Digital Forensics Analyst

Gunnison Consulting Group

Alexandria (VA)

Hybrid

USD 125,000 - 145,000

Full time

44 hours ago
Be an early applicant

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

Personal Leave
11 Holidays
Flexible Time Off
401(k) Match
Medical Insurance
Life Insurance
Transit Subsidies
Training Allowance

Job summary

Gunnison Consulting Group in Alexandria, VA is seeking a skilled digital forensics investigator to support cybersecurity incident response and threat analysis. The role combines on-site work 2-3 days per week with hybrid flexibility, initially requiring full-time on-site presence for the first 30 days.

You will perform advanced forensic analysis, threat hunting, and incident response, leveraging EnCase and industry tools, with opportunities for SOP development and career advancement.

Qualifications

  • US citizenship required.
  • 5+ years digital forensics experience (Windows, Linux, macOS).
  • Experience with disk duplication, mobile forensics, malware analysis, and forensic toolsets.
  • Experience with AWS, Azure, M365.
  • Ability to investigate Virtual Machines, Cloud Trail, IAM logs.
  • Ability to utilize state-of-the-art technologies such as EDR, SIEM, and full packet capture to perform hunt and investigative activity to examine endpoint and network-based activity.

Responsibilities

  • Perform network and media digital forensic investigations to support cybersecurity incident response, threat analysis, and enterprise security operations.
  • Conduct advanced threat hunting activities across enterprise infrastructure to identify malicious activity, indicators of compromise (IOCs), and persistent threats.
  • Utilize industry-standard forensic, malware analysis, and incident response tools, techniques, and procedures to investigate cybersecurity events and security incidents.
  • Analyze malware, suspicious files, network traffic, and compromised systems to determine attack vectors, scope of compromise, and remediation recommendations.
  • Execute proactive defense activities through IOC sweeps, host interrogation, and continuous threat hunting across systems operated by and on behalf of the organization.
  • Prepare detailed forensic and incident response reports documenting investigative findings, technical analysis, root cause, remediation actions, and lessons learned.
  • Develop and enhance forensic processes, detection capabilities, scripts, automation tools, and security content to improve investigative efficiency and threat detection.
  • Coordinate and support insider threat investigations by collecting, analyzing, and preserving digital evidence in accordance with organizational and legal requirements.

Skills

Digital forensics
Incident response
Threat hunting
AWS
Azure
M365
EDR
SIEM
VM forensics

Tools

EnCase
Disk duplication tools

Job description

Description

* This position is contingent upon a future opening with Gunnison.

Salary: $125,000-$145,000

Work location: Hybrid, 2-3 days per week on-site in Alexandria, VA. The first 30 days of work will be full-time on-site.

  • Perform network and media digital forensic investigations to support cybersecurity incident response, threat analysis, and enterprise security operations.
  • Conduct advanced threat hunting activities across enterprise infrastructure to identify malicious activity, indicators of compromise (IOCs), and persistent threats.
  • Utilize industry-standard forensic, malware analysis, and incident response tools, techniques, and procedures to investigate cybersecurity events and security incidents.
  • Analyze malware, suspicious files, network traffic, and compromised systems to determine attack vectors, scope of compromise, and remediation recommendations.
  • Execute proactive defense activities through IOC sweeps, host interrogation, and continuous threat hunting across systems operated by and on behalf of the organization.
  • Support enterprise incident response activities by providing forensic analysis, technical findings, and status updates in accordance with established incident response procedures and reporting timelines.
  • Develop, maintain, and update forensic analysis, malware analysis, and advanced threat hunting standard operating procedures (SOPs) and operational documentation.
  • Prepare detailed forensic and incident response reports documenting investigative findings, technical analysis, root cause, remediation actions, and lessons learned.
  • Develop and enhance forensic processes, detection capabilities, scripts, automation tools, and security content to improve investigative efficiency and threat detection.
  • Coordinate and support insider threat investigations by collecting, analyzing, and preserving digital evidence in accordance with organizational and legal requirements.
  • Produce recurring technical status reports and communicate investigative progress, trends, and risks to cybersecurity leadership and stakeholders.
  • Collaborate with security operations, incident response, and cybersecurity engineering teams to strengthen enterprise detection, response, and defensive capabilities.
Requirements
  • US Citizenship required
  • 5+ years digital forensics experience (Windows, Linux, macOS)
  • Experience with disk duplication, mobile forensics, malware analysis, and forensic toolsets
  • Experience with AWS, Azure, M365
  • Ability to investigate Virtual Machines, Cloud Trail, IAM logs
  • Ability to utilize state-of-the‑art technologies such as EDR, SIEM, and full packet capture to perform hunt and investigative activity to examine endpoint and network-based activity.
Clearance Requirement:

Ability to obtain and maintain a Public Trust.

Desired Qualifications:
  • GCIH, GCFA, GCFE, GREM, GISF, GXPN, GCTI, GOSI certification(s)
  • EnCase (EnCE, CFSR, ENCEP) certification(s)

The salary range for this position depends upon multiple factors including location, the individual's knowledge, skills, competencies, and experience, and contract‑specific budget constraints and organizational requirements. Gunnison Consulting Group's total compensation package also includes bonus and profit‑sharing opportunities, depending on company and employee performance. Available employee benefits include:

  • 3 weeks of Personal Leave your first year
  • 11 paid Holidays each year
  • 5 days of Flexible Time Off each year for approved training or certifications (self‑study is ineligible)
  • 401(k) company match at 50% up to 10% of your salary
  • Medical, Dental and Vision Insurance
  • Life and Disability Insurance
  • Public Transportation Subsidies
  • Certifications and Training Allowance - Up To $5,000/year!
Why Join Gunnison?
  • Gunnison takes on ambitious projects. We target fun, challenging work that requires creative thinking and innovation.
  • Quality is our top priority.
  • Gunnison employee benefits meet or exceed what other companies in the Washington, D.C. metropolitan area offer.
  • There is a great sense of camaraderie at Gunnison. This is an atmosphere we will maintain as we continue to grow.
  • We are growing rapidly and the opportunity for individual professional growth with Gunnison is outstanding.
  • We hire for careers at Gunnison, not to fill a position.

Equal Opportunity/Affirmative Action Employer. Must be eligible for employment in the United States. We are unable to sponsor candidates at this time. In 1994 Gunnison began serving the greater Washington, D.C. metro area, focused on tackling our customers' most ambitious technology projects. By creating a culture dedicated to enabling our customers and employees to achieve more than they ever thought they could, the company has thrived for over 25 years.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Digital Forensics Analyst
Digital Forensics Analyst

Socket.dev • Alexandria (VA)

Hybrid
USD 125,000 - 145,000
3 weeks Personal Leave
11 paid holidays
5 days Flexible Time Off
+5
Digital Forensics Analyst
Digital Forensics Analyst

Gunnison • Alexandria (VA)

Hybrid
USD 125,000 - 145,000
401(k) employer match
Medical, Dental & Vision
Professional development funds
+2
Cybersecurity Incident and Application Analyst
Cybersecurity Incident and Application Analyst

Gunnison Consulting Group • Bethesda (MD)

Hybrid
USD 130,000 - 145,000
3 weeks Personal Leave your first year
11 paid Holidays each year
Flexible Time Off for training/certs
+5
Lead Cybersecurity Engineer
Lead Cybersecurity Engineer

Gunnison Consulting Group • Bethesda (MD)

Hybrid
USD 145,000 - 160,000
Medical, Dental and Vision Insurance
401(k) company match
Paid Holidays
+1
Cyber Incident Management Lead
Cyber Incident Management Lead

Gunnison • Alexandria (VA)

Hybrid
USD 160,000 - 180,000
Bonus and profit-sharing
401(k) company match
Medical, Dental and Vision Insurance
+2
Cyber Incident Management Lead
Cyber Incident Management Lead

Gunnison Consulting Group • Alexandria (VA)

Hybrid
USD 160,000 - 180,000
3 weeks of Personal Leave your first y
11 paid Holidays each year
5 days of Flexible Time Off
+5
Cyber Information Assurance Specialist
Cyber Information Assurance Specialist

Socket.dev • Alexandria (VA)

Hybrid
USD 140,000 - 155,000
3 weeks Personal Leave
11 paid Holidays
5 days Flexible Time Off
+5
Lead Cybersecurity Engineer
Lead Cybersecurity Engineer

Gunnison • Bethesda (MD)

Hybrid
USD 140,000 - 190,000
3 weeks of Personal Leave
11 paid Holidays
Flexible Time Off
+5
Cybersecurity Program Manager
Cybersecurity Program Manager

Socket.dev • Alexandria (VA)

Hybrid
USD 180,000 - 210,000
3 weeks personal leave
11 paid holidays
Flexible time off
+5
Cyber Information Assurance Specialist
Cyber Information Assurance Specialist

Gunnison • Alexandria (VA)

Hybrid
USD 155,000 - 175,000
Bonus and profit-sharing opportunities
3 weeks personal leave
11 paid holidays
+2