Cyber Forensic Analyst II

1 week ago


Arlington, Virginia, United States Nightwing Full time

About Nightwing

Nightwing is a leading provider of full-spectrum cyber, data operations, systems integration, and intelligence mission support services to the U.S. government. With a rich history of delivering technically advanced solutions, our team has been supporting the nation's most mission-impactful initiatives for over four decades.

Job Summary

We are seeking a highly skilled Cyber Host Forensic Analyst II to join our team. As a Cyber Host Forensic Analyst II, you will be responsible for conducting forensic investigations, analyzing digital evidence, and providing expert testimony to support our customers' most critical missions.

Responsibilities

  • Acquire and collect computer artifacts from systems in support of onsite engagements
  • Assess evidentiary value by triaging electronic devices
  • Correlate forensic findings with network events to develop an intrusion narrative
  • Collect and document system state information prior to imaging
  • Perform incident triage from a forensic perspective, including determining scope, urgency, and potential impact
  • Track and document forensic analysis from initial involvement through final resolution
  • Collect, process, preserve, analyze, and present computer-related evidence
  • Coordinate with others within the Government and with customer personnel to validate or investigate alerts or preliminary findings
  • Conduct analysis of forensic images and other available evidence and draft forensic write-ups for inclusion in reports and other written products
  • Assist in documenting and publishing Computer Network Defense guidance and reports on incident findings to appropriate constituencies
  • Assist in preliminary analysis by tracing an activity to its source and documenting findings for input into a forensic report
  • Document original condition of digital and/or associated evidence by taking photographs and collecting hash information
  • Assist team members in imaging digital media
  • Assist in gathering, accessing, and assessing evidence from electronic devices using forensic tools and knowledge of operating systems
  • Use hashing algorithms to validate forensic images
  • Work with a mentor to identify and understand adversary tactics, techniques, and procedures (TTPs)
  • Assist team members in analyzing the behaviors of malicious software
  • Under direct guidance and coaching, locate critical items in various file systems to aid more senior personnel in their analysis
  • Perform analysis of log files from a variety of sources to identify possible threats to computer security
  • Use leading-edge technology and industry-standard forensic tools and procedures to provide insight into the cause and effect of suspected cyber intrusions
  • Follow proper evidence handling procedures and chain of custody protocols
  • Produce written reports documenting digital forensic findings
  • Determine programs that have been executed, find files that have been changed on disk and in memory
  • Use timestamps and logs (host and network) to develop authoritative timelines of activity
  • Find evidence of deleted files and hidden data
  • Identify and document case-relevant file-system artifacts (browser histories, account usage, and USB histories, etc.)
  • Create forensically sound duplicates of evidence (forensic images) to use for data recovery and analysis
  • Perform all-source research for similar or related network events or incidents

Requirements

  • U.S. Citizenship
  • Active TS/SCI clearance
  • Ability to obtain DHS Suitability
  • 2+ years of directly relevant experience in cyber forensic investigations using leading-edge technologies and industry-standard forensic tools
  • Ability to create forensically sound duplicates of evidence (forensic images)
  • Able to write cyber investigative reports documenting digital forensic findings
  • Experience with the analysis and characterization of cyber attacks
  • Experience with proper evidence-handling procedures and chain of custody protocols
  • Skilled in identifying different classes of attacks and attack stages
  • Knowledge of system and application security threats and vulnerabilities
  • Knowledgeable in proactive analysis of systems and networks, including creating trust levels of critical resources
  • Ability to work collaboratively across physical locations

Desired Skills

  • Experience with two or more of the following tools: EnCase, FTK, SIFT, X-Ways, Volatility, WireShark, Sleuth Kit/Autopsy, Splunk, Snort, or other EDR Tools (Crowdstrike, Carbon Black, etc.)
  • Experience with conducting all-source research

Education

BS in Computer Science, Computer Engineering, Computer Information Systems, Computer Systems Engineering, or related degree. Two years of related work experience may be substituted for each year of degree-level education.

Certifications

GCFA, GCFE, EnCE, CCE, CFCE, CISSP



  • Arlington, Virginia, United States Nightwing Full time

    About NightwingNightwing is a leading provider of full-spectrum cyber, data operations, systems integration, and intelligence mission support services to the U.S. government. With a rich history of delivering technically advanced solutions, our team of experts is passionate about driving innovation and solving complex problems.Job SummaryWe are seeking a...


  • Arlington, Virginia, United States Nightwing Full time

    About NightwingNightwing is a leading provider of full-spectrum cyber, data operations, systems integration, and intelligence mission support services to the U.S. government. With a rich history of delivering technically advanced solutions, our team is passionate about driving innovation and solving complex problems.Job SummaryWe are seeking a highly skilled...


  • Arlington, Virginia, United States Nightwing Full time

    About NightwingNightwing is a leading provider of full-spectrum cyber, data operations, systems integration, and intelligence mission support services to the U.S. government and other critical asset owners. Our team of experts has been supporting the nation's most mission-impacting initiatives for over four decades.Job SummaryWe are seeking a highly skilled...


  • Arlington, Virginia, United States Nightwing Full time

    About NightwingNightwing is a leading provider of full-spectrum cyber, data operations, systems integration, and intelligence mission support services to the U.S. government. With a rich history of delivering technically advanced solutions, our team is passionate about driving innovation and solving complex problems.Job SummaryWe are seeking a highly skilled...


  • Arlington, Virginia, United States Nightwing Full time

    About NightwingNightwing is a leading provider of full-spectrum cyber, data operations, systems integration, and intelligence mission support services to the U.S. government. With a rich history of delivering technically advanced solutions, we are committed to shaping the future of cybersecurity and intelligence.Job SummaryWe are seeking a highly skilled...


  • Arlington, Virginia, United States Nightwing Full time

    About NightwingNightwing is a leading provider of full-spectrum cyber, data operations, systems integration, and intelligence mission support services to the U.S. government. With a rich history of delivering technically advanced solutions, we continue to shape the future of cybersecurity and intelligence.Job SummaryWe are seeking a highly skilled Cyber...


  • Arlington, Virginia, United States Peraton Full time

    Position Overview:Peraton is seeking a Digital Forensic Analyst - Journeyman to join our Department of State Diplomatic Security Cyber Mission (DSCM) program. This role demands exceptional analytical and creative thinking skills to tackle real-world challenges in digital forensics.Key Responsibilities:Utilize expertise in digital forensics to conduct...


  • Arlington, Virginia, United States Peraton Full time

    Position Overview:Peraton is actively seeking a Digital Forensic Analyst - Journeyman to join our Department of State Diplomatic Security Cyber Mission (DSCM) program. This role is essential in providing critical analytical skills to tackle complex digital forensic challenges.Key Responsibilities:Utilize expertise in digital forensics to conduct thorough...


  • Arlington, Virginia, United States Peraton Full time

    Position Overview:Peraton is seeking a Digital Forensic Analyst - Journeyman to contribute to our Department of State Diplomatic Security Cyber Mission (DSCM) program. This role demands exceptional analytical and creative thinking skills to tackle real-world challenges in digital forensics.Key Responsibilities:Utilize expertise in digital forensics to...


  • Arlington, Virginia, United States Peraton Full time

    Job SummaryWe are seeking a highly skilled Digital Forensics Expert to join our team at Peraton. As a Senior Digital Forensic Analyst, you will play a critical role in supporting our Department of State Diplomatic Security Cyber Mission (DSCM) program.Key ResponsibilitiesConduct in-depth examinations of digital evidence to ensure forensic soundness and meet...


  • Arlington, Virginia, United States Peraton Full time

    Position Overview:Peraton is seeking a Digital Forensic Analyst - Journeyman to join our team dedicated to addressing complex digital forensic challenges. The successful candidate will be part of a critical mission supporting national security through advanced digital investigations.Key Responsibilities:As a Digital Forensic Analyst, you will:Utilize your...


  • Arlington, Virginia, United States Farfield Systems Full time

    Job OverviewFarfield Systems is dedicated to safeguarding the nation's cyber and communications infrastructure. Our team plays a pivotal role in responding to cyber incidents and proactively identifying malicious cyber activities. We are currently seeking experienced Host Forensics Analysts to contribute to our critical mission.Key Responsibilities:-...


  • Arlington, Virginia, United States Argo Cyber Systems Full time

    Job SummaryArgo Cyber Systems is seeking a highly skilled Cyber Network Defense Analyst to support our critical customer mission. As a key member of our team, you will play a vital role in securing the Nation's cyber and communications infrastructure.Key ResponsibilitiesNetwork Monitoring and Analysis: Use information collected from various sources to...


  • Arlington, Virginia, United States Argo Cyber Systems Full time

    Job OverviewArgo Cyber Systems specializes in delivering both remote and onsite advanced technical support, proactive threat hunting, rapid incident response, and immediate investigation and resolution through host-based, network-based, and cloud-based cybersecurity analysis capabilities. Our team is dedicated to providing frontline response for digital...


  • Arlington, Virginia, United States Nightwing Full time

    About NightwingNightwing is a leading provider of full-spectrum cyber, data operations, systems integration, and intelligence support services to the U.S. government. With a rich history of delivering technically advanced solutions, we continue to shape the future of cybersecurity and intelligence.Job SummaryWe are seeking a highly skilled Cybersecurity...


  • Arlington, Virginia, United States Fusion Technology Full time

    Fusion Technology is committed to strengthening cybersecurity protocols for governmental agencies. We are seeking a qualified professional to become part of our team as a Cybersecurity Systems Analyst. Key Qualifications:Possess Top Secret security clearance and suitability for government workDemonstrated experience in conducting cyber forensic...


  • Arlington, Virginia, United States Peraton Full time

    Peraton is currently hiring an Industrial Control System Cyber Threat Intelligence Analyst for its Federal Strategic Cyber programs to work o n-site role in Arlington, VA.Prepare assessments and cyber threat profiles of current and planned products based on recent and current trends within ICS/SCADA.Map ICS activity and threats using MITRE ATT&CK...


  • Arlington, Virginia, United States Nightwing Full time

    Position Overview:As a key member of Nightwing, you will play a vital role in our mission to enhance cybersecurity and intelligence services. Your expertise will contribute to our ongoing success in addressing complex challenges faced by our clients in the government and commercial sectors.Location:Hybrid work environmentAbout Nightwing:Nightwing is an...


  • Arlington, Virginia, United States Nodel Full time

    Job SummaryWe are seeking highly skilled Cyber Forensics Specialists to join our team at Node. Digital. As a Cyber Forensics Specialist, you will play a critical role in supporting our customer mission by leading forensic teams and providing technical assistance on digital evidence matters.Key ResponsibilitiesAssist Federal leads in overseeing and leading...


  • Arlington, Virginia, United States Farfield Systems Full time

    Job OverviewFarfield Systems is dedicated to protecting the Nation's cyber and communications infrastructure through its Hunt and Incident Response Team (HIRT). This team plays a crucial role in addressing cyber incidents and actively searching for malicious cyber activities. As a key contractor, Farfield Systems conducts thorough investigations to assess...