- Gather and handle forensic evidence in accordance with Rules of Evidence
- Perform forensic analysis of digital information
- Monitor, detect, and report indicators of misuse, abuse, data spillage, insider threat, and security violations
- Identify acceptable use policy infractions
- Review event logs to determine events of interest
- Monitor for fraud, waste and abuse, inappropriate workplace content, illegal activity, productivity loss, non-compliant activity, and identity leakage involving PII
- Prepare case evidence and incident reports
- Work on special projects as assigned
- Monitor and protect classified and unclassified systems of a major Intelligence Community Agency
Requirements
- Bachelor's Degree and 8+ years of relevant experience; equivalent combinations of education, certifications, and experience will be considered
- DoD Approved Baseline 8570 IAT Level III certification required before start date, such as CASP, CISSP, or CISA
- DoD Approved Baseline 8570 CSSP Auditor certification required before start date, such as CEH, CySA, or CISA
- Must currently possess Top Secret/SCI clearance
- Ability to obtain and maintain a Polygraph
- U.S. citizenship required
- Preferred experience with Splunk, Proofpoint, Fidelis, Solera, Windows, and Linux operating systems
- Saturday and Sunday weekend day-shift work required
- Willingness to work a holiday supporting the assigned shift
- Weekend day shift: 0600–1800 Saturday and Sunday
- Less than 10% travel required
Core Competencies
Demonstrates expertise in forensic analysis and evidence handling, with a strong focus on monitoring and reporting security violations and policy infractions. Proficient in managing classified and unclassified systems within the Intelligence Community, while ensuring compliance with relevant regulations and standards.
Highest-signal resume keywords
- Forensic Analysis
- DoD Approved Baseline 8570 IAT Level III Certification
- DoD Approved Baseline 8570 CSSP Auditor Certification
- Top Secret/SCI Clearance
- Experience with Splunk
ATS Optimization Keywords
Hard Skills
- Forensic Evidence Handling
- Digital Forensic Analysis
- Event Log Review
- Fraud Detection
- Incident Reporting
- Policy Infraction Identification
- Data Spillage Monitoring
- Insider Threat Detection
- Security Violation Reporting
- PII Protection
Certifications & Qualifications
Industry Keywords
- Intelligence Community
- Rules of Evidence
- Acceptable Use Policy
- Data Leakage
- Non-Compliant Activity
Tools & Technologies
- Splunk
- Proofpoint
- Fidelis
- Solera
- Windows Operating System
- Linux Operating System