ΠΎΠ±Π½ΠΎΠ²Π»Π΅Π½ΠΎ 14 Π΄Π½Π΅ΠΉ Π½Π°Π·Π°Π΄
Digital Forensics and Incident Analyst (Cybersecurity)
ΠΡΡΡ & Π‘ΠΎΠΏΡΠΎΠ²ΠΎΠ΄
ΠΠ»Ρ ΠΌΡΡΡΠ° Ρ ΡΡΠΎΠΉ Π²Π°ΠΊΠ°Π½ΡΠΈΠ΅ΠΉ Π½ΡΠΆΠ΅Π½ Plus
ΠΠΏΠΈΡΠ°Π½ΠΈΠ΅ Π²Π°ΠΊΠ°Π½ΡΠΈΠΈ
Π’Π΅ΠΊΡΡ:
TL;DR
Digital Forensics and Incident Analyst (Cybersecurity): Analyzing digital evidence and investigating cyber incidents for enterprise SOC operations, legal authorities, and investigative partners with an accent on malware analysis, file-system forensics, evidence integrity, and incident mitigation. Focus on examining intrusion artifacts, identifying adversary techniques, preserving chain of custody, and producing technical findings for authorized authorities.
Location: Onsite in Washington, DC, United States
Company
provides cybersecurity and mission-support services for defense and regulated environments.
What you will do
- Analyze digital evidence, log files, intrusion artifacts, malware, memory dumps, and recovered data during cyber investigations.
- Provide Tier 2 and Tier 3 support to the enterprise Security Operations Center and coordinate incident response with partner security operations centers.
- Perform file-signature, file-system, malware, dynamic, memory, and security-event analysis across Windows, Unix, and Linux environments.
- Maintain evidence integrity through collection, packaging, transport, storage, hashing, and documented chain-of-custody procedures.
- Prepare technical findings and reports for legal, oversight, investigative, law-enforcement, and other authorized requesting authorities.
- Support forensic-platform updates, case-management workflows, solution pilots, system documentation, assessment and authorization, and contingency planning.
Requirements
- U.S. citizenship and an active Top Secret security clearance are required.
- Bachelor's degree in cybersecurity, computer science, digital forensics, information systems, or a related field; additional experience may substitute for the degree.
- At least 7 years of hands-on digital forensics and incident response experience, preferably in federal or regulated environments.
- CFIA and CFIH certifications are required.
- Experience with forensic and analysis tools including EnCase, FTK, Autopsy, The Sleuth Kit, X-Ways, Volatility, Wireshark, YARA, Ghidra, or IDA Pro.
- Strong knowledge of Windows, Unix, and Linux internals, NTFS/FAT/EXT file systems, virtualization, SIEM platforms, the NICE Framework, NIST guidance, MITRE ATT&CK, Rules of Evidence, and technical reporting.
Culture & Benefits
- Regular employment in the Cybersecurity β IA and Compliance department.
- Work within a culture emphasizing collaboration, ethical conduct, mutual respect, continuous improvement, and mission focus.
- Support complex cybersecurity, legal-governance, privacy, and national-security missions.
ΠΡΠ΄ΡΡΠ΅ ΠΎΡΡΠΎΡΠΎΠΆΠ½Ρ: Π΅ΡΠ»ΠΈ ΡΠ°Π±ΠΎΡΠΎΠ΄Π°ΡΠ΅Π»Ρ ΠΏΡΠΎΡΠΈΡ Π²ΠΎΠΉΡΠΈ Π² ΠΈΡ ΡΠΈΡΡΠ΅ΠΌΡ, ΠΈΡΠΏΠΎΠ»ΡΠ·ΡΡ iCloud/Google, ΠΏΡΠΈΡΠ»Π°ΡΡ ΠΊΠΎΠ΄/ΠΏΠ°ΡΠΎΠ»Ρ, Π·Π°ΠΏΡΡΡΠΈΡΡ ΠΊΠΎΠ΄/ΠΠ, Π½Π΅ Π΄Π΅Π»Π°ΠΉΡΠ΅ ΡΡΠΎΠ³ΠΎ - ΡΡΠΎ ΠΌΠΎΡΠ΅Π½Π½ΠΈΠΊΠΈ. ΠΠ±ΡΠ·Π°ΡΠ΅Π»ΡΠ½ΠΎ ΠΆΠΌΠΈΡΠ΅ "ΠΠΎΠΆΠ°Π»ΠΎΠ²Π°ΡΡΡΡ" ΠΈΠ»ΠΈ ΠΏΠΈΡΠΈΡΠ΅ Π² ΠΏΠΎΠ΄Π΄Π΅ΡΠΆΠΊΡ. ΠΠΎΠ΄ΡΠΎΠ±Π½Π΅Π΅ Π² Π³Π°ΠΉΠ΄Π΅ β
ΠΠΎΡ ΠΎΠΆΠΈΠ΅ Π²Π°ΠΊΠ°Π½ΡΠΈΠΈ
14 Π΄Π½Π΅ΠΉ Π½Π°Π·Π°Π΄
Security Incident Response Engineer (Cybersecurity)
14 Π΄Π½Π΅ΠΉ Π½Π°Π·Π°Π΄
Staff CSIRT Analyst (Cybersecurity)
200Β 000 - 210Β 000$
14 Π΄Π½Π΅ΠΉ Π½Π°Π·Π°Π΄
Security Operations Center (SOC) Analyst (Cybersecurity)
5 Π΄Π½Π΅ΠΉ Π½Π°Π·Π°Π΄
Cybersecurity Analyst - Tier 2 (AI)
14 Π΄Π½Π΅ΠΉ Π½Π°Π·Π°Π΄