Forensics / Incident Response SME
Tasks
- Analyze Windows memory
- Analyze network events and reconstruct timelines
- Collect volatile evidence
- Conduct forensic analysis
- Conduct malware detection analysis
- Conduct security assessments
- Develop and follow standard operating procedures
- Develop and optimize malware analysis laboratory
- Develop detection rules for security tools
- Evaluate security alerts and prioritize response
- Maintain evidence chain of custody
- Manage advanced persistent threat handling
- Perform Windows registry analysis
- Perform file system timeline analysis
- Perform forensic imaging and media analysis
- Perform incident response
- Perform lateral movement analysis
- Perform lessons learned activities
- Prepare forensic investigation reports
- Provide incident management guidance to SOC
- Run tabletop exercises
- Support Threat Hunting and Threat Intelligence
Perks/Benefits
- 100 percent remote work
- 401k matching
- FSA programs
- Health coverage contribution
- Online education and training portal
- Paid federal holidays
- Paid time off
- Referral bonuses
- Short-term disability and life insurance
- Wellness and fitness program
Skills/Tech-stack
AWS | Alert triage | Chain of Custody | Device Forensics | Digital forensics | Evidence collection | Evidence reporting | File System | File System Timeline Analysis | Forensic Imaging | Incident Response | Malware analysis | Memory Forensics | Mobile Device | Mobile Device Forensics | Network Forensics | Operating procedures | Protocol analysis | REMnux | Registry analysis | Reverse Engineering | SANS SIFT | Security alert triage | Standard Operating Procedures | Threat Intelligence | Threat hunting | Timeline Analysis | Timeline reconstruction | Volatile Evidence Collection | Windows Memory Forensics | Windows Registry | Windows registry analysis
Education
N/A
Related jobs
-
Information Security Analyst Senior USD 70K-78KAccess Control | Access Control Lists | DHCP | DNS | EncryptionCareer development opportunities | Paid Holidays | Paid parental leave | Paid sick time | Paid vacationSenior-level Full TimeREMOTE OPTIONS, PHOENIX R1d ago
-
Mid-level Full TimeRemote, United States R1d ago
-
SIEM Specialist USD 104K-170KAWS | Azure | Bash | Cloud Security | Correlation rulesCompetitive base | Flexible work model | Growth opportunities | Hybrid work model | In-office work optionMid-level ContractColombia; Argentina; Brazil; Remote (United States) R1d ago
-
Tier 2 Monitoring Analyst - Senior USD 104K-166KAnomaly Detection | As-a-Service | Cloud Computing | Detection Systems | Event analysisHybrid work schedule after 90 days | On site first 90 days | Shift schedule Sunday to ThursdaySenior-level Full TimeArlington, VA, United States R1d ago
-
Sr. Security Operations Analyst USD 105K-195KAlert Tuning | Attack Vectors | Bash | Cause analysis | Digital forensicsHybrid work scheduleSenior-level Full TimeGA Atlanta 1050 Techwood Drive NW, … R1d ago
-
Security Operations Analyst USD 70K-131KAlert triage | Antivirus | Automation | Case management | Cloud SecurityCareer development | Headspace app access | Hybrid work model | Mental health days | Retirement savingsEntry-level Full TimeUnited States of America, Eagan, Minnesota R1d ago
-
Threat Detection & Response, AVP - Tier 2 - NJ USD 123K-164KAWS | Azure | Cloud Security | EDiscovery | EnCaseExecutive-level Full TimeNew Jersey Office - 210 Hudson … R1d ago
-
Senior Information Security Analyst USD 75K-75KCompliance | Google Workspace | Incident Response | Lean | Microsoft OfficeFlexible schedules | Paid Holidays | Paid parental leave | Tuition reimbursement | Wellness plansSenior-level Full TimeREMOTE OPTIONS, PHOENIX R1d ago
-
Cybersecurity Analysts USD 100K-145K800-53 | ACAS | AWS | AppDetective | CNSSI 1253Direct full time W2 employment | Hybrid schedule | US Secret security clearance supportMid-level Full TimeWashington DC Metro Area R2d ago
-
AWS | Advanced Persistent Threats | Agentic AI | Azure | Cloud platformRemote eligibleSenior-level Full TimeMcLean, VA, United States R2d ago
-
Cyber Defense Analyst USD 87K-157KATTACK | Administrative tools | Alert Tuning | Cryptanalysis | CryptographySenior-level Full Time6314 Remote/Teleworker US, United States R2d ago
-
Security Analyst - Governance, Risk, and Compliance USD 116K-136KAWS | Audit Support | CCPA | Cloud Security | Compliance AutomationDental insurance | Health insurance | Mental health benefits | Restricted stock units | Vision insuranceMid-level Full TimeRemote - US R4d ago
-
SOC Analyst USD 86K-130KAuthentication Logging | CIS Critical Security | CIS Critical Security Controls | Case management | Critical Security ControlsOn-call support | Remote work | US security clearance supportMid-level Full TimeWork from home, VA, United States R5d ago
-
SOC Analyst (SR.) USD 111K-155KAI | Authentication Monitoring | Automation | Case management | Detection engineeringOn-call support | Remote work | Security clearance supportSenior-level Full TimeWork from home, VA, United States R5d ago
-
Computer Security System Specialist USD 95K-130KAnti-Malware | Anti-virus | Asset discovery | Automation | Cloud Access Security BrokerProfessional development | Public Trust clearance or higher security clearance | Remote work eligible | Travel reimbursement as neededMid-level Full TimeWork from home, VA, United States R5d ago
-
Analyst I, Falcon Complete (Hybrid, St Louis) USD 85K-120K.NET | C# | Computer forensics | Dynamic malware analysis | Incident ResponseHealth and wellness programs | Paid Holidays | Paid parental leave | Paid time off | Professional developmentEntry-level Full TimeSt. Louis, United States R5d ago
-
Staff Threat Intelligence Analyst USD 190K-210KAI | C# | C++ | Cybersecurity | Detection engineering401k match | Coaching platform | Digital reimbursement | Disability insurance | Education allowanceSenior-level Full TimeUnited States of America R5d ago
-
Threat Intelligence Researcher (Cloud) USD 160K-220KData Sources | Incident Response | Infrastructure hunting | Malware analysis | Open Source401k retirement savings plan | Bereavement leave | Employee assistance program | Flexible paid time off | Flexible spending accountsMid-level Full TimeRemote - USA R6d ago
-
Product System Security Engineering Specialist USD 114K-185KCybersecurity | Digital forensics | Embedded Systems | Intrusion Detection | Management FrameworkEmployee assistance program | Hybrid work schedule | Paid time off | Relocation assistance | Tuition reimbursementSenior-level Full TimeIndianapolis, Excellence Building, United States R6d ago
-
Cybersecurity Analyst I (CYSECAI) USD 80K-120KAlert Tuning | Configuration Management | Detection engineering | Event management | Incident ResponseMid-level Full TimeRemote Worker, United States R6d ago
-
Incident Responder (Tier 2) USD 105K-135KAlert triage | Android Forensics | Cybersecurity | Digital forensics | IOS401k match | Dental insurance | Disability insurance | Flexible vacation | Health insuranceSenior-level Full TimeUnited States R7d ago
-
Sr. Security Analyst USD 90K-120KAutomation | Cloud Security | Elastic SIEM | Elasticsearch | Endpoint SecurityCustomer training | Remote work | Travel opportunitiesSenior-level Full TimeWork from home, VA, United States R7d ago
-
Principal Cybersecurity Awareness Specialist USD 163K-235KCloud Security | Crisis Communications | Cybersecurity | Executive Communication | GovernanceSenior-level Full TimeSunrise,FL,United States R7d ago
-
SOC Analyst USD 80K-110KAlienVault USM A | Cause analysis | CrowdStrike | DNS | EDRTraining and guidanceMid-level Full TimeUnited States - Remote R7d ago
-
API Security | AWS | Azure | Bash | CI/CDAfter-hours support | On-call rotation | On-the-job learning | Professional development | Weekend supportSenior-level Full TimeRemote - US, United States R7d ago