Cyber Defense Forensics Lead - Incident Response

Gritter Francona

Ashburn (VA)

On-site

USD 160,000 - 230,000

Full time

14 days+
Application generator

An application made for this job — a tailored resume and cover letter that speak straight to the posting.

Get past ATS filters

Benefits offered by this job

Health care
Retirement plan
Life insurance
PTO
Disability
Training

Job summary

Gritter Francona is seeking a Cyber Defense Forensics Lead to guide a team of expert analysts in conducting digital forensic investigations and insider threat monitoring for CBP. The role demands deep technical expertise in forensic tools, incident response, and the ability to drive complex investigations end-to-end.

The ideal candidate has extensive experience in host-based and network-based security monitoring, SIEM platforms, and malware analysis, with a proven track record of documenting

Qualifications

  • 7+ years of professional experience with incident response, insider threat investigations, and forensics.
  • 5+ years hands-on experience with host-based and network-based security monitoring, forensic tools, SIEM platforms, and endpoint threat detection.
  • Experience collecting data, reporting results, and handling escalation of security issues.
  • Proven ability to create insider threat dashboards, reports and workflow diagrams.

Responsibilities

  • Lead the CDF team in supporting insider threat operations, monitoring Data Loss Prevention (DLP) solutions, and investigating policy violations.
  • Direct enterprise and endpoint digital forensic analysis on Windows, Linux, Mac, and cloud systems in support of investigations.
  • Oversee the maintenance of the CBP SOC's forensics lab and recommend modernization of capabilities.
  • Manage the lifecycle of CDF investigations, ensuring findings are documented in formal investigation reports and cases are escalated to law enforcement when necessary.
  • Serve as SME in evidence preservation, chain of custody, and malware analysis.

Skills

Incident response
Forensics
Insider threat investigations
Data Loss Prevention
SIEM platforms
Endpoint threat detection
Malware analysis
Evidence preservation
Chain of custody

Tools

Forensic tools

Job description

Gritter Francona is seeking a Cyber Defense Forensics Lead to guide a team of expert analysts in conducting digital forensic investigations and insider threat monitoring for CBP. The role demands deep technical expertise in forensic tools, incident response, and the ability to drive complex investigations end-to-end.

The ideal candidate has extensive experience in host-based and network-based security monitoring, SIEM platforms, and malware analysis, with a proven track record of documenting

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Cyber Defense Forensics Lead
Cyber Defense Forensics Lead

Gritter Francona • Ashburn (GA)

On-site
USD 140,000 - 190,000
Health Care Plan (Medical, Dental & Vision)
Retirement Plan (401k, IRA)
Life Insurance (Basic, Voluntary & AD&D)
+3
Cyber Defense Forensics Lead
Cyber Defense Forensics Lead

Gritter Francona • Ashburn (VA)

On-site
USD 160,000 - 230,000
Health care
Retirement plan
Life insurance
+3
Lead Digital Forensics for Federal Incident Response
Lead Digital Forensics for Federal Incident Response

Agile Defense • Ashburn (GA)

Hybrid
USD 120,000 - 190,000
Health Insurance
Life Insurance
Paid Time Off
+4
Senior Cyber Defense Lead - Incident Response & Forensics
Senior Cyber Defense Lead - Incident Response & Forensics

Patriot Talent Solutions • United States

On-site
USD 120,000 - 190,000
Cyber Threat Hunt Lead
Cyber Threat Hunt Lead

Gritter Francona • Ashburn (GA)

On-site
USD 100,000 - 140,000
Health Care Plan (Medical, Dental & Vision)
Retirement Plan (401k, IRA)
Life Insurance (Basic, Voluntary & AD&D)
+3
Senior Digital Forensics Lead - Hybrid Incident Response
Senior Digital Forensics Lead - Hybrid Incident Response

Agile Defense • Ashburn (VA)

Hybrid
USD 120,000 - 180,000
Health Insurance
Life Insurance
Paid Time Off
+4
Incident Response and Forensics Lead
Incident Response and Forensics Lead

ClearFocus Technologies • Germantown (MD)

On-site
USD 125,000 - 155,000
Medical insurance
Dental insurance
Vision insurance
+3
Digital Forensic / Incident Response - Lead
Digital Forensic / Incident Response - Lead

AntietamTechnologies • Maryland

Hybrid
USD 180,000 - 240,000
Insider Threat & Digital Forensics Analyst
Insider Threat & Digital Forensics Analyst

Leidos Inc • Ashburn (VA)

On-site
USD 107,000 - 196,000
Host Forensics Analyst
Host Forensics Analyst

NewGen Technologies • Arlington (VA)

Hybrid
USD 120,000 - 180,000