Digital Forensics and Incident Response Team Lead

5 days ago


McLean VA United States Booz Allen Hamilton Full time
Job Summary

Booz Allen Hamilton is seeking a highly skilled Digital Forensics and Incident Response Team Lead to join our team. As a key member of our cybersecurity team, you will be responsible for leading and inspiring a team of skilled incident response analysts, fostering a culture of technical expertise, collaboration, and excellent client delivery.

Key Responsibilities
  • Lead incident response for major incidents and coordinate efforts to contain and resolve cybersecurity issues.
  • Convey status updates to critical stakeholders, including Cybersecurity and Operation leaders, legal, and others, as required.
  • Develop, maintain, and review critical documentation for all incidents.
  • Provide thought leadership for program improvements and new initiatives.
  • Guide junior team members, providing mentorship and fostering a culture of continuous learning and excellence in the Digital Forensics and Incident Response (DFIR) domain.
Requirements
  • Experience with analyzing Microsoft Windows and non-Windows systems, including Mac or Linux and using DFIR toolsets, including FTK, EnCase, XWF, and Axiom.
  • Experience with scripted DFIR toolsets written in Python or PowerShell.
  • Knowledge of common forensic artifacts analyzed during incidents to determine attack, vector, lateral movement, and data exfiltration.
  • Ability to correlate events from multiple sources to create a timeline analysis.
  • Ability to organize case notes and communicate verbally and in writing to clients.
  • Ability to prepare detailed technical reports.
Preferred Qualifications
  • 3+ years of experience with digital forensics or incident response.
  • Experience with forensically analyzing cloud data, including AWS, Azure, or GCP.
  • Knowledge of mobile device platforms, including smartphones and tablets.
  • Ability to prioritize work assignments without guidance.
  • DFIR or Cybersecurity Certification, including CCE, EnCE, CFCE, CISSP, CISM, GCIA, GCFE, GCFA, GREM, or GNFA.
What We Offer

At Booz Allen Hamilton, we celebrate your contributions, provide you with opportunities and choices, and support your total well-being. Our offerings include health, life, disability, financial, and retirement benefits, as well as paid leave, professional development, tuition assistance, work-life programs, and dependent care.



  • McLean, United States Booz Allen Hamilton Full time

    Job Number: R0200581Digital Forensics Incident Response Analyst, Senior Key Role: Leads complex digital forensics investigations and incident response activities, serving as a pivotal figure in high-stakes environments. Guides less experienced team members, providing mentorship and fostering a culture of continuous learning and excellence in the DFIR domain....


  • Washington, DC, United States MindPoint Group Full time

    Career Opportunities with MindPoint Group A great place to work. Current job opportunities are posted here as they become available. Digital Forensics Incident Response Analyst - Clearance Required Since 2009, MindPoint Group has been the cybersecurity firm of choice for the most security-conscious US federal agencies and commercial enterprises. We're proud...


  • McLean, United States Capital One Full time

    Center 3 (19075), United States of America, McLean, VirginiaSenior Associate, Digital Forensic Examiner (DFE) Capital One is looking for a Digital Forensic Examiner (DFE) to join the Cyber Insider Threat & Technical Investigations team. The DFE role will work closely with other Cyber teams and Lines of Business (LOBs) to support internal investigations,...


  • Baltimore, MD, United States IBM Full time

    IntroductionA career in IBM Consulting is rooted by long-term relationships and close collaboration with clients across the globe.You'll work with visionaries across multiple industries to improve the hybrid cloud and AI journey for the most innovative and valuable companies in the world. Your ability to accelerate impact and make meaningful change for your...


  • McLean, United States Booz Allen Hamilton Full time

    Digital Forensics Analyst The Opportunity: The Digital Forensic Analyst (DFA) is responsible for working cross-functionally to support the Cybersecurity Operations Center (CSOC). You’ll conduct research that focuses on rapidly emerging cyber threats, and the methods and processes employed by adversaries employment of cyber warfare techniques, as well as...


  • Mount Laurel, NJ, United States Comcast Corporation Full time

    Make your mark at Comcast -- a Fortune 30 global media and technology company. From the connectivity and platforms we provide, to the content and experiences we create, we reach hundreds of millions of customers, viewers, and guests worldwide. Become part of our award-winning technology team that turns big ideas into cutting-edge products, platforms, and...


  • Mount Laurel, NJ, United States Comcast Corporation Full time

    Make your mark at Comcast -- a Fortune 30 global media and technology company. From the connectivity and platforms we provide, to the content and experiences we create, we reach hundreds of millions of customers, viewers, and guests worldwide. Become part of our award-winning technology team that turns big ideas into cutting-edge products, platforms, and...


  • McLean, United States MITRE Full time

    Why choose between doing meaningful work and having a fulfilling life? At MITRE, you can have both. That's because MITRE people are committed to tackling our nation's toughest challenges—and we're committed to the long-term well-being of our employees. MITRE is different from most technology companies. We are a not-for-profit corporation chartered to work...


  • West McLean, VA , USA, United States ManTech Full time

    Secure Our Nation, Ignite Your FutureManTech is seeking a highly motivated Cyber Incident Response Analyst to join our dynamic cyber operations team in McLean, VA. As a Cyber Incident Response Analyst, you will be responsible for proactively monitoring, detecting, analyzing, and responding to cybersecurity incidents within our large enterprise network.Key...


  • McLean, United States Axxum Technologies Full time

    Senior Incident Response Analyst Responsibilities : Provide effective front-line support leveraging service desk ticketing system, telephone, and email communications Support the service desk shift lead in operational activities Interact with the government Program Manager for the service desk regarding operational issues Ensure timely and effective...


  • Richardson, TX, United States Health Care Service Corporation Full time

    At HCSC, our employees are the cornerstone of our business and the foundation to our success. We empower employees with curated development plans that foster growth and promote rewarding, fulfilling careers.Join HCSC and be part of a purpose-driven company that will invest in your professional development.This position is responsible for handling 24x7 Cyber...


  • Indianapolis, IN, United States VirtualVocations Full time

    A company is looking for a Cybersecurity Incident Commander. Key Responsibilities: Coordinate resources, activities, and timelines during security incidents Lead forensic investigators and application security analysts Mentor and grow junior resources in forensic, response, and threat-hunting capabilities Required Qualifications: Minimum of 10+...


  • , NC, United States Applied Research Associates Full time

    Cyber Forensics Expert Job DescriptionAt Applied Research Associates, we are seeking a highly skilled Cyber Forensics Expert to join our team. As a Cyber Forensics Expert, you will play a critical role in supporting our Research and Development (R&D) and Test and Evaluation (T&E) efforts for a fast-paced, mission-critical DoD program.Key...


  • Washington, DC, United States Alaka`ina Foundation Family of Companies Full time

    Job Title: Incident Response HandlerWe are seeking a highly skilled Incident Response Handler to join our team at the Alaka`ina Foundation Family of Companies. As a key member of our cybersecurity team, you will be responsible for handling incidents and responding to security threats in a timely and effective manner.Responsibilities:Incident response and...


  • Hollywood, FL, United States VirtualVocations Full time

    A company is looking for a DFIR Engagement Manager to lead incident response efforts and manage a skilled team. Key Responsibilities Engage in incident response tasks, collaborating with legal counsel and technical teams Perform forensic analysis on affected systems and assess compromises Write detailed reports summarizing findings and...


  • Aurora, CO, United States VirtualVocations Full time

    A company is looking for an Incident Response Analyst. Key Responsibilities: Support Incident Response lifecycle through triage and investigation of detections Develop detection criteria across various technologies and log sources Participate in incident response, manage escalations, and drive process development Required Qualifications: ...


  • Charlotte Corp, NC, United States Flexential Full time

    Job SummaryWe are seeking a highly skilled and detail-oriented Incident Response Specialist to join our team at Flexential. As an Incident Response Specialist, you will be responsible for providing exceptional customer service and technical support to our clients.Key ResponsibilitiesInitial Analysis and Triage: Provide initial analysis and triage for...


  • Greensboro, NC, United States VirtualVocations Full time

    A company is looking for a Senior Cyber Incident Response Engineer for a remote position. Key Responsibilities Monitor and analyze security incidents, utilizing various security technologies Lead investigations and coordinate responses to complex security incidents Develop and implement incident response playbooks and conduct post-incident analyses ...


  • Charlotte Corp, NC, United States Flexential Full time

    Job SummaryWe are seeking a highly skilled Incident Response Specialist to join our team at Flexential. As an Incident Response Specialist, you will be responsible for providing timely and effective support to our customers, ensuring that their technical issues are resolved quickly and efficiently.Key ResponsibilitiesInitial Analysis and Triage: Provide...


  • Denver Corp, CO, United States Flexential Full time

    About Flexential:Flexential is a leading provider of data center, cloud, and connectivity solutions. Our mission is to deliver exceptional customer experiences through innovative technology and exceptional service.Job Description:As a key member of our IT team, you will play a critical role in providing technical support to our customers. You will be...