ARSIEM logo

Host Based Systems Analyst III

ARSIEM

Arlington, VAFull-timeNo compensation foundPosted 1mo agoVerified open 4 days ago

Most applications go out cold — see where you stand first. No sign-up to start.

At a glance

Compensation
No compensation found
Location
Arlington, VA
Schedule
Full-time
Work Authorization
Not specified

Requirements

Credentials this posting asks for.

TS/SCI clearanceBachelor's degree

Job overview

ARSIEM is hiring a Host Based Systems Analyst III. ARSIEM Corporation is seeking a Host Forensics Analyst to provide front-line response for digital forensics/incident response (DFIR) and proactively hunt for malicious cyber activity. This position supports government clients in Arlington, VA, offering opportunities for growth and impact. The role involves leading forensic teams, providing technical assistance, writing in-depth reports, and analyzing cyber attacks.

Key focus areas include Assist Federal leads with overseeing and leading forensic teams at onsite engagements, Coordinate data collection/acquisition operations, and Provide technical assistance on data collection techniques and forensic investigative techniques.

Successful candidates bring Bachelor's In Computer Science Or Cybersecurity Or Computer Engineering Or Related, HS Diploma With 10+ Years Host Or Digital Forensics Experience, and 8+ Years Directly Relevant Experience In Cyber Forensic Investigations. Important skills include Data Collection/Acquisition Operations, Forensic Investigative Techniques, Writing In-Depth Reports, Peer Reviews, Quality Assurance Reviews, and Forensic Analysis. Preferred (not required): Conducting All-Source Research, EnCase, SIFT, and X-Ways.

Skills & qualifications

RequiredNice to have

Skills

Data Collection/Acquisition OperationsForensic Investigative TechniquesWriting in-Depth ReportsPeer ReviewsQuality Assurance ReviewsForensic AnalysisAnalysis and ReportingPreliminary InvestigationInventory, Examination and Comprehensive Technical Analysis of Computer Systems and Digital ArtifactsDistilling Analytic Findings Into Executive SummariesIn-Depth Technical ReportsTechnical Forensics LiaisonExplaining Investigation DetailsForensic Methodologies and ProtocolsTracking and Documenting on-Site Incident Response ActivitiesEvaluating, Extracting and Analyzing Suspected Malicious CodeCreating Forensically Sound Duplicates of Computer SystemsWriting Cyber Investigative ReportsAnalysis and Characterization of Cyber AttacksDigital Asset Collection and Preservation ProceduresChain of Custody ProtocolsIdentifying Different Classes of Attacks and Attack StagesSystem and Application Security Threats and VulnerabilitiesProactive Analysis of Systems and NetworksCreating Trust Levels of Critical ResourcesWork CollaborativelyConducting All-Source ResearchEnCaseSIFTX-WaysVolatilityWireSharkSleuth Kit/AutopsyMagnet Axiom CyberSnortSplunkArcSightLogRythmElasticCrowdstrikeMDETrellix

Qualifications

BS Computer Science, Cybersecurity, Computer Engineering or Related DegreeHS Diploma and 10+ Years of Host or Digital Forensics Experience8+ Years of Directly Relevant Experience in Cyber Forensic InvestigationsActive TS/SCI ClearanceAbility to Obtain Department of Homeland Security (DHS) Entry on Duty (EOD) SuitabilityGCFAGCFEEnCECCECFCECISSP

Full job description

About ARSIEM Corporation

At ARSIEM Corporation we are committed to fostering a proven and trusted partnership with our government clients. We provide support to multiple agencies across the United States Government. ARSIEM has an experienced workforce of qualified professionals committed to providing the best possible support.

As demand increases, ARSIEM continues to provide reliable and cutting-edge technical solutions at the best value to our clients. That means a career packed with opportunities to grow and the ability to have an impact on every client you work with.

ARSIEM is looking for a Host Forensics Analyst to provide front line response for digital forensics/incident response (DFIR) and proactively hunting for malicious cyber activity. This position will support one of our Government clients in Arlington, VA.

Responsibilities

  • Assisting Federal leads with overseeing and leading forensic teams at onsite engagements by coordinating data collection/acquisition operations
  • Providing technical assistance on data collection techniques and forensic investigative techniques to appropriate personnel when necessary
  • Writing in-depth reports, supports with peer reviews and provides quality assurance reviews for junior personnel
  • Supporting forensic analysis and mentoring/providing guidance to others on data collection, analysis and reporting in support of onsite engagements.
  • Assisting with leading and coordinating forensic teams in preliminary investigation
  • Planning, coordinating and directing the inventory, examination and comprehensive technical analysis of computer systems and digital artifacts.
  • Distilling analytic findings into executive summaries and in-depth technical reports
  • Serving as technical forensics liaison to stakeholders and explaining investigation details to include forensic methodologies and protocols
  • Tracking and documenting on-site incident response activities and providing updates to leadership throughout the engagement
  • Traveling to incident response locations in the United States, Territories & Possessions
  • Evaluating, extracting and analyzing suspected malicious code

Minimum Qualifications

  • BS Computer Science, Cybersecurity, Computer Engineering or related degree; or HS Diploma and 10+ years of host or digital forensics experience
  • 8+ years of directly relevant experience in cyber forensic investigations using leading edge technologies and industry standard forensic tools
  • Ability to create forensically sound duplicates of computer systems (forensic images)
  • Able to write cyber investigative reports documenting digital forensics findings
  • Experience with the analysis and characterization of cyber attacks
  • Experience with proper digital asset collection and preservation procedures and chain of custody protocols
  • Skilled in identifying different classes of attacks and attack stages
  • Knowledge of system and application security threats and vulnerabilities
  • Knowledgeable in proactive analysis of systems and networks, to include creating trust levels of critical resources
  • Must be able to work collaboratively across physical locations.

Preferred Qualifications

  • Proficiency with conducting all-source research.
  • GCFA, GCFE, EnCE, CCE, CFCE, CISSP
  • Experience with or knowledge of two or more of the following tools:
  • EnCase
  • SIFT
  • X-Ways
  • Volatility
  • WireShark
  • Sleuth Kit/ Autopsy
  • Magnet Axiom Cyber
  • Snort
  • Splunk or other SIEM Tools (ArcSight, LogRythm, Elastic, etc.)
  • Other EDR Tools (Crowdstrike, MDE, Trellix, Etc)

Clearance Requirement: This position requires an Active TS/SCI clearance and the ability to obtain Department of Homeland Security (DHS) Entry on Duty (EOD) Suitability.

Candidate Referral: Do you know someone who would be GREAT at this role? If you do, ARSIEM has a way for you to earn a bonus through our referral program for persons presenting NEW (not in our resume database) candidates who are successfully placed on one of our projects. The bonus for this position is $3,500, and the referrer is eligible to receive the sum for any applicant we place within 12 months of referral. The bonus is paid after the referred employee reaches 6 months of employment.

ARSIEM is proud to be an Equal Opportunity and Affirmative Action Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability or veteran status, age, or any other federally protected class.

You've read the whole posting — now see how you match it.