Senior Digital Forensics Incident Response Analyst Job at Tyto Athene, Arlington, VA

V1NJRHV1ZXg5b09aVVZSU1JuV1Z5SXRwNFE9PQ==
  • Tyto Athene
  • Arlington, VA

Job Description

Job Description

Tyto Athene is searching for a Senior Digital Forensics Incident Response Analyst to support our customer in Arlington, Virginia.

Responsibilities:

  • Utilize state-of-the-art technologies such as EDR, SEIM, and full packet capture to perform hunt and investigative activity to examine endpoint and network-based activity
  • Conduct host and network forensics, log analysis, triage, and malware analysis in support of incident response
  • Develop and build security content, scripts, tools, or methods to enhance the incident investigation processes
  • Contribute to rule and signature creation for cybersecurity tools
  • Lead IR activities and provide regular incident updates to key stakeholders and executive leadership
  • Serve as the primary incident point of contact with customer, third-party vendors, and other external parties
  • Work with key stakeholders to implement remediation plans in response to incidents
  • Effectively investigative and identify root cause findings then communicate findings to stakeholders including technical staff, and leadership
  • Capture cybersecurity metrics in direct support to regular tactical and executive-level briefings (daily, weekly, monthly, quarterly, annual, and ad hoc)
  • Create IR and forensics reports documenting findings, detailed analysis, recommendations, and lessons learned.
  • Act as a technical escalation point for SOC Watch Floor and mentor junior staff
  • Author Standard Operating Procedures (SOPs) and training documentation when needed

Required:

  • Bachelor's degree in computer science, Information Technology, or related field and 6 years of relevant experience or a Masters degree and 2 years
  • Experience with EDR and SIEM technologies
  • Advanced knowledge of TCP/IP protocols
  • Knowledge of Windows and Linux operating systems
  • Understanding of MITRE ATT CK and D3FEND
  • Knowledge of advanced attacker tools, techniques, and procedures (TTP)
  • Current malware campaigns TTPs
  • Experience with malware analysis
  • Experience with digital forensics tools and case procedures
  • Deep packet and log analysis
  • Knowledge of enterprise architecture including zero trust principles
  • Common phishing techniques and how to investigate them
  • Proficiency in technical writing
  • Experience in customer service or client-facing roles
  • Experience presenting and speaking to leadership
  • The ability to mentor Tier 1 and Tier 2 analysts

Desired:

  • Working knowledge of regex and scripting languages is highly preferred
  • Additional relevant certifications such as those from GIAC or CompTIA
  • Experience with major cloud service provider offerings
  • Knowledge of offensive security tools and techniques
  • Experience with cyber threat intelligence gathering and analysis
  • Experience with cyber threat hunting

Clearance: Active Secret clearance required

Certification: DoD 8570 IAM/IAT Level II certification. This will change to a DoD 8140 equivalent once a DISA 8140 policy is released.

Location: This is an on-site role with expectations of being on the client site in Arlington, VA five days a week.

Additional Information

After several strategic acquisitions in 2021, Tyto Athene has experienced enormous opportunity and growth. Aside from being the leading provider of mission-focused IT and Cyber services and solutions to critical U.S. government agencies, Tyto is well-positioned to meet the growing demand for network modernization requirements across the federal enterprise.

Our employees are the key to the innovation that has made Tyto a success. We provide an environment that is geared to reward potential, innovation, and teamwork. If you would like to unleash your creativity and your careerit's time to join Team Tyto! Tyto Athene

Job Tags

Similar Jobs

BOEING

Manufacturing Engineer (Assembly and Installation) Job at BOEING

 ...opportunity for professional growth. Find your future with us. The Boeing Defense, Space & Security (BDS) team is seeking multiple Manufacturing Engineers (Associate or Experienced) located in Berkeley, MO. When you join our team of mission driven engineers, youll... 

Radley James

Python Developer Job at Radley James

 ...A leading high-frequency trading firm is looking for a Python Engineer to create a robust and reliable foundation for their infrastructure platform. This role will give access to plenty of greenfield projects - including the creation and development of new infrastructure... 

Amplify Education

2025 Summer Intern - Marketing and Events Management (Arizona) - Amplify Education - Remote Job at Amplify Education

 ...A pioneer in K12 education since 2000, Amplify is leading the way in next-generation curriculum and assessment. Our core and supplemental programs in ELA, math, and science engage all students in rigorous learning and inspire them to think deeply, creatively, and for... 

BlueHalo

Digital Forensics Engineer Job at BlueHalo

 ...seeking to make an enduring impact on the national security mission. Make your mark standing at the mission's edge.Our Digital Forensics Engineer position is part of a dynamic team focused on delivering robust state-of-the-art technical research and solutions for our... 

Pratt & Whitney

RF Hardware Design & Test Engineer Job at Pratt & Whitney

 ...Bldg 1 Assabet 50 Apple Hill Drive Assabet - Building 1, Tewksbury...  ...years of experience and renowned engineering expertise to meet the needs of...  ...experience in digital and/or RF/Microwave system theory and...  ...verification.Integration and test at component, CCA, and subsystem...