Digital Forensics Analyst - Hybrid

Job Description: 

XOR Security, An Agile Defense Company is currently seeking a Digital Forensics Analyst to support an Agency-level Focused Operations (FO) team at DHS. The FO program is part of a team that provides comprehensive Computer Network Defense and Response support through monitoring and analysis of potential threat activity targeting the enterprise.  The successful candidate will support multiple aspects of the Agency’s digital forensic analysis of observed or suspected malware samples/evidence and investigate computer security incidents to include insider threat investigations.  The successful candidate will support all case work related to forensics investigations for a variety of platforms and devices, including networks, file and operating systems, memory, email, and browsers. As these cases and activities may be used as evidence as part of legal proceedings for potential computer crimes, the Lab manager must be highly disciplined in handing and enforcing strict protocols for case management, chain of custody, and reporting. 

***On site once a week in Springfield, VA


  • Work according to forensic lab processes and procedures uniformly and comprehensively. 
  • Support case load and assist with forensic analysis and reporting of case workload when required. 
  • Discover data applicable to legal proceedings such as litigation, government investigations, or Freedom of Information Act (FOIA)requests, where the information sought is in electronic format. 
  • Assist government personnel to review collected data for privilege and relevance before it is turned over to the requesting party.   
  • Perform forensics collection of eDiscovery data using EnCase® software and Access Data products, as well as other existing tools; data sources include (but are not limited to), Cloud-based files, Email Files, Text Messages, Call Detail Records, Log Files, Chat Logs.  
  • Be responsible for all facets of eDiscovery requests associated with FO cases. 
  • Track evidence inventory for intake and release of all evidence items ensuring proper handling and maintenance of evidence and chain of custody records.  
  • Develop and maintain the biweekly eDiscovery activities report that identifies eDiscovery team accomplishments and goals. 

Required Qualifications: 

  • Bachelor’s Degree  
  • Possess at least 3 years of directly relevant experience performing digital forensic analysis with some leadership responsibilities. 
  • Active Top Secret Security Clearance with the ability to obtain a TS/SCI is required. 
  • Knowledge of, understanding, and experience with the stages of the Electronic Discovery Reference Model (EDRM) and Federal Rules of Civil Procedures (FRCP). 
  • Familiarity with at least one of the following tools: EnCase, Forensic Toolkit, Autopsy/Sleuthkit 
  • Knowledge of investigative methods to locate specific electronic data. 
  • Proficiency in the latest cyber forensics, response, and reverse engineering skills and understanding of the latest exploit methodologies. 

Closing Statement: 

XOR Security, An Agile Defense Company offers a very competitive benefits package including health insurance coverage from the first day of employment, 401k with a vested company match, vacation, and supplemental insurance benefits. 

XOR Security, An Agile Defense Company is an Equal Opportunity Employer (EOE). M/F/D/V. 

Citizenship Clearance Requirement Applicants selected may be subject to a government security investigation and must meet eligibility requirements - US CITIZENSHIP and ACTIVE TOP SECRET CLEARANCE REQUIRED. 

Cyber Security Jobs by Category

Cyber Security Salaries