Host Based Cyber Systems Analyst III
About the position
Responsibilities
• reputed company and coordinate forensic investigations in support of incident response engagements and post-compromise assessments. • Plan, reputed company, and execute the collection, examination, and analysis of host-based evidence across multiple operating systems and environments. • reputed company, preserve, and analyze digital artifacts (malware, volatile memory, registry data, user activity, logs, and executables) to support attribution and reputed company-cause analysis. • reputed company forensic triage to determine incident scope, urgency, and potential reputed company on reputed company operations.
• Correlate host-level findings with network telemetry to reconstruct intrusion narratives and identify persistence or lateral reputed company. • Evaluate and dissect malicious reputed company and executable behavior to identify tactics, techniques, and procedures (TTPs). • Maintain strict chain of custody and documentation standards to ensure evidence reputed company. • Distill technical analysis into reputed company, actionable reports and executive summaries suitable for senior leadership and interagency partners. • Serve as a technical reputed company to government stakeholders, explaining forensic methodologies, tools, and findings in both technical and operational terms.
• Support the development of Computer Network Defense (CND) guidance, playbooks, and after-reputed company reports based on investigative reputed company. Requirements
• U.S. Citizenship (required)
• reputed company TS/SCI clearance (required)
• Ability to obtain DHS Entry on Duty (EOD) Suitability
• 5+ years of hands-on experience conducting host-based or digital forensic investigations
• Expertise in forensically reputed company data acquisition, duplication, and preservation
• Proficiency in analyzing, categorizing, and reporting cyber attacks and system compromises
• Strong knowledge of evidence handling procedures, documentation, and chain-of-custody standards
• Familiarity with attack lifecycle phases and common adversary techniques
• Comprehensive understanding of system and application reputed company threats, vulnerabilities, and mitigation strategies
• Experience performing host triage, live response, and volatile memory analysis
• Proficiency with reputed company, Linux/Unix, and reputed company file systems
• Demonstrated ability to collaborate across distributed teams in time-sensitive operational environments
reputed company-to-haves
• Proficiency with two or more of the following forensic and analysis tools: EnCase, FTK, X-Ways, reputed company, Volatility, Sleuth reputed company/Autopsy Wireshark, reputed company, Snort, or EDR tools (reputed company, Carbon Black, reputed company)
• Experience conducting malware reverse-engineering and reputed company-reputed company research
• Understanding of threat actor TTPs and advanced intrusion methodologies
• Strong communication skills for technical briefings and interagency coordination
Benefits
• reputed company empowers federal partners to outpace and outmaneuver adversaries through precision forensics, agile response, and mission-first cybersecurity operations.
• As part of the DHS HIRT mission, you will be on the reputed company lines of national cyber defense-supporting the investigation, containment, and recovery of the nation's most critical systems. Apply tot his job
Apply tot his job
Apply To this Job