Digital Forensics

3 weeks ago


Washington, United States Agile Defense, Inc. Full time
Agile Defense provides leading-edge Digital Transformation solutions to support and advance our customers' mission. We deliver innovative and high-quality services to our customers worldwide through an empowered and engaged workforce. Job Title: Digital Forensics & E-Discovery Specialist - SME Location: 1 Massachusetts Ave NW Washington, District of Columbia 20001 Clearance Level: Active Secret Required Certification(s): One of the following: GCIA, GCED, GCFA, GCFE, GCTI, GNFA, GCIH, ECSA, CHFI, CISSP, Security+, Network+, CEH, CND. CCE, CFC, EnCE, CFCE, GREM SUMMARY: Agile Defense is currently seeking several talented Analysts to support a commercial entity in the transportation sector. The Insider Threat program is a part of an advanced analytics capability of a Focused Operations program that provides comprehensive Computer Network Defense and Response support through monitoring and analysis of potential threat activity targeting the enterprise. The Digital Forensics & E-Discovery Specialist SME will conduct advanced security event analytics, insider threat monitoring, log analysis, host-based forensics, incident response, and case management. In support of this vital mission, our staff are on the forefront of providing Advanced CND (Computer Network Defense) Operations, and Systems Engineering support to include the development of advanced analytics and countermeasures to protect critical assets. JOB DUTIES AND RESPONSIBILITIES
Lead efforts in Incident Handling, including Detection, Analysis, and Triage.
Conduct security event triage to discern legitimate security incidents.
Investigate security incidents, implement countermeasures, and conduct incident response.
Conduct Forensic Analysis on compromised systems using digital forensics tools.
Analyze information technology security events for forensic purposes.
Lead efforts in Hunting for anomalous patterns detection and content management.
Apply strong logical/critical thinking abilities, especially in analyzing security events.
Analyze windows event logs, network traffic, and IDS events for malicious intent.
Utilize strong analytical and technical skills for hunting activities.
Produce clear and thorough security incident reports and briefings.
Identify and implement countermeasures or mitigating controls for deployment.
Recommend and coordinate countermeasures to operational CND personnel.
Develop rules, filters, views, signatures, and operationally relevant applications/scripts. Education, Background, and Years of Experience
Nine (9) to twelve (12) years of experience
Bachelor's not required, strongly encouraged ADDITIONAL SKILLS & QUALIFICATIONS
Required Skills Strong analytical and technical skills in computer network defense operations, ability to lead efforts in Incident Handling (Detection, Analysis, Triage), Hunting (anomalous pattern detection and content management) and Forensic Analysis.
Prior experience and ability to analyze information technology security events to discern events that qualify as a legitimate security incident as opposed to non-incidents. This includes security event triage, incident investigation, implementing countermeasures, and conducting incident response.
Strong logical/critical thinking abilities, especially analyzing security events (windows event logs, network traffic, IDS events for malicious intent).
Strong proficiency Report writing - a technical writing sample and technical editing test will be required if the candidate has no prior published intelligence analysis reporting, excellent verbal and written communications skills and ability produce clear and thorough security incident reports and briefings.
Excellent organizational and attention to details in tracking activities within various Security Operation workflows.
A working knowledge of the various operating systems (e.g., Windows, OS X, Linux, etc.) commonly deployed in enterprise networks, a conceptual understanding of Windows Active Directory.
Working knowledge of network communications and routing protocols (e.g., TCP, UDP, ICMP, BGP, MPLS, etc.) and common internet applications and standards (e.g., SMTP, DNS, DHCP, SQL, HTTP, HTTPS, etc.).
Experience with the identification and implementation of countermeasures or mitigating controls for deployment and implementation in the enterprise network environment.
Experience conducting Forensic Analysis on compromised systems using digital forensics tools.
Experience with Cyber, Insider Threat and Policy Violation, and eDiscovery investigations.
Proficiency in cyber threat exploitation patterns, from first discovery through identification of persistent presence.
Provide subject matter expertise support in the detection, analysis, and mitigation of insider threat activities.
Previous hands-on experience with Security Information and Event Monitoring (SIEM) platforms and log management systems that perform log collection, analysis, correlation, and alerting is required (preferably within Splunk or MS Sentinel).
Ability to develop rules, filters, views, signatures, countermeasures and operationally relevant applications and scripts to support analysis and detection efforts.
Experience in recommending and coordinating countermeasures to operational CND personnel. Employees of Agile Defense are our number one priority, and the importance we place on our culture here is fundamental. Our culture is alive and evolving, but it always stays true to its roots. Here, you are valued as a family member, and we believe that we can accomplish great things together. Agile Defense has been highly successful in the past few years due to our employees and the culture we create together. We believe several attributes are the root of our very best employees and extraordinary culture. We have named these attributes "The 6 H's" - Happy, Helpful, Honest, Humble, Hungry, and Hustle. Happy : We exhibit a positive outlook in order to create a positive environment. Helpful : We assist each other and pull together as teammates to deliver. Honest : We conduct our business with integrity. Humble : We recognize that success is not achieved alone, that there is always more to learn, and that no task is below us. Hungry : We desire to consistently improve. Hustle : We work hard and get after it. These Core Values are present in all our employees and our organization's aspects. Learn more about us and our culture by visiting us here. COVID-19 Vaccination Requirements Agile Defense is subject to federal vaccine mandates or other customer/facility vaccination requirements as a federal contractor. As such, to protect its employees' health and safety and comply with customer requirements, Agile Defense may require employees in certain positions to be fully vaccinated against COVID-19. Vaccination requirements will depend on the status of the federal contractor mandate and customer site requirements. Equal Opportunity Employer/Protected Veterans/Individuals with Disabilities
The contractor will not discharge or in any other manner discriminate against employees or applicants because they have inquired about, discussed, or disclosed their own pay or the pay of another employee or applicant. However, employees who have access to the compensation information of other employees or applicants as a part of their essential job functions cannot disclose the pay of other employees or applicants to individuals who do not otherwise have access to compensation information, unless the disclosure is (a) in response to a formal complaint or charge, (b) in furtherance of an investigation, proceeding, hearing, or action, including an investigation conducted by the employer, or (c) consistent with the contractor's legal duty to furnish information. 41 CFR 60-1.35(c)

  • Washington, United States Non-Departmental Agency Full time

    Summary Digital Forensics Engineers analyze data from ongoing cyber-attacks, provide information on threat mitigations, and write code to help develop information recovery techniques. ...


  • Washington, Washington, D.C., United States Non-Departmental Agency Full time

    Summary Digital Forensics Engineers analyze data from ongoing cyber-attacks, provide information on threat mitigations, and write code to help develop information recovery techniques.Duties As a Digital Forensic Engineer (DFE) for CIA, you will focus on the Agency's toughest technology challenges and cyber threats. DFEs are energetic and enthusiastic...


  • Washington, United States Contact Discovery Services Full time

    Digital Forensic Senior Analyst Contact Discovery Services - Washington, DC Location: Washington, DC Start Date: Negotiable A leading eDiscovery technology and consulting firm headquartered in Washington, DC is looking for a qualified and experienced Digital Forensic Analyst. We are seeking a motivated individual with a strong interest in the legal and...


  • Washington, United States Contact Discovery Services LLC Full time

    Job DescriptionJob DescriptionDigital Forensic Senior Analyst Contact Discovery Services - Washington, DCLocation: Washington, DCStart Date: NegotiableA leading eDiscovery technology and consulting firm headquartered in Washington, DC is looking for a qualified and experienced Digital Forensic Analyst. We are seeking a motivated individual with a strong...

  • Forensic Analyst

    1 week ago


    Washington, United States Lprs Full time

    Our Organization requires the services of a Forensic Analyst. Responsibilities Assisting in preliminary analysis by tracing activity to its source and documenting findings for input into a forensic report. Documenting the original condition of digital and associated evidence by taking photographs and collecting hash information. Assisting in gathering,...

  • Digital Forensics

    1 week ago


    Washington, United States XOR Security Full time

    Job Title: Digital Forensics & E-Discovery Specialist - SME Location: 1 Massachusetts Ave NW Washington, District of Columbia 20001 Clearance Level: Active Secret Required Certification(s): One of the following: GCIA, GCED, GCFA, GCFE, GCTI, GNFA, GCIH, ECSA, CHFI, CISSP, Security+, Network+, CEH, CND. CCE, CFC, EnCE, CFCE, GREM SUMMARYXOR Security, an...


  • Washington, United States Alvarez and Marsal Full time

    **Description** **Manager/Director, Computer Forensics** Alvarez & Marsal is a premier independent global professional services firm specializing in providing turnaround management, restructuring, performance improvement and corporate advisory services. Our talent drives our success, resulting in A&M’s Forensic Technology Services being a recognized...


  • Washington, United States Offices, Boards and Divisions Full time

    Summary This position is Digital Investigative Analyst in the Criminal Section, Civil Rights Division, . Department of Justice, Washington, DC. The incumbent provides technical leadership and guidance to federal prosecutors and agents in identifying the relevant digital evidence obtained from seized computer data or online sources and suggests avenues...

  • Forensics Consultant

    7 hours ago


    Washington, United States Innovative Driven Full time

    Innovative Driven (“ID”) is seeking a self-motivated, team-oriented Digital Forensic Consultant to join our energetic and collaborative team of industry experts. The candidate will represent ID’s Forensics team in providing our clients with world-class Digital Forensics and Litigation support.To be considered for this role, candidates must live within...


  • Washington, United States Judicial Branch Full time

    Summary This position is located in the Department of Technology Services, Information Technology Security Office, Security Operations Division. ...


  • Washington, Washington, D.C., United States Judicial Branch Full time

    Summary This position is located in the Department of Technology Services, Information Technology Security Office, Security Operations Division. Duties This position is within the IT Security Office (ITSO) of the Department of Technology Services. The incumbent is a recognized expert in cyber security, digital forensics, malware analysis, and leading...

  • Cyber Threat Analyst

    4 weeks ago


    Washington, United States Non-Departmental Agency Full time

    Summary Cyber Threat Analysts conduct analysis, digital forensics, and targeting to identify and counter foreign cyber threats against U.S. information systems, infrastructure, and cyber-related interests. ...

  • Cyber Threat Analyst

    4 weeks ago


    Washington, Washington, D.C., United States Non-Departmental Agency Full time

    SummaryCyber Threat Analysts conduct analysis, digital forensics, and targeting to identify and counter foreign cyber threats against U.S. information systems, infrastructure, and cyber-related interests.Duties As a Cyber Threat Analyst at CIA, you will conduct all-source analysis, digital forensics, and targeting to identify, monitor, and counter threats...

  • Data Analysis Officer

    4 weeks ago


    Washington, United States Non-Departmental Agency Full time

    Summary Data Analysis Officers identify items of intelligence and operational interest by evaluating, analyzing, and exploiting digital data to identify and assess how adversaries operate and interact. ...

  • Data Analysis Officer

    4 weeks ago


    Washington, Washington, D.C., United States Non-Departmental Agency Full time

    Summary Data Analysis Officers identify items of intelligence and operational interest by evaluating, analyzing, and exploiting digital data to identify and assess how adversaries operate and interact.Duties As a Data Analysis Officer at CIA, you'll utilize your understanding of digital capabilities to evaluate and analyze digital and all source...


  • Washington, United States DAN Solutions Full time

    Job DescriptionJob DescriptionREQUIRES AN ACTIVE, EXISTING TS/SCI WITH CI POLYGRAPH - NO REMOTE WORK, MUST WORK ON SITEHOW A CYBER INCIDENT DETECTOR WILL MAKE AN IMPACT• Perform forensic analysis of digital information and gathers and handles evidence. Identify network computer intrusion evidence and perpetrators, and coordinates with other government...


  • Washington, United States DAn Solutions, Inc Full time

    REQUIRES AN ACTIVE, EXISTING TS/SCI WITH CI POLYGRAPH - NO REMOTE WORK, MUST WORK ON SITEHOW A CYBER INCIDENT DETECTOR WILL MAKE AN IMPACT• Perform forensic analysis of digital information and gathers and handles evidence. Identify network computer intrusion evidence and perpetrators, and coordinates with other government agencies to record and report...


  • Washington, Washington, D.C., United States Joint Enterprise Technologies, LLC Full time

    Today's global security environment is a constant of change.Joint Enterprise Technologies is currently seeking an experienced Cyber Security Analyst with advanced knowledge in applying analytics in support of our client's enterprise network cyber defense capabilities As a Cyber Security Analyst you will have the opportunity to build strong lines of cyber...


  • Washington, United States District of Columbia Federal Public Defender Full time

    Qualification The applicant should demonstrate strong attention to detail and the ability to maintain effective working relationships with attorneys and support staff. They should have an interest in learning about and using e-discovery and digital evidence practices in federal court.  A high school graduate or equivalent with at least two years of...


  • Washington, United States Judicial Branch Full time

    Summary This position is located in the Department of Technology Services, Information Technology Security Office, Security Operations Division. ...