10 часов назад
Digital Forensics Analyst (Cybersecurity)
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
Текст:
TL;DR
Digital Forensics Analyst (Cybersecurity): Conducting digital forensic analysis, media acquisition, mobile device investigations, and malware analysis across Windows, Linux, Mac, cloud, and network environments with an accent on endpoint, cloud, and investigative technologies. Focus on investigating virtual machines, CloudTrail and IAM logs, and examining endpoint and network activity using EDR, SIEM, and full packet capture.
Location: Alexandria, VA, United States
Company
is a growing organization focused on continuous learning, professional growth, innovation, collaboration, and impactful client work.
What you will do
- Conduct or support digital forensic investigations across Windows, Linux, and Mac environments.
- Acquire and analyze digital media, including disk duplication and mobile devices.
- Perform malware analysis and investigate virtual machines.
- Investigate cloud environments using M365, Azure, AWS, CloudTrail, and IAM logs.
- Use EDR, SIEM, and full packet capture to hunt and analyze endpoint and network activity.
Requirements
- At least 5 years of experience conducting or supporting digital forensic analysis.
- Experience with M365, Azure, and AWS.
- Experience investigating virtual machines, CloudTrail, and IAM logs.
- Ability to use EDR, SIEM, and full packet capture for investigative and threat-hunting activities.
- Public Trust clearance.
Nice to have
- SANS GIAC certifications, including GCIH, GCFA, GCFE, GREM, GISF, GXPN, GCTI, or GOSI.
- EnCase certifications such as EnCE, CFSR, or ENCEP.
Culture & Benefits
- 20 days of paid time off and 40 hours of paid sick and safe time.
- 11 federal holidays and 2 corporate holidays.
- Health, vision, dental, and life insurance.
- 401(k) with tiered matching and 100% vesting.
- Parental leave for birthing and non-birthing parents.
- Professional development reimbursement.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →