Cyber Forensics Analyst
5 days ago
Gray Tier Technologies LLC is seeking a Cyber Forensics Analyst to support the DHS Hunt and Incident Response Team (HIRT).
This team secures the Nation's cyber and communications infrastructure while providing front line response for cyber incidents and hunting for malicious cyber activity.
Our team performs HIRT investigations to develop a diagnosis of the severity of breaches.
Contract personnel provide front line response for digital forensics/incident response and proactively hunting for malicious cyber activity for this critical customer mission.
Responsibilities:
- Perform event correlation using information gathered from a variety of sources within the enterprise to gain situational awareness and determine the effectiveness of an observed attack.
- Assess network topology and device configurations identifying critical security concerns and providing security best practice recommendations.
- Collect network intrusion artifacts (e.g., PCAP, domains, URI's, certificates, etc.) and use discovered data to enable mitigation of potential incidents.
- Collect network device integrity data and analyze for signs of tampering or compromise.
- Analyze identified malicious network and system log activity to determine weaknesses exploited, exploitation methods, effects on system and information.
- Track and document onsite incident response activities and provide updates to leadership through executive summaries and in-depth technical reports.
- Plan, coordinate, and direct the inventory, examination, and comprehensive technical analysis of computer-related evidence.
- Serve as technical forensics liaison to stakeholders and explain investigation details.
Required Skills:
- U.S. Citizenship.
- Active DoD Secret clearance. Must be able to obtain a TS/SCI clearance.
- Must be able to obtain DHS Suitability.
- 8+ years of directly relevant experience in cyber forensic and network investigations using leading edge technologies and industry standard forensic tools.
- Experience leading cross-functional teams conducting cyber threat hunting activities.
- Experience with reconstructing a malicious attack or activity.
- Ability to characterize and analyze network traffic, identify anomalous activity/potential threats, analyze anomalies in network traffic using metadata.
- Ability to create forensically sound duplicates of evidence (forensic images).
- Able to write cyber investigative reports documenting forensics findings.
- In-depth knowledge and experience of:
- Utilizing COTS and custom-developed tools to detect APT activity.
- Reviewing threat reports and searching the network for applicable IOC (Indicators of Compromise).
- Identifying different classes and characterization of attacks and attack stages.
- CND policies, procedures, and regulations.
- Of network topologies, Wi-Fi Networking, and TCP/IP protocols.
- Splunk (or other SIEMs).
- Vulnerability scanning, assessment, and monitoring tools such as Security Center, Nessus, and Endgame.
- Mitre Adversary Tactics, Techniques, and Common Knowledge (ATT&CK).
- Must be able to work collaboratively across physical locations.
Desired Skills:
- Experience and proficiency with the following tools and techniques:
- EnCase, FTK, SIFT, X-Ways, Volatility, WireShark, Sleuth Kit/Autopsy, and Snort.
EDR Tools:
Crowdstrike, Carbon Black, etc
- Carving and extracting information from PCAP data.
- Non-traditional network traffic: Command and Control.
- Preserving evidence integrity according to national standards.
- Designing cyber security systems and environments in a Linux environment.
- Virtualized environments.
- Conducting all-source research.
Required Education:
BS Computer Science, Cybersecurity, Computer Engineering, or related degree; or HS Diploma and 10+ years of host or digital forensics or network forensic experience.
Desired Certifications:
- GCFA, GCFE, EnCE, CCE, CFCE, CEH, CCNA, CCSP, CCIE, OSCP, GNFA
-
Cyber Forensics Analyst IV
1 month ago
Arlington, Virginia, United States Argo Cyber Systems Full timeJob Title: Host Based Cyber Systems Analyst IVArgo Cyber Systems is seeking a highly skilled Host Based Cyber Systems Analyst IV to join our team. As a key partner to the Department of Homeland Security (DHS), we provide critical support to the Hunt and Incident Response Team (HIRT) in securing the Nation's cyber and communications infrastructure.Job...
-
Cyber Forensics Analyst IV
4 weeks ago
Arlington, Virginia, United States Argo Cyber Systems Full timeJob Title: Host Based Cyber Systems Analyst IVArgo Cyber Systems is seeking a highly skilled Host Based Cyber Systems Analyst IV to join our team. As a key partner to the Department of Homeland Security (DHS), we provide critical support to the Hunt and Incident Response Team (HIRT) in securing the Nation's cyber and communications...
-
Cyber Forensics Specialist IV
2 weeks ago
Arlington, Virginia, United States Argo Cyber Systems Full timeJob Title: Host Based Cyber Systems Analyst IVJob Summary:Argo Cyber Systems is seeking a highly skilled Host Based Cyber Systems Analyst IV to join our team. As a key partner to the Department of Homeland Security (DHS), we provide critical support to the Hunt and Incident Response Team (HIRT) in securing the Nation's cyber and communications...
-
Cyber Forensics Analyst
1 month ago
Arlington, Virginia, United States Gray Tier Technologies LLC Full timeCyber Forensics Analyst Job DescriptionGray Tier Technologies LLC is seeking a highly skilled Cyber Forensics Analyst to join our team. As a Cyber Forensics Analyst, you will play a critical role in supporting the DHS Hunt and Incident Response Team (HIRT) in securing the Nation's cyber and communications infrastructure.Key Responsibilities:Perform event...
-
Cyber Forensic Analyst
4 days ago
Arlington, Virginia, United States Nightwing Full timeJob SummaryNightwing is seeking a skilled Cyber Host Forensic Analyst to support a critical customer mission. The ideal candidate will have 2+ years of experience in cyber forensic investigations using leading edge technologies and industry standard forensic tools.Key ResponsibilitiesAcquiring and collecting computer artifacts, correlating forensic findings...
-
Cyber Host Forensic Analyst IV
4 weeks ago
Arlington, Virginia, United States Raytheon Full timeJob Title: Cyber Host Forensic Analyst IVAt Raytheon, we are seeking a highly skilled Cyber Host Forensic Analyst IV to join our team. As a Cyber Host Forensic Analyst IV, you will be responsible for conducting forensic analysis of digital evidence to identify and investigate cyber threats.Responsibilities:Conduct forensic analysis of digital evidence to...
-
Cyber Forensic Analyst III
4 weeks ago
Arlington, Virginia, United States Nightwing Full timeJob Title: Cyber Forensic Analyst IIIAt Nightwing, we are seeking a highly skilled Cyber Forensic Analyst III to join our team. As a Cyber Forensic Analyst III, you will play a critical role in supporting our customer's mission by conducting forensic investigations and analyzing digital evidence.Responsibilities:Assist federal leads with overseeing and...
-
Cyber Forensic Analyst IV
5 days ago
Arlington, Virginia, United States Nightwing Full timeJob Summary:At Nightwing, we are seeking a highly skilled Cyber Forensic Analyst IV to join our team. As a Cyber Forensic Analyst IV, you will be responsible for leading forensic teams at onsite engagements, providing technical assistance on digital evidence matters, and writing in-depth reports. You will also be responsible for supporting forensic analysis,...
-
Cyber Forensic Analyst IV
2 weeks ago
Arlington, Virginia, United States Raytheon Technologies Full timeJob Title: Cyber Host Forensic Analyst IVAt Nightwing, we are seeking a highly skilled Cyber Host Forensic Analyst IV to join our team. As a key member of our cybersecurity team, you will be responsible for conducting forensic investigations and analyzing digital evidence to support our customers' most critical missions.Responsibilities:Assist federal leads...
-
Cyber Forensic Analyst IV
4 weeks ago
Arlington, Virginia, United States Nightwing Full timeJob Title: Cyber Host Forensic Analyst IVJob Summary:Nightwing is seeking a highly skilled Cyber Host Forensic Analyst IV to support our critical customer mission. As a key member of our team, you will be responsible for leading forensic teams at onsite engagements, providing technical assistance on digital evidence matters, and writing in-depth...
-
Cyber Host Forensic Analyst II
2 weeks ago
Arlington, Virginia, United States Raytheon Technologies Full timeJob Title: Cyber Host Forensic Analyst IIJob Summary:We are seeking a highly skilled Cyber Host Forensic Analyst II to join our team. As a Cyber Host Forensic Analyst II, you will be responsible for conducting forensic investigations of cyber attacks, analyzing digital evidence, and providing expert testimony in court.Responsibilities:Conduct forensic...
-
Cyber Forensic Analyst III
1 week ago
Arlington, Virginia, United States Raytheon Technologies Full timeJob Summary:RTX is seeking a highly skilled Cyber Forensic Analyst III to support our critical customer mission. As a member of our team, you will assist Federal leads with overseeing and leading forensic teams at onsite engagements, providing technical assistance on digital evidence matters, and writing in-depth reports. Responsibilities:Assist with leading...
-
Cyber Forensic Analyst IV
3 weeks ago
Arlington, Virginia, United States Nightwing Full timeJob Title: Cyber Host Forensic Analyst IVJob Summary:Nightwing is seeking a highly skilled Cyber Host Forensic Analyst IV to support our critical customer mission. As a key member of our team, you will be responsible for leading forensic teams at onsite engagements, providing technical assistance on digital evidence matters, and writing in-depth...
-
Cyber Host Forensic Analyst II
3 weeks ago
Arlington, Virginia, United States Raytheon Technologies Full timeJob Title: Cyber Host Forensic Analyst IIJoin Raytheon Technologies as a Cyber Host Forensic Analyst II and contribute to our mission to provide technically advanced full-spectrum cyber, data operations, systems integration and intelligence support services to the U.S. government.Job Summary:We are seeking a highly skilled Cyber Host Forensic Analyst II to...
-
Cyber Host Forensic Analyst II
1 week ago
Arlington, Virginia, United States Raytheon Technologies Full timeCyber Host Forensic Analyst RoleThis role is part of a team that provides technically advanced full-spectrum cyber, data operations, systems integration and intelligence mission support services to meet our customers' most demanding challenges. We are seeking a Cyber Host Forensic Analyst to support our critical customer mission. The selected candidate will...
-
Cyber Forensic Analyst IV
5 days ago
Arlington, Virginia, United States Nightwing Full timeJob Summary:Nightwing is seeking a highly skilled Cyber Forensic Analyst IV to support our critical customer mission. As a key member of our team, you will be responsible for leading forensic teams at onsite engagements, providing technical assistance on digital evidence matters, and writing in-depth reports.Responsibilities:Assisting Federal leads with...
-
Cyber Host Forensic Analyst II
5 days ago
Arlington, Virginia, United States Raytheon Technologies Full timeJob SummaryWe are seeking a highly skilled Cyber Host Forensic Analyst to support our critical customer mission. As a Cyber Host Forensic Analyst, you will be responsible for acquiring and collecting computer artifacts, assessing evidentiary value, and correlating forensic findings with network events. You will also be responsible for performing incident...
-
Cyber Host Forensic Analyst III
4 days ago
Arlington, Virginia, United States Raytheon Technologies Full timeJob SummaryWe are seeking a highly skilled Cyber Host Forensic Analyst III to support our critical customer mission. As a key member of our team, you will be responsible for assisting federal leads with overseeing and leading forensic teams at onsite engagements, providing technical assistance on digital evidence matters, and writing in-depth...
-
Cyber Host Forensic Analyst II
2 weeks ago
Arlington, Virginia, United States Nightwing Full timeAbout the Role:Nightwing is seeking a highly skilled Cyber Host Forensic Analyst to join our team. As a Cyber Host Forensic Analyst, you will be responsible for conducting forensic investigations to identify and analyze cyber threats. You will work closely with our team to identify and characterize cyber attacks, develop mitigation plans, and assist with the...
-
Cyber Host Forensic Analyst IV
2 weeks ago
Arlington, Virginia, United States Raytheon Technologies Full timeJob Summary:Raytheon Technologies is seeking a highly skilled Cyber Host Forensic Analyst IV to support our critical customer mission. As a member of our team, you will assist federal leads with overseeing and leading forensic teams at onsite engagements, providing technical assistance on digital evidence matters, and writing in-depth...