Develop forensic reports, malware analysis reports, incident artifacts, and technical documentation in accordance with Judiciary SOC Forensics SOPs and JSOCIRP requirements. * Provide real-time ...

60 Soc Forensic Analyst Jobs Hiring Near You
Develop forensic reports, malware analysis reports, incident artifacts, and technical documentation in accordance with Judiciary SOC Forensics SOPs and JSOCIRP requirements. * Provide real-time ...
SOC Watchfloor Analyst
Huntsville, AL · On-site
Mission Multiplier is seeking candidates for SOC Watchfloor Analysts to help support one of our ... Forensic Analyst (GCFA), GIAC Certified Intrusion Analyst (GCIA), GIAC Network Forensic Analyst ...
Quick apply
SOC Watchfloor Analyst
Huntsville, AL · On-site
Mission Multiplier is seeking candidates for SOC Watchfloor Analysts to help support one of our ... Forensic Analyst (GCFA), GIAC Certified Intrusion Analyst (GCIA), GIAC Network Forensic Analyst ...
Develop forensic reports, malware analysis reports, incident artifacts, and technical documentation in accordance with Judiciary SOC Forensics SOPs and JSOCIRP requirements. * Provide real-time ...
Quick apply
Develop forensic reports, malware analysis reports, incident artifacts, and technical documentation in accordance with Judiciary SOC Forensics SOPs and JSOCIRP requirements. * Provide real-time ...
Cyber Digital Forensics Analyst
Anaheim, CA · On-site
$29 - $34/hr
... from forensic investigations. * Identify, develop, and implement automation tasks for the SOC ... Analyze and validate security requirements and recommend additional safeguards. * Provide ...
Quick apply
Cyber Digital Forensics Analyst
Anaheim, CA · On-site
$29 - $34/hr
... from forensic investigations. * Identify, develop, and implement automation tasks for the SOC ... Analyze and validate security requirements and recommend additional safeguards. * Provide ...
Junior SOC Operations Analyst Location: Huntsville, AL Position Type: Full-Time Position Summary ... Conduct forensic analysis of digital artifacts including disk images and log data. * Assist with ...
Junior SOC Operations Analyst Location: Huntsville, AL Position Type: Full-Time Position Summary ... Conduct forensic analysis of digital artifacts including disk images and log data. * Assist with ...
Junior SOC Operations Analyst Location: Huntsville, AL Position Type: Full-Time Position Summary ... Conduct forensic analysis of digital artifacts including disk images and log data. * Assist with ...
Quick apply
Junior SOC Operations Analyst Location: Huntsville, AL Position Type: Full-Time Position Summary ... Conduct forensic analysis of digital artifacts including disk images and log data. * Assist with ...
Junior SOC Operations Analyst Location: Huntsville, AL Position Type: Full-Time Position Summary ... Conduct forensic analysis of digital artifacts including disk images and log data. * Assist with ...
Junior SOC Operations Analyst Location: Huntsville, AL Position Type: Full-Time Position Summary ... Conduct forensic analysis of digital artifacts including disk images and log data. * Assist with ...
Junior SOC Operations Analyst Location: Huntsville, AL Position Type: Full-Time Position Summary ... Conduct forensic analysis of digital artifacts including disk images and log data. * Assist with ...
Quick apply
Junior SOC Operations Analyst Location: Huntsville, AL Position Type: Full-Time Position Summary ... Conduct forensic analysis of digital artifacts including disk images and log data. * Assist with ...
Security Analyst - Forensics/Malware Analysis with Security Clearance
Chandler, AZ · On-site
$104K - $166K/yr
Support 24x7 SOC operations through advanced forensic and malware investigations. * Perform malware analysis and reverse engineering to identify capabilities, persistence mechanisms, and indicators ...
Security Analyst - Forensics/Malware Analysis with Security Clearance
Chandler, AZ · On-site
$104K - $166K/yr
Support 24x7 SOC operations through advanced forensic and malware investigations. * Perform malware analysis and reverse engineering to identify capabilities, persistence mechanisms, and indicators ...
Performing forensic analysis of disk images, memory dumps, network traffic, and log data using ... Coordinating with SOC, IT operations, legal, and business stakeholders during active incident ...
Performing forensic analysis of disk images, memory dumps, network traffic, and log data using ... Coordinating with SOC, IT operations, legal, and business stakeholders during active incident ...
Performing forensic analysis of disk images, memory dumps, network traffic, and log data using ... Coordinating with SOC, IT operations, legal, and business stakeholders during active incident ...
Performing forensic analysis of disk images, memory dumps, network traffic, and log data using ... Coordinating with SOC, IT operations, legal, and business stakeholders during active incident ...
Digital Forensics SME
Rockville, MD · On-site
$140K - $184K/yr
Perform advanced forensic analysis on endpoints, networks, and digital media. * Identify root ... Support SOC operations (SOC-48) with both oversight and technical execution. * Collaborate with law ...
Digital Forensics SME
Rockville, MD · On-site
$140K - $184K/yr
Perform advanced forensic analysis on endpoints, networks, and digital media. * Identify root ... Support SOC operations (SOC-48) with both oversight and technical execution. * Collaborate with law ...
Performing forensic analysis of disk images, memory dumps, network traffic, and log data using ... Coordinating with SOC, IT operations, legal, and business stakeholders during active incident ...
Performing forensic analysis of disk images, memory dumps, network traffic, and log data using ... Coordinating with SOC, IT operations, legal, and business stakeholders during active incident ...
Digital Forensics SME
Rockville, MD · On-site
$140K - $184K/yr
Perform advanced forensic analysis on endpoints, networks, and digital media. * Identify root ... Support SOC operations (SOC-48) with both oversight and technical execution. * Collaborate with law ...
Digital Forensics SME
Rockville, MD · On-site
$140K - $184K/yr
Perform advanced forensic analysis on endpoints, networks, and digital media. * Identify root ... Support SOC operations (SOC-48) with both oversight and technical execution. * Collaborate with law ...
Digital Forensics SME
Rockville, MD · On-site
Perform advanced forensic analysis on endpoints, networks, and digital media. * Identify root ... Support SOC operations (SOC-48) with both oversight and technical execution. * Collaborate with law ...
Quick apply
Digital Forensics SME
Rockville, MD · On-site
Perform advanced forensic analysis on endpoints, networks, and digital media. * Identify root ... Support SOC operations (SOC-48) with both oversight and technical execution. * Collaborate with law ...
Digital Forensics SME
$140K - $184K/yr
Perform advanced forensic analysis on endpoints, networks, and digital media. * Identify root ... Support SOC operations (SOC-48) with both oversight and technical execution. * Collaborate with law ...
Digital Forensics SME
$140K - $184K/yr
Perform advanced forensic analysis on endpoints, networks, and digital media. * Identify root ... Support SOC operations (SOC-48) with both oversight and technical execution. * Collaborate with law ...
SOC Operations Analyst/Watch-Floor Operations Open Systems Technologies Corporation - Huntsville ... GIAC Network Forensic Analyst (GNFA) BENEFITS We offer a comprehensive benefit package that ...
SOC Operations Analyst/Watch-Floor Operations Open Systems Technologies Corporation - Huntsville ... GIAC Network Forensic Analyst (GNFA) BENEFITS We offer a comprehensive benefit package that ...
SOC Operations Analyst/Watch-Floor Operations Open Systems Technologies Corporation - Huntsville ... GIAC Network Forensic Analyst (GNFA) BENEFITS We offer a comprehensive benefit package that ...
SOC Operations Analyst/Watch-Floor Operations Open Systems Technologies Corporation - Huntsville ... GIAC Network Forensic Analyst (GNFA) BENEFITS We offer a comprehensive benefit package that ...
SOC Operations Analyst/Watch-Floor Operations Open Systems Technologies Corporation - Huntsville ... GIAC Network Forensic Analyst (GNFA) BENEFITS We offer a comprehensive benefit package that ...
SOC Operations Analyst/Watch-Floor Operations Open Systems Technologies Corporation - Huntsville ... GIAC Network Forensic Analyst (GNFA) BENEFITS We offer a comprehensive benefit package that ...
Digital Forensics SME with Security Clearance
Rockville, MD · On-site
$140K - $184K/yr
Salary $140K-184K Key Responsibilities Perform advanced forensic analysis on endpoints, networks ... Support SOC operations (SOC-48) with both oversight and technical execution. Collaborate with law ...
Digital Forensics SME with Security Clearance
Rockville, MD · On-site
$140K - $184K/yr
Salary $140K-184K Key Responsibilities Perform advanced forensic analysis on endpoints, networks ... Support SOC operations (SOC-48) with both oversight and technical execution. Collaborate with law ...
SOC Jobs Information
Full-time
Posted 27 days ago
Job description
Qualifications:
- Active Public Trust clearance
- B.S. Computer Science, Information Technology, or a related field
- Five (5) years within IR in a large SOC (over 5,000 endpoints) with at least 3 years focused on digital forensics for Operating System or file systems.
- Three (3) years of demonstrated expertise in disk, memory and registry analysis using industry standard tools such as EnCase, FTK, X-Ways, Volatility.
- Demonstrated understanding of file systems and Operating System artifacts including but not limited to (SRUM, Shellbags and Prefetch).
- Familiarity with federal evidence guidelines and chain of custody requirements.
- This role aligns with NICE work role PD-WRL-002 (Digital Forensics).
- Active GCFA, GREM, CFCE, or OSED certification
Duties:
- Lead digital forensics and malware analysis activities in support of AOUSC Security Operations Division (SOD) operations.
- Provide advanced subject matter expertise for forensic investigations involving Windows, Linux, macOS, cloud, and enterprise environments.
- Perform static and dynamic malware analysis to identify indicators of compromise (IOCs), attacker tactics, techniques, and procedures (TTPs), and root cause.
- Analyze forensic artifacts, memory images, endpoint telemetry, SIEM data, and filesystem timelines to identify malicious activity and intrusion vectors.
- Coordinate with Cybersecurity Triage and Incident Response teams to support investigation, escalation, containment, remediation, and recovery activities.
- Conduct live forensic analysis utilizing Splunk Enterprise Security, Microsoft Sentinel, EDR tools, and AO-provided investigative tooling.
- Collect, preserve, duplicate, and maintain digital evidence in accordance with forensic evidence handling and chain-of-custody procedures.
- Develop forensic reports, malware analysis reports, incident artifacts, and technical documentation in accordance with Judiciary SOC Forensics SOPs and JSOCIRP requirements.
- Provide real-time investigative support for Priority 1 and Priority 2 cybersecurity incidents.
- Support analysis of advanced persistent threats (APT), ransomware, phishing campaigns, malicious scripts, and suspicious binaries.
- Perform memory analysis using approved forensic tools such as Volatility and other Judiciary-approved forensic platforms.
- Extract deleted or hidden data using forensic data carving and recovery techniques.
- Conduct analysis of endpoint, network, identity, and cloud telemetry to support incident investigations and threat hunting operations.
- Coordinate escalation and communication of investigative findings to AO leadership, incident responders, SOC management, and federal staff.
- Review and validate forensic and malware analysis deliverables to ensure technical accuracy, completeness, and compliance with SLA requirements.
- Develop and maintain forensic analysis procedures, malware analysis SOPs, investigative work instructions, and operational playbooks.
- Support enterprise security awareness reporting by contributing forensic findings, threat trends, and investigative recommendations.
- Participate in weekly technical meetings, operational briefings, and cybersecurity reporting activities.
- Support continuous process improvement initiatives related to digital forensics, malware analysis, investigative workflows, and incident response operations.
- Assist in transition-in and transition-out activities including knowledge transfer, operational readiness, training, and documentation support.
About cFocus Software
Sourced by ZipRecruiter
Company size
51 - 200 Employees
Headquarters location
Upper Marlboro, MD, US
Year founded
2006