Cyber Digital Forensics Analyst
Job Description
On-site in Orange County, CA
Our client seeks a Cyber Digital Forensics Analyst to support a 24x7x365 Security Operations Center. The analyst will conduct digital media forensics, contribute to incident response, maintain and enhance the SOC forensics program, and produce clear technical reporting. The role includes shift rotations, weekend coverage, and some holidays. The initial period of performance is roughly six months with training on a day shift. Candidates must meet background clearance requirements and hold a relevant forensics certification.
This is a contract to hire opportunity. Applicants must be willing and able to work on a w2 basis and convert to FTE following contract duration. For our w2 consultants, we offer a great benefits package that includes Medical, Dental, and Vision benefits, 401k with company matching, and life insurance.
Rate: $34.00 to $39.00/hr. w2
Responsibilities:- Act as the primary liaison for forensics analysis tasks including analysis of digital media devices to identify, reverse engineer, and de-obfuscate content related to a security incident.
- Maintain the Digital Forensics Program for the SOC, including process enhancements and upskilling the team with drafted technical reports.
- Support SOC operational duties for networks and systems during security incidents.
- Augment cyber threat intelligence development and reporting generated from forensics investigations.
- Identify, develop, and implement automation tasks for the SOC Forensics Program.
- Research, evaluate, and recommend new security tools, techniques, and technologies aligned to IT security strategy.
- Use COTS/GOTS and custom tools and procedures to scan, identify, contain, mitigate, and remediate vulnerabilities and intrusions.
- Perform analyses to validate established security requirements and recommend additional safeguards.
- Provide occasional briefings to senior staff on forensics investigation results.
- Programming with Python, C++, or JavaScript.
- Evidence acquisition and Chain of Custody process.
- Host, cloud, identity, and network forensics experience.
- Packet capture, volatile memory, suspicious script analysis, and forensics experience.
- Familiarity with physical device imaging software and digital forensics software.
- Knowledge of IDS/IPS, firewalls, and anti-malware technologies.
- Incident response experience.
- Experience analyzing security alerts via Microsoft Sentinel SIEM or similar SIEM tools.
- Malware analysis technical report writing.
- Adherence to SOC Standard Operating Procedures.
- A bachelor’s degree in a related field is required. Two years of related experience is highly preferred. Additional experience may substitute for education. Relevant certification required: Magnet Certified Forensics Examiner (MCFE), Encase Certified Examiner (EnCE), Digital Forensics Essentials (DFE), GIAC Certified Forensics Analyst (GCFA), or similar certification. Required background screenings include County Live Scan, Child Support Services background clearance, and County Probation background.
Skills, experience, and other compensable factors will be considered when determining pay rate. The pay range provided in this posting reflects a W2 hourly rate; other employment options may be available that may result in pay outside of the provided range.W2 employees of Eliassen Group who are regularly scheduled to work 30 or more hours per week are eligible for the following benefits: medical (choice of 3 plans), dental, vision, pre-tax accounts, other voluntary benefits including life and disability insurance, 401(k) with match, and sick time if required by law in the worked-in state/locality.If anyone reaches out to you about an open position connected with Eliassen Group, please ensure that you are working directly with us by confirming the following:
· When you work with Eliassen Group, all email communication will come from an Eliassen.com address, never Gmail, Yahoo, etc.
· Eliassen Group will never ask you for personal information (home address, bank account, or check routing number) until you have worked with someone clearly associated with Eliassen Group.
If you have any indication of fraudulent activity, please contact [email protected].
