highly recognized and elite team of technical leaders delivering advanced technical solutions in digital forensics to intelligence agencies. Our team solves the problems others have attempted to solve but couldn't. Our solutions enable ...