Digital Forensics Incident Response Analyst

2 weeks ago


Huntsville, Alabama, United States MartinFederal Consulting, LLC Full time
Job Overview

The Digital Forensics Incident Response Analyst plays a critical role in identifying, collecting, examining, and analyzing data to support incident response activities. This includes policy violations, incident reconstruction, and malware analysis to support internal incident response along with counterintelligence and law enforcement activities.

Key Responsibilities

  • Lead and conduct real-time and historical analysis using security analytics tools and digital forensics tool suites.
  • Perform initial incident triage, forensic imaging, host and network analysis.
  • Determine attacker activity on known compromised systems (Intrusion vector, privilege escalation, lateral movement, malware deployment, exfiltration, etc).
  • Discover, characterize, and assess anomalous network and platform activity on various information systems and networks.
  • Conduct memory analysis to recover crucial case artifacts.
  • Engage in static and dynamic malware analysis to determine its functionality.
  • Research and leverage cybersecurity intelligence sources to improve SOC incident detection and response capabilities.
  • Develop, manage, and maintain a forensic laboratory, including specialized hardware and software products.
  • Collaborate and coordinate with other NASA organizations, including but not limited to the network operations, system administrators and ISSOs, as needed in support of all service activities.
  • Assist the Government with oversight and coordination for NASA's response to significant cyber incidents.
  • Produce and present analytics, case review, and incident reporting to the NASA Information Security community and Government leadership.
  • Provide post-incident recommendations to improve cybersecurity posture.
  • Develop and maintain SOPs regarding data collection, forensic examination, reporting and investigations, in support of operational requirements.

Requirements

  • US Citizen with a DoD Secret Clearance.
  • Bachelor's Degree in Computer Science or related technical field.
  • 7-9 years' progressive work experience within Information Security.
  • At least 3 years' experience related to DFIR, SOC, or LEO DF Unit.
  • At least 2 years' experience with technical writing, developing technical documents, and incident response reporting.
  • Holds an intermediate level, industry recognized, certification (GCIH/GCFE/GCFA/GNFA//GREM/CFCE/CAWFE/EnCE/CCE).
  • Strong experience with Unix/Linux system administration.
  • Strong experience with Windows system administration.
  • Strong experience analyzing various log formats such as those from endpoints, networking devices, and authentication services.
  • Experience with forensic tooling (AXIOM, FTK, Arsenal Recon, Zimmerman Tools, X-Ways, Ghidra, IDA, Volatility, etc).
  • Knowledge of common host-based forensic artifacts in multiple operating systems.
  • Understanding of network architecture, common network protocols, and how threat actors can abuse them.
  • Experience with cloud-based investigations, including Amazon AWS and Microsoft Azure.
  • Experience with static/dynamic malware analysis.
  • Strong scripting capabilities (Python, PowerShell, Bash, Shell).
  • Knowledge of incident response methodologies and technologies.
  • Understanding of current industry trends and emerging threats.
  • Experience collaborating with dozens of different teams across a large and diverse environment.
  • Strong oral, written, and presentation abilities.


  • Huntsville, Alabama, United States MartinFed Full time

    Job Title: Digital Forensics Incident Response AnalystMartinFed is seeking a highly skilled Digital Forensics Incident Response Analyst to join our team. As a key member of our cybersecurity team, you will be responsible for identifying, collecting, examining, and analyzing data in support of incident response activities.Key Responsibilities:Lead and conduct...


  • Huntsville, Alabama, United States MartinFed Full time

    Job Title: Digital Forensics Incident Response AnalystMartinFed is seeking a highly skilled Digital Forensics Incident Response Analyst to join our team. As a key member of our cybersecurity team, you will be responsible for identifying, collecting, examining, and analyzing data in support of incident response activities.Key Responsibilities:Lead and conduct...


  • Huntsville, Alabama, United States Quantum Research International Full time

    Job Title: Targeting Digital Network AnalystQuantum Research International, Inc. is seeking a highly skilled Targeting Digital Network Analyst to join our team. As a key member of our Threat Systems Management Office, you will be responsible for conducting advanced analysis on critical program information to support our mission.Key Responsibilities:Digital...


  • Huntsville, Alabama, United States Quantum Research International Inc Full time

    Job Title: Targeting Digital Network AnalystJob Summary:Quantum Research International, Inc. is seeking a highly skilled Targeting Digital Network Analyst to join our team. As a key member of our Threat Systems Management Office, you will conduct advanced analysis on critical program information to support our mission and U.S. Army agencies.Key...


  • Huntsville, Alabama, United States IBM Full time

    About the RoleWe are seeking a highly skilled Cybersecurity Operations Center Analyst II to join our team at IBM Consulting Federal. As a key member of our dedicated security team, you will play a critical role in supporting our 24x7x365 operations for a Federal program.Your primary responsibility will be to provide in-depth analysis of potential security...


  • Huntsville, Alabama, United States IBM Full time

    About the RoleWe are seeking a highly skilled Security Operations Center Analyst II to join our team at IBM Consulting Federal. As a key member of our dedicated security team, you will play a critical role in supporting a 24x7x365 operation for a Federal program.Key ResponsibilitiesPerform in-depth analysis of potential security events/anomalies based on...


  • Huntsville, Alabama, United States IBM Full time

    About the RoleWe are seeking a highly skilled Security Operations Center Analyst II to join our team at IBM Consulting. As a key member of our security team, you will be responsible for providing in-depth analysis of potential security events and anomalies, leveraging enterprise security tools, knowledge sources, and data artifacts to determine the who,...

  • Civil Engineer

    5 days ago


    Huntsville, Alabama, United States Rimkus Consulting Full time

    Rimkus Consulting is seeking a highly skilled Civil Engineer to join our team as a Forensic Consultant. In this role, you will be responsible for providing expert forensic consulting services requiring Civil Engineering expertise for insurance, legal, industrial, and other clients.As a Forensic Civil Engineer, you will assess and determine the cause and...


  • Huntsville, Alabama, United States 9th Way Insignia Full time

    Job SummaryThe Senior Enterprise Security Analyst position at 9th Way Insignia is a critical role that requires expertise in security analysis, threat identification, and risk mitigation within complex IT environments. As a Senior Enterprise Security Analyst, you will provide expert analysis and recommendations to protect the VA's critical information assets...


  • Huntsville, Alabama, United States 9th Way Insignia Full time

    Job Title: Senior Enterprise Security Analyst9th Way Insignia is a service-disabled, veteran-owned small business that brings transformative technology to our government customers to achieve their missions. Our specialties include cybersecurity, cloud modernization, software development, data analytics, enterprise architecture, enterprise IT, and artificial...

  • Cybersecurity Analyst

    3 weeks ago


    Huntsville, Alabama, United States MartinFederal Consulting LLC Full time

    Job Title: Cybersecurity AnalystMartinFederal Consulting LLC is seeking a highly skilled Cybersecurity Analyst to join our team. As a Cybersecurity Analyst, you will play a critical role in ensuring the security and integrity of our systems and data.Job SummaryThe Cybersecurity Analyst will be responsible for tracking, documenting, and reporting incidents...


  • Huntsville, Alabama, United States 9th Way Insignia Full time

    Job Title: Senior Enterprise Security Analyst**Job Summary**9th Way Insignia is seeking a highly skilled Senior Enterprise Security Analyst to join our team. As a Senior Enterprise Security Analyst, you will play a critical role in protecting our government customers' IT infrastructure from evolving cyber threats.**Responsibilities**Conduct in-depth security...


  • Huntsville, Alabama, United States Jacobs Full time

    About the Role:We are seeking a highly skilled Critical Incident Coordinator (Senior) to join our team at Jacobs in Huntsville, AL. As a Critical Incident Coordinator (Senior), you will be responsible for actively monitoring the status of critical incidents, ensuring notifications are issued, and providing periodic updates to the end user. You will also...


  • Huntsville, Alabama, United States KBR Full time

    Radar Systems AnalystAs a Radar Systems Analyst at KBR, you will play a critical role in improving Army weapon systems through performance analysis. Your expertise in radar and seeker signal processing will be essential in analyzing PATRIOT Guidance Performance for Live Firings, Ground Testing, and Simulation. You will develop Test Plans, participate in...


  • Huntsville, Alabama, United States Booz Allen Hamilton Full time

    Cyber Analyst Job DescriptionJob Summary:We are seeking a highly skilled Cyber Analyst to join our threat intelligence team. As a Cyber Analyst, you will be responsible for understanding emerging cyber threats and conducting detailed security threat analysis. You will work closely with clients to validate and characterize threats, support incident detection...


  • Huntsville, Alabama, United States ITC Defense Corp. Full time

    Job Summary:We are seeking a highly skilled Counterintelligence Officer/Analyst III to join our team at ITC Defense Corp. in Huntsville, Alabama. As a CI Analyst III, you will conduct counterintelligence activities such as investigations, operations, collection, analysis, and production to detect, identify, assess, exploit, penetrate, degrade, and counter or...


  • Huntsville, Alabama, United States Alabama Community College System Full time

    Job Title: Computer Systems Analyst IWe are seeking a highly skilled Computer Systems Analyst I to join our team at the Alabama Community College System. As a Computer Systems Analyst I, you will be responsible for carrying out fact-finding and analyses as assigned, applying established procedures, and assisting higher-level systems analysts.Key...


  • Huntsville, Alabama, United States Alabama A&M University Full time

    Job Title: Computer Systems Analyst II Job Summary: We are seeking a highly skilled Computer Systems Analyst II to join our team at Alabama A&M University. The successful candidate will be responsible for reviewing proposals, gathering facts, and analyzing data to prepare project synopses. They will also be responsible for determining and resolving data...


  • Huntsville, Alabama, United States nou Systems Full time

    We are seeking a highly skilled Cybersecurity Analyst to join our Digital Engineering Department in Huntsville, AL. As a Cybersecurity Analyst, you will be responsible for developing, modifying, implementing security policies, procedures, and guidelines to safeguard the customer IT Portfolio and maintain compliance with NIST, FISMA requirements and other...


  • Huntsville, Alabama, United States IBM Full time

    Job SummaryThe Junior Security Operations Center Analyst I position is a key member of a dedicated security team within IBM Consulting Federal. In this role, the Jr. SOC analyst will support a 24x7x365 operation for a Federal program, monitoring for alerts, analyzing content, and providing written analysis. The analyst will work closely with Tier 2 SOC...