Digital Forensics and Incident Analyst (TS)

Agile Defense - Washington, DC

Hiring: Digital Forensics and Incident Analyst (TS) Company: Agile Defense Location: Washington, DC Job Posted Time: 2026-09-16 18:23:13 Employment Type: On-site Target Skills & Keywords : Agile, Encryption, Linux, Program Management, SIEM, SOC, Security Clearance, Systems Design About the job Experience: •7 years of hands-on digital forensics and incident response (DFIR) experience, ideally in federal or otherwise regulated environments Required Skills: •Analyze log files, evidence, and other information to determine the best methods for identifying the perpetrator(s) of a network intrusion. (T0027) •Confirm what is known about an intrusion and discover new information via dynamic analysis. (T0036) •Provide technical summaries of findings in accordance with established reporting procedures, and deliver written analysis reports to requesting customers. (T0075) •Examine recovered data for information relevant to the matter at hand. (T0103) •Perform file signature analysis (T0167) and file system forensic analysis across implementations such as NTFS, FAT, and EXT. (T0286) •Collect and analyze intrusion artifacts (e.g., source code, malware, system configuration) and use discovered data to enable mitigation of potential cyber defense incidents. (T0432) •Conduct malware analysis in the event of a compromise, identify obfuscation techniques, and interpret debugging results to ascertain adversary tactics, techniques, and procedures •Determine the extent of threats and recommend courses of action or countermeasures to mitigate risk; analyze crises to ensure public, personal, and resource protection Qualifications: •U.S. citizenship and an active Top Secret (TS) security clearance •Bachelor's degree in Cybersecurity, Computer Science, Digital Forensics, Information Systems, or a related field (additional experience may substitute for degree) •Required certifications: CFIA and CFIH. •Demonstrated expertise with industry-standard forensic and analysis tools (e.g., EnCase, FTK, Autopsy/The Sleuth Kit, X-Ways, Volatility, Wireshark, YARA, and malware reverse-engineering tools such as Ghidra or IDA Pro) •Strong command of Windows, Unix, and Linux internals; file systems (NTFS, FAT, EXT); virtualization; and SIEM/event-correlation platforms •Solid functional working knowledge of the NICE Framework, NIST guidance, MITRE ATT&CK, chain-of-custody standards, and Rules of Evidence •Excellent technical writing and the ability to present findings clearly to legal, oversight, and investigative authorities •What makes us Agile? We call it the 6Hs, the values that define our culture and guide everything we do. Together, these values infuse vibrancy, integrity, and a tireless work ethic into advancing the most important national security and critical civilian missions. It's how we show up every day. It's who we are. •Happiness multiplies and creates a positive and connected environment where motivation and satisfaction have an outsized effect on everything we do. •Being helpful is the foundation of teamwork, resulting in a supportive atmosphere where collaboration flourishes, and collective success is celebrated. Compensation: •Flexible work environment (work from home / hybrid options) Interested candidates, please apply directly through the job posting on company's career page or try via AI auto apply on this platform. Don't miss this opportunity to join a forward-thinking team!