5+ years in digital forensic analysis across multiple operating systems (Windows, Linux, Mac)
Proficient in digital media and mobile device acquisition/analysis
Experience with cloud platforms like M365, Azure, and AWS
Skilled in investigating Virtual Machines and analyzing CloudTrail and IAM logs
Knowledgeable in using EDR, SIEM, and packet capture technologies
Relevant certifications preferred (e.g., SANS GIAC series)
Public Trust clearance required
Responsibilities
Conduct forensic analysis on digital evidence from various platforms
Support acquisition processes for digital media and mobile devices
Analyze malware and identify potential threats
Investigate cloud services and virtual environments for security incidents
Utilize advanced security tools for endpoint and network analysis
Perform proactive hunting of potential security threats
Maintain detailed documentation of forensic processes and findings
Benefits
Professional development opportunities through training and certifications
Access to cutting-edge forensic analysis technology
Collaborative team environment with skilled peers
Flexible work arrangements to support work-life balance
Engagement in impactful national security-related projects
Full Job Description
Required Experience
Must have at least 5 years of experience conducting, or supporting the conduct of, digital forensic analysis (Windows, Linux and Mac), digital media acquisition (disk duplication), mobile device acquisition/analysis, malware analysis.
Experience with M365, Azure and AWS.
Ability to investigate Virtual Machines, Cloud Trail, IAM logs. Utilize state-of-the-art technologies such as EDR, SIEM, and full packet capture to perform hunt and investigative activity to examine endpoint and network-based activity.