A

Digital Forensics Analyst

Adrisan LLC

Posted today

Job Requirements

Remote Alexandria, VA
Public Trust Polygraph not specified
Senior Level Career (10+ yrs experience)
Salary not specified
Join Premium to unlock estimated salaries

Job Description

Digital Forensics Analyst

Position Summary: We are seeking a Digital Forensics Analyst to conduct deep-technical digital forensic investigations, artifact analysis, and malware analysis across enterprise, hybrid, and cloud environments. This role acquires digital media, inspects system artifacts, and analyzes cloud logs to reconstruct complex security incidents and trace adversary activity. The ideal candidate brings extensive technical experience investigating Windows, Linux, macOS, and major cloud platforms (M365, Azure, AWS) to deliver clear audit-ready investigative reports.

Key Responsibilities
• Digital Evidence Acquisition & Analysis: Perform forensically sound acquisitions and in-depth analysis of hard drives, volatile memory, mobile devices, and virtual machines across Windows, Linux, and macOS platforms.
• Cloud & Hybrid Investigations: Analyze cloud telemetry, including M365 logs, Azure audit logs, AWS CloudTrail, and IAM activity, to reconstruct cloud-native compromises and unauthorized access.
• Malware Analysis & Triage: Conduct static and dynamic analysis of suspicious files, scripts, and binaries to determine functionality, reverse-engineer behavior, and extract indicators of compromise (IOCs).
• Enterprise Log & Network Forensics: Correlate disparate data sources—including EDR telemetry, SIEM alerts, and full packet captures (PCAP)—to map adversary movement, timeline events, and establish root causes.
• Reporting & Evidence Chain of Custody: Author detailed technical forensic reports, maintain strict chain-of-custody protocols, and present findings to incident response leads, legal counsel, and leadership.
• Tooling & Capability Enhancements: Develop automated forensic collection workflows, custom scripts, and maintain evidence collection toolkits to continuously improve investigative capabilities.

Qualifications Required:
• Experience: 5+ years of hands-on experience conducting or supporting digital forensics and incident investigations across multi-OS environments (Windows, Linux, macOS).
• Technical Mastery:
o Digital Media & Mobile: Deep knowledge of forensic imaging techniques, file system internals (NTFS, APFS, EXT4), and mobile device acquisitions.
o Cloud & Virtualization: Practical experience auditing M365, Azure, AWS (CloudTrail, IAM, S3 logs), and hypervisor/VM environments.
o Enterprise Data Sources: Hands-on experience analyzing EDR telemetry, SIEM logs, network traffic, and raw packet captures.
o Malware Analysis: Experience executing basic to intermediate malware triage and artifact analysis.
Preferred Certifications:
• SANS GIAC: GCFA, GCFE, GREM, GCIH, GISF, GXPN, GCTI, or GOSI.
• EnCase: EnCE, CFSR, or ENCEP.

Job Location: Hybrid to Alexandria, VA.

Clearance: Public Trust or higher.
group id: 91130095

Similar Jobs


Job Category
IT - Security
Clearance Level
Public Trust
Employer
Adrisan LLC