Overview
Skills
Job Details
Are you an experienced DFIR Analyst ready for your next challenge? Join a mission-driven team dedicated to protecting sensitive networks and information systems. Our client, an industry leader, is seeking a Mid-Level DFIR Analyst with a strong technical foundation and a passion for cybersecurity defense.
Your Impact
Analyze and triage security events to drive effective incident response.
Investigate logs from endpoints, firewalls, servers, and EDR tools to identify and contain threats.
Conduct malware/script analysis and proactively hunt for emerging threats.
Perform forensic imaging, data duplication, and recovery.
Analyze network traffic to detect anomalies.
Support cyber threat intelligence initiatives and post-incident reviews.
Develop policies, recommend defense solutions, and ensure compliance with digital evidence handling standards.
Automate processes through scripting and prepare reports, white papers, and technical documentation.
What We re Looking For
Education/Experience: Bachelor s degree (or equivalent) + 3+ years in DFIR within a federal agency.
Clearance: Active Top-Secret Clearance with SCI eligibility; ability to pass CI Polygraph.
Technical Skills: Splunk Enterprise Security, Microsoft Defender for Endpoint, Magnet Axiom, FTK, Cellebrite, Kape, Eric Zimmerman Tools.
Certifications (Preferred): GCIH, GCFA, GCIA, GNFA, GMON, GCFR, GASF, GMOB, GCTD.
Bonus Skills: Malware analysis, reverse engineering, scripting (Bash, PowerShell, Python, SPL, KQL), AWS cloud incident response.
What You Bring
Strong analytical and problem-solving skills.
Ability to perform under pressure in high-stress incidents.
Excellent written and verbal communication.
Collaborative yet independent work style.
Customer-focused with a sense of urgency.
Why Join Us
Competitive medical, dental, vision, and wellness benefits.
Flexible Spending Accounts (healthcare, dependent care, commuting).
Disability coverage, life & AD&D insurance.
401(k) with employer match (after one year).
Paid Time Off and supportive work environment.
Growth and continuous learning opportunities.
Working Conditions
On-site at client s facility.
Standard office hours with rotation-based 24/7 coverage.
Reports to: Lead Senior DFIR Analyst.
? If you re ready to make an impact in the cybersecurity sphere and grow your expertise with a forward-thinking team, we want to hear from you. Apply today!