Cyber Host Forensic Analyst II

2 days ago


Arlington, Virginia, United States Nightwing Full time

About the Role:

Nightwing is seeking a highly skilled Cyber Host Forensic Analyst to join our team. As a Cyber Host Forensic Analyst, you will be responsible for conducting forensic investigations to identify and analyze cyber threats. You will work closely with our team to identify and characterize cyber attacks, develop mitigation plans, and assist with the restoration of services.

Responsibilities:

  • Acquiring and collecting computer artifacts from systems in support of onsite engagements
  • Assessing evidentiary value by triaging electronic devices
  • Correlating forensic findings with network events to further develop an intrusion narrative
  • Collecting and documenting system state information prior to imaging
  • Performing incident triage from a forensic perspective to include determining scope, urgency, and potential impact
  • Tracking and documenting forensic analysis from initial involvement through final resolution
  • Collecting, processing, preserving, analyzing, and presenting computer-related evidence
  • Coordinating with others within the Government and with customer personnel to validate/investigate alerts or other preliminary findings
  • Conducting analysis of forensic images and other available evidence and drafting forensic write-ups for inclusion in reports and other written products
  • Assisting in documenting and publishing Computer Network Defense guidance and reports on incident findings to appropriate constituencies
  • Assisting in preliminary analysis by tracing an activity to its source and documenting findings for input into a forensic report
  • Documenting original condition of digital and/or associated evidence by taking photographs and collecting hash information
  • Assisting team members in imaging digital media
  • Assisting in gathering, accessing, and assessing evidence from electronic devices using forensic tools and knowledge of operating systems
  • Using hashing algorithms to validate forensic images
  • Working with mentor to identify and understand adversary TTPs
  • Assisting team members in analyzing the behaviors of malicious software
  • Under direct guidance and coaching if needed, locating critical items in various file systems to aid more senior personnel in their analysis
  • Performing analysis of log files from a variety of sources to identify possible threats to computer security
  • Using leading-edge technology and industry-standard forensic tools and procedures to provide insight into the cause and effect of suspected cyber intrusions
  • Following proper evidence handling procedures and chain of custody protocols
  • Producing written reports documenting digital forensic findings
  • Determining programs that have been executed, finding files that have been changed on disk and in memory
  • Using timestamps and logs (host and network) to develop authoritative timelines of activity
  • Finding evidence of deleted files and hidden data
  • Identifying and documenting case-relevant file-system artifacts (browser histories, account usage, and USB histories, etc.)
  • Creating forensically sound duplicates of evidence (forensic images) to use for data recovery and analysis
  • Performing all-source research for similar or related network events or incidents

Requirements:

  • U.S. Citizenship
  • Active TS/SCI clearance
  • DHS Suitability
  • 2+ years of directly relevant experience in cyber forensic investigations using leading-edge technologies and industry-standard forensic tools
  • Ability to create forensically sound duplicates of evidence (forensic images)
  • Able to write cyber investigative reports documenting digital forensic findings
  • Experience with the analysis and characterization of cyber attacks
  • Experience with proper evidence-handling procedures and chain of custody protocols
  • Skilled in identifying different classes of attacks and attack stages
  • Knowledge of system and application security threats and vulnerabilities
  • Knowledgeable in proactive analysis of systems and networks, to include creating trust levels of critical resources
  • Ability to work collaboratively across physical locations

Desired Skills:

  • Experience with two or more of the following tools: EnCase, FTK, SIFT, X-Ways, Volatility, WireShark, Sleuth Kit/Autopsy, Splunk, Snort, or other EDR Tools (Crowdstrike, Carbon Black, etc.)
  • Experience with conducting all-source research

Education:

BS Computer Science, Computer Engineering, Computer Information Systems, Computer Systems Engineering, or related degree. Two years of related work experience may be substituted for each year of degree-level education.

Certifications:

GCFA, GCFE, EnCE, CCE, CFCE, CISSP

About Nightwing:

Nightwing is a leading provider of full-spectrum cyber, data operations, systems integration, and intelligence mission support services to the U.S. government. We have a deep set of credentials and an unfaltering commitment to the mission. Our team has been providing some of the world's most technically advanced services for over four decades.

Benefits:

Nightwing offers a competitive salary range of $85,000 - $179,000, depending on experience. We also offer a range of benefits, including medical, dental, vision, life insurance, short-term disability, long-term disability, 401(k) match, flexible spending accounts, flexible work schedules, employee assistance program, Employee Scholar Program, parental leave, paid time off, and holidays.

Equal Opportunity Employer:

Nightwing is an Equal Opportunity/Affirmative Action Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or veteran status, age, or any other federally protected class.

Privacy Policy and Terms:

Click on this link to read the Policy and Terms



  • Arlington, Virginia, United States Raytheon Technologies Full time

    Job Title: Cyber Host Forensic Analyst IIJob Summary:We are seeking a highly skilled Cyber Host Forensic Analyst II to join our team. As a Cyber Host Forensic Analyst II, you will be responsible for conducting forensic investigations of cyber attacks, analyzing digital evidence, and providing expert testimony in court.Responsibilities:Conduct forensic...


  • Arlington, Virginia, United States Raytheon Technologies Full time

    Job Title: Cyber Host Forensic Analyst IIJoin Raytheon Technologies as a Cyber Host Forensic Analyst II and contribute to our mission to provide technically advanced full-spectrum cyber, data operations, systems integration and intelligence support services to the U.S. government.Job Summary:We are seeking a highly skilled Cyber Host Forensic Analyst II to...


  • Arlington, Virginia, United States Argo Cyber Systems Full time

    Job Title: Host Based Cyber Systems Analyst IVArgo Cyber Systems is seeking a highly skilled Host Based Cyber Systems Analyst IV to join our team. As a key partner to the Department of Homeland Security (DHS), we provide critical support to the Hunt and Incident Response Team (HIRT) in securing the Nation's cyber and communications infrastructure.Job...


  • Arlington, Virginia, United States Argo Cyber Systems Full time

    Job Title: Host Based Cyber Systems Analyst IVArgo Cyber Systems is seeking a highly skilled Host Based Cyber Systems Analyst IV to join our team. As a key partner to the Department of Homeland Security (DHS), we provide critical support to the Hunt and Incident Response Team (HIRT) in securing the Nation's cyber and communications...


  • Arlington, Virginia, United States Raytheon Full time

    Job Title: Cyber Host Forensic Analyst IVAt Raytheon, we are seeking a highly skilled Cyber Host Forensic Analyst IV to join our team. As a Cyber Host Forensic Analyst IV, you will be responsible for conducting forensic analysis of digital evidence to identify and investigate cyber threats.Responsibilities:Conduct forensic analysis of digital evidence to...


  • Arlington, Virginia, United States Raytheon Technologies Full time

    About the RoleWe are seeking a highly skilled Cyber Host Forensic Analyst II to join our team. As a key member of our cybersecurity team, you will be responsible for conducting forensic investigations to identify and analyze cyber threats.ResponsibilitiesAcquire and collect computer artifacts from systems in support of onsite engagementsAssess evidentiary...


  • Arlington, Virginia, United States Nightwing Full time

    Job Title: Cyber Host Forensic Analyst IIJob Summary:Nightwing is seeking a highly skilled Cyber Host Forensic Analyst II to support our critical customer mission. As a key member of our team, you will be responsible for conducting forensic investigations, analyzing digital evidence, and providing expert testimony to support incident response...


  • Arlington, Virginia, United States Nightwing Full time

    About NightwingNightwing is a leading provider of full-spectrum cyber, data operations, systems integration, and intelligence mission support services to the U.S. government. With a deep set of credentials and an unwavering commitment to the mission, our team has been providing technically advanced solutions for over four decades.Job SummaryWe are seeking a...


  • Arlington, Virginia, United States Argo Cyber Systems Full time

    Job Title: Host Based Cyber Systems Analyst IVJob Summary:Argo Cyber Systems is seeking a highly skilled Host Based Cyber Systems Analyst IV to join our team. As a key partner to the Department of Homeland Security (DHS), we provide critical support to the Hunt and Incident Response Team (HIRT) in securing the Nation's cyber and communications...


  • Arlington, Virginia, United States Nightwing Full time

    Job Title: Cyber Host Forensics Analyst IIIAbout the Role:Nightwing is seeking a highly skilled Cyber Host Forensics Analyst III to support our critical customer mission. As a key member of our team, you will be responsible for leading forensic teams at onsite engagements, providing technical assistance on digital evidence matters, and writing in-depth...


  • Arlington, Virginia, United States Nightwing Full time

    Job Title: Cyber Network Forensic Analyst IIJob Summary:Nightwing is seeking a highly skilled Cyber Network Forensic Analyst II to support our mission-critical initiatives. As a key member of our team, you will be responsible for conducting thorough investigations of cyber-attacks, analyzing network traffic, and identifying potential threats to our clients'...


  • Arlington, Virginia, United States BCMC Full time

    Job OverviewThe Hunt and Incident Response Team (HIRT) at DHS secures the Nation's cyber and communications infrastructure. As a Host Forensics Analyst, you will be part of a team that provides front-line response for cyber incidents and proactively hunts for malicious cyber activity. Your expertise will be crucial in developing a preliminary diagnosis of...


  • Arlington, Virginia, United States Gray Tier Technologies LLC Full time

    Cyber Forensics Analyst Job DescriptionGray Tier Technologies LLC is seeking a highly skilled Cyber Forensics Analyst to join our team. As a Cyber Forensics Analyst, you will play a critical role in supporting the DHS Hunt and Incident Response Team (HIRT) in securing the Nation's cyber and communications infrastructure.Key Responsibilities:Perform event...


  • Arlington, Virginia, United States Raytheon Technologies Full time

    Job Title: Cyber Host Forensic Analyst IIIJoin Nightwing, a leading provider of full-spectrum cyber, data operations, systems integration, and intelligence mission support services, as a Cyber Host Forensic Analyst III. In this critical role, you will support onsite incident response to civilian Government agencies and critical asset owners who experience...


  • Arlington, Virginia, United States Nightwing Full time

    Job Title: Cyber Host Forensic Analyst IVAt Nightwing, we are seeking a highly skilled Cyber Host Forensic Analyst IV to join our team. As a key member of our cybersecurity team, you will be responsible for conducting forensic investigations and analyzing digital evidence to identify and mitigate cyber threats.Responsibilities:Assist federal leads with...


  • Arlington, Virginia, United States Nightwing Full time

    Job Title: Cyber Host Forensic Analyst IIIAbout Nightwing:Nightwing is a leading provider of full-spectrum cyber, data operations, systems integration, and intelligence mission support services to the U.S. government. With a deep set of credentials and an unwavering commitment to the mission, our team has been providing technically advanced support services...


  • Arlington, Virginia, United States Nightwing Full time

    Job Title: Cyber Host Forensic Analyst IIIJob Summary:Nightwing is seeking a highly skilled Cyber Host Forensic Analyst III to support our critical customer mission. As a key member of our team, you will be responsible for leading forensic teams at onsite engagements, providing technical assistance on digital evidence matters, and writing in-depth...


  • Arlington, Virginia, United States Raytheon Technologies Full time

    Job Title: Cyber Host Forensic Analyst IVAt Nightwing, we are seeking a highly skilled Cyber Host Forensic Analyst IV to join our team. As a key member of our cybersecurity team, you will be responsible for conducting forensic investigations and analyzing digital evidence to support our customers' most critical missions.Responsibilities:Assist federal leads...


  • Arlington, Virginia, United States Nightwing Full time

    Job Title: Cyber Forensic Analyst IIIAt Nightwing, we are seeking a highly skilled Cyber Forensic Analyst III to join our team. As a Cyber Forensic Analyst III, you will play a critical role in supporting our customer's mission by conducting forensic investigations and analyzing digital evidence.Responsibilities:Assist federal leads with overseeing and...


  • Arlington, Virginia, United States Nightwing Full time

    Job Title: Cyber Host Forensic Analyst IVJob Summary:Nightwing is seeking a highly skilled Cyber Host Forensic Analyst IV to support our critical customer mission. As a key member of our team, you will be responsible for leading forensic teams at onsite engagements, providing technical assistance on digital evidence matters, and writing in-depth...