Enable job alerts via email!

Cyber Cloud Forensic Analyst (CFA) SME

Gray Tier Technologies, LLC

Arlington (VA)

On-site

USD 80,000 - 130,000

Full time

12 days ago

Boost your interview chances

Create a job specific, tailored resume for higher success rate.

Job summary

An established industry player is seeking a highly motivated Cyber Cloud Forensic Analyst to join their team supporting the Department of Homeland Security. This role provides a unique opportunity to engage in critical cyber forensic investigations, ensuring the security of the nation's cyber infrastructure. With a focus on cloud forensics, candidates will develop skills in incident response and digital evidence collection. This position offers a supportive environment for career growth and training, making it ideal for those passionate about cybersecurity and eager to make a significant impact in the field.

Qualifications

  • 8+ years of experience in cyber forensic investigations.
  • Bachelor's degree in Computer Science or related fields.

Responsibilities

  • Acquire and collect computer artifacts during onsite engagements.
  • Analyze forensic images and evidence for reports.
  • Coordinate with government personnel to validate findings.

Skills

Cyber Forensic Investigations
Cloud Security
Linux/Unix Proficiency
Windows Operating Systems
Incident Response
Digital Evidence Collection
Proactive Analysis Techniques
SaaS/PaaS/IaaS Understanding

Education

Bachelor’s degree in Computer Science
Certifications (GCFA, GCIH, CISSP)

Tools

PowerShell
Bash
Python
Azure

Job description

Join to apply for the Cyber Cloud Forensic Analyst (CFA) SME role at Gray Tier Technologies, LLC.

Gray Tier Technologies is seeking highly motivated Network Forensics or Cloud Security Engineers for a Cloud Forensics Analyst (CFA) SME position supporting the Department of Homeland Security (DHS) Hunt and Incident Response Team (HIRT). This team secures the nation’s cyber infrastructure and responds to cyber incidents with proactive hunting and rapid incident response using advanced cybersecurity analysis capabilities.

This role offers opportunities for training and career growth in cloud forensics, with the potential to develop skills in digital forensics, incident response, and cloud security. Candidates with a cyber aptitude, a desire to learn, and a strong work ethic are encouraged to apply, regardless of specific certifications or education at the outset.

Responsibilities
  1. Acquire and collect computer artifacts (malware, user activity, link files) during onsite engagements.
  2. Triage electronic devices and assess evidentiary value.
  3. Correlate forensic findings with network events to develop intrusion narratives.
  4. Document system states (e.g., processes, network connections) prior to imaging.
  5. Perform forensic triage to determine scope, urgency, and impact.
  6. Track and document analysis from start to resolution.
  7. Collect, analyze, preserve, and present digital evidence.
  8. Coordinate with government and customer personnel to validate alerts and findings.
  9. Analyze forensic images and evidence for reports and documentation.
  10. Assist in documenting and publishing cybersecurity guidance and reports.
Required Skills and Clearances
  • U.S. Citizenship and active TS/SCI clearance.
  • Ability to obtain DHS Entry on Duty (EOD) suitability.
  • 8+ years of relevant experience in cyber forensic investigations with industry-standard tools.
  • Deep understanding of SaaS, PaaS, IaaS in cloud environments.
  • Experience creating forensically sound evidence duplicates and writing investigative reports.
  • Proficiency in analyzing cyber attacks and maintaining chain of custody procedures.
  • Knowledge of attack classes, system vulnerabilities, and proactive analysis techniques.
  • Proficiency with Linux/Unix and Windows operating systems.
Desired Skills
  • Knowledge of M365/Azure authentication strategies and threat actor targeting methods.
  • Experience with IT operations, including networking, virtualization, security, and data management.
  • Experience in digital evidence collection from onsite and cloud platforms.
  • Understanding of APIs, PowerShell, Bash, Python, and automation scripting.
  • Ability to develop tools and configurations in Azure environments.
  • Understanding of Azure/M365 security and platform protection.
Education and Certifications
  • Bachelor’s degree in Computer Science, Cybersecurity, or related fields, or equivalent experience.
  • Certifications such as GCFA, GCIH, CISSP, AWS certifications, or Microsoft Azure certifications are desirable but not mandatory; training will be provided.
Additional Details

Position level: Mid-Senior, Full-time, in Arlington, VA. Industry focus: Computer and Network Security.

Get your free, confidential resume review.
or drag and drop a PDF, DOC, DOCX, ODT, or PAGES file up to 5MB.