Simplify Logo

Full-Time

Cyber Security Forensics Analyst

Confirmed live in the last 24 hours

ManTech

ManTech

5,001-10,000 employees

Provides technology solutions for government agencies

Consulting
Cybersecurity
Defense
Government & Public Sector

Expert

Reston, VA, USA

Must be a U.S. citizen.

US Citizenship, US Top Secret Clearance Required

Category
Cybersecurity
IT & Security
Required Skills
Splunk
Linux/Unix
Requirements
  • An 8570 compliant certifications in IAT Level III
  • One of the following relevant certifications: GIAC Certified Forensic Analyst (GCFA), Certified Information Systems Security Professional (CISSP), or Certified Cyber Forensics Professional (CCFP)
  • A bachelor’s degree in computer science, engineering, information technology, cybersecurity, or related field of study
  • A minimum of (9) nine years of progressively responsible experience in cyber security, incident response, or forensic investigations including malware analysis
  • Knowledge and experience with Threat Intel Frameworks (e.g. Cyber Kill Chain, MITRE ATT&CK, Diamond Model)
  • Demonstrated experience using EnCase, FTK, and Open-Source methods and tools to perform Computer forensic investigations
  • Experience with Splunk, CrowdStrike Falcon, Security Onion, EnCase, Axiom, FTK, Volatility, or Suricata
  • Proficient with Windows and Linux operating systems
  • Experience with network topologies and network security devices (e.g. Firewall, IDS/IPS, Proxy, DNS, WAF, etc).
Responsibilities
  • Lead and conduct complex digital forensics investigations, including data recovery, analysis, and reporting.
  • Utilize the MITRE ATT&CK framework and other techniques to identify, assess, and address cyber threats and vulnerabilities.
  • Apply the MITRE D3FEND framework to develop and implement defensive measures against cyber threats.
  • Collaborate with other cybersecurity professionals, law enforcement agencies, and intelligence organizations to share information and coordinate response efforts.
  • Conduct technical analysis against target systems and networks, identify vulnerabilities, and support the development of new exploitation techniques.
  • Analyze cyber activities to identify entities of interest, determine malicious behavior, and recognize patterns and linkages.
  • Conduct dynamic malware analysis and performing memory and dead-box forensics.
  • Investigate computer and information security incidents to determine the extent of compromise to information and automated information systems.
  • Perform long-term and time-sensitive in-depth technical analysis of malicious code (malware), developing defensive countermeasures, and producing reports for dissemination.
  • Using static and dynamic methodologies for malware analysis, such as debuggers, disassemblers, and sandbox execution.
  • Write forensics and incident response reports, investigate computer attacks, and extract data from electronic systems.
  • Perform technical analysis on suspicious or unknown activities.
  • Draft and brief contract and government leadership, as needed.
  • Collaborate with the Splunk team to implement, enhance, or change existing use cases.
  • Assess scope of malware campaigns and determine necessary remediation actions.
  • Conduct remote compromise assessments and producing assessment reports.
  • Develop and maintain standard operating procedures (SOPs) and rules of engagement (ROE) templates.
  • Cross-train and mentor other forensic analysts and staff on analysis, tools, and reporting.

ManTech International Corporation provides advanced technological solutions and services to U.S. government agencies, including defense, intelligence, and federal civilian sectors. The company offers a variety of services such as cybersecurity, data analytics, enterprise IT, logistics, and systems engineering, which are essential for national security and operational efficiency. ManTech's products work by securing long-term contracts with government entities, allowing them to deliver specialized services that meet the unique needs of these agencies. Unlike many competitors, ManTech focuses exclusively on government contracts, ensuring a deep understanding of the specific requirements and challenges faced by these organizations. The company's goal is to enhance national security and operational effectiveness through its technological offerings while also investing in the development of its workforce.

Company Stage

Acquired

Total Funding

N/A

Headquarters

Herndon, Virginia

Founded

N/A

Simplify Jobs

Simplify's Take

What believers are saying

  • ManTech's strategic appointments, such as the new Chief Acceleration Officer and AI Technical Fellow, indicate a strong commitment to innovation and operational excellence.
  • Securing significant contracts like the $110M USAF award and $166M DHA contract showcases ManTech's robust market position and potential for continued growth.
  • The company's investment in employee development, including tuition-free advanced analytics degrees, enhances workforce skills and ensures long-term competitiveness.

What critics are saying

  • ManTech's heavy reliance on government contracts could pose a risk if there are changes in government spending or policy priorities.
  • The highly specialized nature of ManTech's services may limit its ability to diversify into other markets, potentially impacting growth opportunities.

What makes ManTech unique

  • ManTech's focus on providing advanced technological solutions specifically for U.S. government agencies, including defense, intelligence, and federal civilian sectors, sets it apart from competitors who may serve a broader market.
  • The company's strong emphasis on cybersecurity, data analytics, and AI-driven solutions ensures it remains at the forefront of technological advancements critical for national security.
  • ManTech's long-term, high-value government contracts provide a stable and predictable revenue stream, unlike competitors who may rely on more volatile commercial markets.