11 дней назад
Digital Forensic Examiner (DFIR)
112 900 - 257 000$
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
Текст:
TL;DR
Digital Forensic Examiner (DFIR): Conducting digital forensic and incident response investigations by collecting and analyzing forensic images, malware, logs, and system evidence with an accent on incident scoping, timeline analysis, and technical reporting. Focus on identifying indicators of compromise, unauthorized access, and data exfiltration while communicating findings to senior reviewers, clients, counsel, and management.
Location: Remote role associated with Warrenton, Oregon, USA, and Washington, District of Columbia, USA; occasional in-person work at a Booz Allen or customer facility may be required.
Salary: $112,900–$257,000 annualized USD
Company
provides employee benefits, professional development, tuition assistance, and work-life programs.
What you will do
- Scope potential digital forensics and incident response matters and complete required case documentation.
- Manage cyber incident response investigations involving forensic, malware, and log analysis.
- Collect and analyze forensic images, triage datasets, malware, logs, and system evidence.
- Identify indicators of compromise, unauthorized access, misuse, malware activity, and data exfiltration.
- Correlate events from multiple sources to build timeline analyses.
- Prepare technical reports and communicate findings to senior reviewers, clients, counsel, and management.
Requirements
- Experience managing the full lifecycle of large-scale and complex investigations.
- Experience with Microsoft Windows and non-Windows systems such as Mac or Linux.
- Scripting or programming experience with PowerShell or Python.
- Experience with digital forensic and incident response methodologies.
- Ability to perform multi-source event correlation, log analysis, and identification of unauthorized activity.
- Bachelor’s degree and strong written and verbal communication skills.
Nice to have
- 1+ years of incident response or digital forensics experience.
- Experience with EnCase, FTK, Axiom, Splunk, ELK Stack, and open-source forensic tools.
- Experience with mobile devices and endpoint detection and response tools such as SentinelOne.
- Bachelor’s or master’s degree in Cybersecurity.
- Professional certifications such as CCE, EnCE, CFCE, ACE, CISSP, GIAC, GCFE, GCFA, GREM, or GNFA.
Culture & Benefits
- Health, life, disability, financial, and retirement benefits.
- Paid leave, professional development, tuition assistance, work-life programs, and dependent care support.
- Recognition awards for exceptional performance and demonstration of company values.
- Virtual employees are generally expected to keep cameras on during meetings.
- Remote work may occasionally require attendance at a Booz Allen or customer facility.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →
Похожие вакансии
11 дней назад
EDR Engineer / Senior EDR Engineer (Cybersecurity)
78 500 - 117 500$
CrowdStrike
13 дней назад
Analyst I, Falcon Complete GovCloud (Hybrid, St Louis) (Cybersecurity)
85 000 - 120 000$
CrowdStrike
12 дней назад
Platform Professional Services, Sr. Analyst (Cybersecurity)
CrowdStrike
12 дней назад
Analyst I, Falcon Complete (AI/Cybersecurity)
90 000 - 135 000CAD
15 часов назад
Lead/Senior Security Engineer (Incident Response)
136 500 - 214 500$
CrowdStrike
13 дней назад