Digital Forensics SOC Analyst III
Crownsville, Maryland, United States
Apexon
Apexon is a Digital Technology Services & Platform Solutions Company that provide solutions in the areas of Experience, Digital Engineering, Data & Analytics, AI, and cloudAbout Apexon:
Apexon is a digital-first technology services firm specializing in accelerating business transformation and delivering human-centric digital experiences. We have been meeting customers wherever they are in the digital lifecycle and helping them outperform their competition through speed and innovation.
Apexon brings together distinct core competencies – in AI, analytics, app development, cloud, commerce, CX, data, DevOps, IoT, mobile, quality engineering and UX, and our deep expertise in BFSI, healthcare, and life sciences – to help businesses capitalize on the unlimited opportunities digital offers. Our reputation is built on a comprehensive suite of engineering services, a dedication to solving clients’ toughest technology problems, and a commitment to continuous improvement.
Backed by Goldman Sachs Asset Management and Everstone Capital, Apexon now has a global presence of 15 offices (and 10 delivery centers) across four continents.
We enable #HumanFirstDIGITAL
Role Description: We are seeking an experienced Digital Forensics SOC Analyst III to join our Security Operations Center (SOC) supporting the State of Maryland. In this role, you’ll lead forensic investigations, support threat hunting efforts, and train junior SOC analysts. You will be instrumental in incident response, malware analysis, and tuning security tools like Splunk.
You’ll be responsible for (Responsibilities):
- Serve as Tier 3 escalation point for SOC analysts
- Conduct cybersecurity incident investigations and forensic analysis
- Perform root cause and impact analysis; develop technical reports
- Utilize forensics tools (FTK, EnCase, AXIOM, etc.) for compromised systems
- Support malware analysis and reverse engineering of attacker tools
- Develop and fine-tune SIEM rules (Splunk preferred)
- Mentor/train SOC staff on event analysis and SIEM tools
- Monitor, detect, and correlate network threats
- Analyze network traffic and PCAP data (Wireshark, Network Miner, etc.)
- Engage in proactive threat hunting and intelligence gathering
- Communicate findings effectively with stakeholders and agency customers
- Develop and refine incident response processes and standards
- Participate in on-call rotation (after-hours/weekend support may be required)
- Bachelor’s in Computer Science, Info Systems, Engineering, or related field with 4+ years of relevant experience
- OR Associate degree with cyber certifications and 5+ years of experience
- Proficiency with SIEM tools – Splunk Enterprise Security preferred
- Experience with forensic imaging and analysis tools (FTK, EnCase, Sleuthkit, etc.)
- Network traffic analysis tools (Wireshark, TCPDump, etc.)
- Memory forensics tools (Volatility, SANS SIFT, Magnet RAM Capture)
- Experience with EDR solutions (e.g., Tanium, McAfee)
- Strong understanding of incident response frameworks and TTPs
- Malware analysis: static/dynamic techniques (IDA Pro, Ghidra, REMux, etc.)
- Experience with anti-forensics, obfuscation, and packing methods
- YARA rule creation and use
- Programming/scripting skills: Python, Perl, C/C++, Go
- Highly Desired Certifications:
- CFCE, CHFI, GCFE, CCE, CEH, GREM, CREA
You’ll have (Qualification & Experience):
- Bachelor's Degree in related field is required.
Don’t worry if you don’t check all the boxes; we’d still love to hear from you.
Our Commitment to Diversity & Inclusion:
Did you know that Apexon has been Certified™ by Great Place To Work®, the global authority on workplace culture, in each of the three regions in which it operates: USA (for the fourth time in 2023), India (seven consecutive certifications as of 2023), and the UK.
Apexon is committed to being an equal opportunity employer and promoting diversity in the workplace. We take affirmative action to ensure equal employment opportunity for all qualified individuals. Apexon strictly prohibits discrimination and harassment of any kind and provides equal employment opportunities to employees and applicants without regard to gender, race, color, ethnicity or national origin, age, disability, religion, sexual orientation, gender identity or expression, veteran status, or any other applicable characteristics protected by law.
You can read about our Job Applicant Privacy policy here Job Applicant Privacy Policy (apexon.com)
Our Perks and Benefits:
Our benefits and rewards program has been thoughtfully designed to recognize your skills and contributions, elevate your learning/upskilling experience and provide care and support for you and your loved ones.
As an Apexon Associate, you get continuous skill-based development, opportunities for career advancement, and access to comprehensive health and well-being benefits and assistance.
We also offer:
- Health Insurance with Dental & Vision
- 401K Plan
- Life Insurance, STD & LTD
- Paid Vacations & Holidays
- Paid Parental Leave
- FSA Dependent & Limited Purpose care
- Learning & Development
* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰
Tags: Analytics C CEH CFCE CHFI Cloud Computer Science DevOps EDR EnCase Forensics GCFE Ghidra GREM IDA Pro Incident response IoT Malware PCAP Perl Privacy Python Reverse engineering SANS Scripting SIEM SOC Splunk TTPs
Perks/benefits: 401(k) matching Career development Health care Insurance Parental leave
More jobs like this
Explore more career opportunities
Find even more open roles below ordered by popularity of job title or skills/products/technologies used.