Forensics Analyst Lead

Posted 25 Days Ago
Be an Early Applicant
Portland, OR, USA
In-Office
Senior level
Security • Cybersecurity
The Role
Responsible for conducting computer forensic investigations, data recovery, incident response, and supporting IT security policies. Requires interaction with Federal agencies and comprehensive reporting of findings.
Summary Generated by Built In



Position Title: Forensics Analyst Lead

Location:Portland, OR | Full-Time                                           

Cybervance is a rapidly growing information security and information technology company based in Washington, D.C., and we are an equal opportunity employer.

Cybervance combines advanced cybersecurity expertise with proven federal contracting experience to deliver innovated, mission-focused solutions for U.S. Government agencies. We are committed to helping our partners achieve measurable improvements in security and resilience.

We are seeking a full-time Forensics Analyst Lead who is responsible for leading the organization’s digital forensics capability, overseeing investigations related to cyber incidents, insider threats, data breaches, and legal or regulatory matters. This role provides technical leadership, investigative oversight, and expert guidance to ensure forensic activities are conducted accurately, defensibly, and in alignment with legal and regulatory requirements.

The ideal candidate combines deep forensic expertise with leadership skills, sound judgment under pressure, and the ability to communicate complex findings to technical teams, legal partners, and executive leadership.

Responsibilities

  • Lead and oversee all digital forensic investigations across endpoint, server, network, cloud, and mobile environments.
  • Establish forensic standards, methodologies, and toolsets.
  • Act as the primary escalation point for complex or high‑impact forensic cases.
  • Ensure investigations follow best practices for evidence handling and forensic integrity.
  • Support and lead forensic analysis during security incidents, including malware infections, intrusions, and data exfiltration events.
  • Conduct advanced forensic analysis to identify root cause, attacker activity, and impact.
  • Reconstruct timelines and analyze artifacts to support incident response and remediation efforts.
  • Collaborate closely with Incident Response, SOC, Threat Hunting, and Legal teams.
  • Ensure proper evidence preservation, chain of custody, and documentation.
  • Provide forensic findings to legal, compliance, HR, and regulatory stakeholders.
  • Support internal investigations, litigation, and eDiscovery processes.
  • Serve as a subject‑matter expert for forensic procedures during audits or legal proceedings.
  • Evaluate, deploy, and maintain forensic tools and technologies.
  • Improve forensic readiness through logging, data retention, and evidence collection. Strategies.
  • Develop scripts, workflows, or automation to improve forensic efficiency and consistency.
  • Lead, mentor, and train forensic analysts and incident responders.
  • Review forensic work products for quality and accuracy.
  • Contribute to training programs, tabletop exercises, and forensic playbooks.
  • Produce detailed forensic reports, timelines, and root cause analyses.
  • Translate technical findings into clear business, legal, and risk‑based narratives.
  • Brief senior leadership on incident findings, impact, and recommendations.

Required Skills & Qualifications

  • 7–10+ years of experience in digital forensics, incident response, or cybersecurity investigations.
  • Proven experience leading forensic investigations and teams.
  • Deep understanding of:
    • Endpoint, memory, disk, and network forensics
    • Malware analysis and attacker techniques
    • Evidence handling and chain‑of‑custody requirements
  • Hands‑on experience with industry‑standard forensic tools.
  • Strong written communication and technical reporting skills.

Preferred Qualifications

  • Experience with cloud and SaaS forensics (AWS, Azure, GCP, M365, Google Workspace).
  • Experience supporting legal, HR, or regulatory investigations.
  • Scripting or automation experience (Python, PowerShell, Bash).
  • Certifications such as GCFA, GCED, GCIH, CISSP, EnCE, or equivalent.
  • Experience in government, finance, healthcare, or other regulated environments.

Skills Required

  • Bachelor's degree in Cybersecurity, Computer Science, IT, or related field
  • Five to ten years of combined cybersecurity experience
  • Three to seven years in digital forensics or incident response
  • Experience leading incident investigations
Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
Kensington, , Maryland
29 Employees
Year Founded: 2019

What We Do

Cybervance has a long history of supporting USG agencies in areas related to international capacity building programs. From foreign assistance capacity building to collaboration with partner nations, Cybervance services are comprehensive and turnkey. We provide initial assessments and planning, training across multiple cyber disciplines, equipment installations, operational support and mentoring. All of Cybervance’s services are supported by insightful reporting for program stakeholders needing to stay informed about key issues in plain English, not cyber-speak. Our logistics function handles everything needed for program success, including all equipment procurements, shipping, customs and duties processing, travel, and in-country event support. Our services are tailored for international delivery. Our team is adept at making in-country, real-time adjustments to address regional and situational dynamics. We understand that cyber programming is part of a larger diplomatic mission, and we focus on achieving tangible programming results. With an extensive background in law enforcement, our team brings specialized service delivery to cyber-related programs with a criminal or counterterrorism nexus.

Similar Jobs

Optum Logo Optum

Pharmacy Manager - Community Pharmacy

Artificial Intelligence • Big Data • Healthtech • Information Technology • Machine Learning • Software • Analytics
In-Office
Bend, OR, USA
160000 Employees
113K-193K Annually

Optum Logo Optum

NP or PA, HouseCalls - Linn County, OR

Artificial Intelligence • Big Data • Healthtech • Information Technology • Machine Learning • Software • Analytics
In-Office
Albany, OR, USA
160000 Employees
40K-164K Annually

Optum Logo Optum

Hospice Registered Nurse

Artificial Intelligence • Big Data • Healthtech • Information Technology • Machine Learning • Software • Analytics
In-Office
La Grande, OR, USA
160000 Employees
37-56 Hourly

Superhuman Logo Superhuman

Manager, Commercial Sales

Artificial Intelligence • Information Technology • Machine Learning • Natural Language Processing • Productivity • Software • Generative AI
Remote or Hybrid
United States
1500 Employees
242K-335K Annually

Similar Companies Hiring

Oso Thumbnail
Software • Security • Infrastructure as a Service (IaaS)
New York, New York
36 Employees
Credal.ai Thumbnail
Software • Security • Productivity • Machine Learning • Artificial Intelligence
Brooklyn, NY
Milestone Systems Thumbnail
Artificial Intelligence • Security • Software • Analytics • Big Data Analytics
Lake Oswego, OR
1500 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account