
Forensic Analyst I
Posted 6 days ago

Posted 6 days ago
This is a fully remote position, open to applicants in Virginia.
⢠Operates at a mid-level by applying industry-standard digital forensic principles to acquire, collect, preserve, and process both structured and unstructured data according to established best practices and laboratory protocols.
⢠Responsible for managing digital forensic examinations through various phases including data acquisition, examination, presentation, and disposition.
⢠Provides support for identification and seizure, forensic data acquisition/imaging, and the forensically-sound and non-forensic collection/capture of electronically stored information (ESI) from diverse file structures and sources such as Windows and MAC-based desktop/laptop systems, file share servers, cloud-based storage, mobile devices, and tablets (Android, iOS, Windows, and Blackberry operating systems), as well as related digital storage media.
⢠Utilizes knowledge and experience with a limited range of computer and mobile technologies and forensic theories to conduct partial forensic examinations, which include processing allocated space, scripted recovery of deleted files, and conducting Internet history analyses aimed at developing forensically sound evidence.
⢠Responsible for executing medium-scale digital forensic examinations, including the collection of file shares in a live client-server environment using validated forensic software.
⢠Recovers data and correlates information, prepares clear and detailed notes and reports of findings, and communicates orally and in writing with legal staff regarding examination results, including legal declarations for investigations and litigations.
⢠Utilizes industry-accepted forensic and non-forensic tools such as EnCase, FTK, Harvester, Cellebrite UFED, and NUIX.
⢠Conducts research and maintains proficiency in relevant tools, techniques, and trends.
⢠As a seasoned digital forensics examiner, serves as a source of technical counsel and advice for junior analysts and technicians, and is capable of leading forensic investigations in the field.
⢠Reviews and approves reports, notes, and case files submitted by junior technicians.
⢠Collaborates with other forensic analysts and technicians, law enforcement officers, and legal experts to recommend effective methods and procedures for the recovery, preservation, and presentation of computer evidence.
⢠Provides technical guidance and assistance to legal staff while ensuring that appropriate precautions are taken to preserve electronic evidence and prevent spoliation.
⢠Adheres to standards, policies, and procedures established for the forensics laboratory, including accreditation requirements, supplements, criteria, and interpretations as they relate to digital evidence.
⢠Ability to obtain and maintain a U.S. Government Public Trust clearance prior to employment (candidates are not required to have clearance at the time of application).
⢠Authorized to work in the United States.
⢠Ability to work efficiently in a fully remote environment.
⢠An undergraduate degree in Digital Forensic Science, Computer Science/Engineering, Computer Information Systems, Mathematics, Criminal Justice, or a related field, along with 4 to 7 years of current digital forensics collection and processing experience is required; alternatively, the Contracting Officer may accept 5 years of current industry-related Digital Forensics experience in lieu of a degree.
⢠Must possess and maintain at least one of the following certifications: CompTIA⢠A+, CompTIA⢠Network+, CompTIA⢠Server+ certification; or IACIS® Certified Forensic Computer Examiner (CFCE), ISFCE Certified Computer Examiner (CCE), or a similar non-vendor-specific certification; or EnCase® Certified Examiner (EnCE), AccessData Certified Examiner (ACE), Cellebrite Certified Mobile Examiner (CCME), or a similar vendor-specific certification.
⢠Must have experience in forensic collections and processing across Windows and Mac operating systems, as well as related hardware and software architectures (e.g., computers, mobile devices, file share servers).
⢠Must demonstrate mid-level experience in utilizing forensic tools such as EnCase® Forensic and Enterprise Editions, Forensic Toolkit®, NUIX Investigator, Cellebrite UFED, etc., and be able to articulate in detail the processes being executed by these tools.
⢠Must possess knowledge of LAN/WAN/MAN network environments.
⢠Must demonstrate experience in dead box, live, and hybrid data acquisition methodologies.
⢠Must have experience with the automated reconstruction of a RAID array.
⢠Must have experience processing medium data volumes.
⢠Must demonstrate a working knowledge of and ability to apply the Federal Rules of Evidence (FRE) as they pertain to electronic evidence, along with experience applying these rules within the context of investigations or litigations.
⢠Must show experience in preparing affidavits and declarations.
⢠Must exhibit the ability to multitask and manage several projects simultaneously.
⢠Moderate travel is required.
⢠Health, Dental, and Vision coverage
⢠401(k) plan
⢠Tuition Reimbursement
⢠Flexible Spending Account (FSA)
⢠11 Paid Federal Holidays
⢠3 weeks of Paid Time Off
Promutuel Assurance
Fastly
WashU IT
Husch Blackwell
Get handpicked remote jobs straight to your inbox weekly.