Digital Forensic Analyst – Expert
Job Locations
US-VA-Chantilly
Requisition ID
2023-131645
Position Category
Data Analytics / Intelligence
Clearance
Top Secret/SCI w/Poly
Sector
Space & Intelligence
Sector
Space & Intelligence
Responsibilities
Perform advanced static and dynamic memory and on-disk forensic analysis of Windows, LINUX, and mobile operating systems, utilizing a host of commercial and internally developed forensic solutions. Forensic investigations include hard drive, memory, solid state storage and network traffic platforms. Forensic analysis focuses on scientifically collecting, processing, preserving, analyzing, and presenting digital artifacts in support of network vulnerability mitigation and data recovery. The forensic analyst will identify digital data for examination and analysis in manner that maintains the integrity and objectivity of the forensic process. Digital Forensic Analysis consists of four focus areas: software reverse engineering, network forensics, file system and operating system forensics, and hardware forensics. The Analyst job duties will consist of the following:Develop, implement, execute, and/or maintain an Independent Validation & Verification (IV&V) program to independently test, inspect and analyze performance of tools, and applications relative to user and system requirements.Identify, collect and analyze artifactsProvide insight and evaluation of binaries and behaviors to support tool analysis and conduct analysis to determine functionality of toolsApply digital forensic techniques and data recovery best practices and industry standards (such as or similar to SANS DFIR)Perform digital forensic analysis on user platforms and devices such as Windows, Linux, and MAC using commercial products such as EnCase, SIFT, X-Ways, Wireshark and Forensic ToolKitPerform forensic analysis including disk image analysis, memory analysis and static and dynamic malware analysisComplete incident response evaluation/analysis and recommend mitigation approach based on observationsReverse engineer software and tools, and write and deploy code in Sponsor directed format such as Bash, Powershell, and Python to create custom analysis capabilities.Build and troubleshoot test environments from user requirement documentsCoordinate with the Sponsor to document and deliver Forensic testing reports in approved formatsDesired Qualifications:Experience in one or more of the requirements specified below:Demonstrated experience building custom analysis tools and scripts to enhance analysis techniquesDemonstrated understanding of the MITRE ATT&CK frameworkDemonstrated experience working with/in the Intelligence CommunityOne or more of the following professional certifications, or other relevant certification:Certified Ethical Hacker (CEH)Global Information Assurance Certification (GIAC) Certified Forensic Analyst (GFCA)GIAC Reverse Engineering Malware (GREM)
Qualifications
BS 12-15, MS 10-13. Phd 10+
Peraton Overview
Peraton drives missions of consequence spanning the globe and extending to the farthest reaches of the galaxy. As the world’s leading mission capability integrator and transformative enterprise IT provider, we deliver trusted and highly differentiated national security solutions and technologies that keep people safe and secure. Peraton serves as a valued partner to essential government agencies across the intelligence, space, cyber, defense, civilian, health, and state and local markets. Every day, our employees do the can’t be done, solving the most daunting challenges facing our customers.
Range for Posting
Salary Minimum: $72,500Salary Mid: $145,000Salary Maximum: $181,300The estimate displayed represents the typical salary range for this position, and is just one component of Peraton’s total compensation package for employees. Other rewards may include annual bonuses, short- and long-term incentives, and program-specific awards. In addition, Peraton provides a variety of benefits to employees.
An Equal Opportunity Employer including Disability/Veteran.
Options
Peraton / Equal Opportunity Employer
2023-131645 JBPRT 2023.07.16
Top Secret SSBI SCI, CLZTS, — SKUUU, VA_CHANTILLY VA_VIRGINIA ZC20152 ZC201Z