Cyber Forensics Analyst Lead
ECS
Key Responsibilities Lead end-to-end cyber forensic investigations, including intake, triage, scoping, evidence strategy, tasking, analysis coordination, and deliverable development. Define investigative objectives, data sources, timelines, roles, assumptions, and expected outputs for forensic activities. Ensure forensic investigations align with incident response priorities, legal and compliance requirements, organizational risk tolerance, and mission needs. Direct the collection, preservation, processing, and handling of digital evidence from endpoints, servers, cloud services, identity platforms, security tools, network devices, and other relevant sources. Ensure evidence integrity through documented chain‑of‑custody procedures, repeatable acquisition methods, secure storage, and defensible handling practices. Validate forensic acquisition approaches, tool outputs, and evidence handling procedures for completeness, accuracy, and admissibility where applicable. Oversee analysis of host artifacts, file systems, memory, logs, endpoint telemetry, malware indicators, authentication activity, network data, and other forensic evidence. Identify attack vectors, compromise timelines, persistence mechanisms, lateral movement, privilege escalation, data access, exfiltration indicators, and affected assets. Correlate forensic findings with SOC alerts, threat intelligence, SIEM data, EDR telemetry, vulnerability information, and incident response actions. Produce and review high‑quality forensic reports, investigative timelines, evidence summaries, executive summaries, and technical findings. Translate forensic evidence into clear risk, impact, and business language for technical and non‑technical audiences. Develop practical recommendations to support containment, eradication, recovery, control improvements, detection enhancements, and future prevention. Serve as the primary forensic point of contact during cybersecurity incidents, investigations, and follow‑up analysis activities. Brief SOC leadership, program leadership, system owners, legal or compliance stakeholders, and technical teams on forensic status, findings, risks, and next steps. Coordinate with SOC analysts, threat hunters, threat intelligence analysts, engineers, and other responders while maintaining disciplined investigative practices. Lead and mentor forensic analysts and contributors, including assigning tasks, reviewing work products, and supporting professional development. Review evidence, analysis methods, timelines, conclusions, and reports for accuracy, consistency, completeness, and defensibility. Support standardization of forensic playbooks, evidence checklists, reporting templates, workflows, and quality‑control practices. Maintain and improve forensic methodologies, tools, lab procedures, evidence repositories, and analysis workflows. Support lessons learned, after‑action reviews, tabletop exercises, and readiness activities that improve investigative speed and quality. Stay current with evolving attacker tradecraft, forensic artifacts, operating systems, cloud platforms, endpoint technologies, and investigative best practices. Required Skills 7+ years of experience in digital forensics, incident response, cyber investigations, SOC operations, threat analysis, or closely related cybersecurity roles. Proven experience leading formal cyber forensic investigations or incident‑response forensic workstreams. Hands‑on experience collecting, preserving, and analyzing digital evidence from enterprise systems, endpoints, logs, network sources, cloud platforms, or security tools. Strong understanding of forensic methodologies, chain of custody, evidence integrity, incident response lifecycle, and investigative documentation standards. Experience using forensic, EDR, SIEM, log analysis, or investigation tools such as EnCase, FTK, Magnet AXIOM, Autopsy/Sleuth Kit, Volatility, Velociraptor, Splunk, Sentinel, CrowdStrike, Microsoft Defender, or equivalent technologies. Excellent written and verbal communication skills, including the ability to produce defensible technical reports and brief stakeholders on findings and recommendations. Desired Skills Experience leading forensic investigations in regulated, government, critical infrastructure, law enforcement, defense, financial, or healthcare environments. Experience with Windows, Linux, cloud, identity, email, endpoint, memory, malware, and network forensics. Familiarity with cybersecurity frameworks and guidance such as NIST, MITRE ATT&CK, CIS Controls, ISO 27001, or incident response best practices. Certifications such as GCFA, GCFE, GCIH, GNFA, CISSP, CCE, EnCE, CFCE, CHFI, Security+, or equivalent. Experience briefing executives, legal counsel, compliance stakeholders, or senior technical leadership during high‑priority incidents. Experience developing forensic playbooks, training analysts, improving lab procedures, or building forensic readiness programs. ECS Federal LLC is an equal opportunity employer and does not discriminate or allow discrimination on the basis of any characteristic protected by law. All qualified applicants will receive consideration for employment without regard to disability, status as a protected veteran or any other status protected by applicable federal, state, or local jurisdiction law. #J-18808-Ljbffr ECS
- ...Position Title: Lead Cyber Forensics Analyst Location: Portland, OR | Full-Time Cybervance is a rapidly growing information security and information technology company based in Washington, D.C., and we are an equal opportunity employer. Cybervance combines...SuggestedFull time
- ...Cyber Forensics Analyst Lead Everforth ECS is seeking a Cyber Forensics Analyst Lead to work in our Portland, OR office. This position is contingent upon contract award. The Cyber Forensics Analyst Lead is responsible for leading digital forensics activities that...SuggestedContract workWork at office
- ...Cybersecurity Lead Analyst (Hybrid) Locations: Chicago, IL; Iselin, NJ; New York, NY; Portland, OR Leadership & Strategy Lead the cybersecurity team, providing mentorship, guidance, and performance management. Develop and execute the organization's cybersecurity...SuggestedWork at officeLocal area
- ...SOC Team Lead Job Locations US-OR-Portland ID 2026-4565 Category... ...Operations Center (SOC), Digital Forensics, Service Desk, Splunk Consulting, and Tools... ...role ensures integrated, high-performing cyber operations that protect the enterprise against...SuggestedFull timeFor contractors
- Cybervance is looking for a full-time Digital Forensics and Incident Response Analyst in Portland, OR. This role involves conducting computer forensic investigations, data recovery, and participating in cybersecurity incident response. The ideal candidate will have 5-10...SuggestedFull time
- Edgewaterit in Portland, Oregon is seeking a SOC Lead to oversee operations of the Security Operations Center. This role integrates cyber operations to protect against threats... ...a cyber team, and directing digital forensics efforts. Ideal candidates will have a degree...
- Edgewater Federal Solutions, Inc. is seeking a SOC Lead to oversee Security Operations Center functions in Portland, Oregon. This pivotal... ...role involves managing SOC operations, directing digital forensics, supervising service desk personnel, and ensuring compliance with...
- A global engineering and consulting firm seeks a Building Envelope Specialist in Portland, Oregon, to oversee and assess building envelope projects. Responsibilities include reviewing design documents, conducting field tests, and preparing reports. Candidates must have ...Work at office
$117.25k - $154.49k
...Senior Cyber Security Analyst As our Senior Cyber Security Analyst, you'll play a critical role in safeguarding our organization's systems, data, and people. You'll lead the design and delivery of security solutions across on-prem and Azure environments while guiding...Remote work- ...Cyber Security Analyst As a Cyber Security Analyst, your role on the team will include leveraging your knowledge of industry best practices, good judgment and problem-solving skills to execute security operations. Being on front lines of defense, the Cyber Security...Work experience placementShift workAfternoon shift
- Job Opening Job Opening ID 5615 Date Opened 07/22/2019 Job Type Contract Language Skills English Location 12 Months Industry Technology City Portland State/Province Oregon Country United States Zip/Postal Code 97204 Job Description Your...Contract work
$112k - $134k
JT4 is seeking a Cyber Security Analyst for an onsite position at Edwards AFB in California. Responsibilities Risk Assessment and Management Identify potential vulnerabilities and threats to an organization’s network and systems. Conduct regular risk assessments and audits...Contract workWork experience placementImmediate start$112k - $134k
JT4 is looking for a Cyber Security Analyst for an onsite position in California. The role involves identifying vulnerabilities, conducting risk assessments, and implementing security measures. Candidates should have a bachelor's degree and relevant experience in cybersecurity...$26 - $32 per hour
...strive to provide a great experience for our guests and employees. Laughing Planet is currently looking for an experienced Store Lead at the Gabriel Park location. The ideal candidate should: • Be competent and efficient • Have a strong understanding of cost...Hourly payWeekend workAfternoon shift- Apple Inc. in Beaverton, Oregon is seeking a seasoned leader to shape the security direction of its products. The successful candidate will define architecture and oversee the operation of distributed web services that enforce security policy for Apple products. Responsibilities...
$104k - $156k
...privilege, and improving visibility ~ Participate in incident response and endpointrelated investigations in partnership with Cyber teams ~ Continuously improve endpoint security posture using metrics, telemetry, and risk insights Mi nimum...Remote work- WorkSource Oregon is seeking a Bilingual Mandarin Lab Supervisor for their Beaverton, Oregon location. This role involves team leadership, ensuring lab compliance with safety protocols, and translating technical protocols for effective communication. The ideal candidate...
- Honey Bucket is looking for a Route Supervisor to lead our team of route drivers in Tualatin, Oregon. This role is vital for ensuring that we provide top-tier portable sanitation services while mentoring and developing our staff. As a Route Supervisor, you will oversee...
- AAA Cooper Transportation, Inc. is seeking a City Dispatcher for its Portland, OR office. This role involves managing shipments throughout the system and coordinating with dispatch and service center management. Ideal candidates should have a high school diploma, knowledge...Work at office
- EmergencyMD is seeking a 911 Emergency Communications Dispatch Supervisor in Vancouver, WA. This role involves supervising call takers and dispatching for police, fire, and medical services. Candidates should possess strong leadership, decision-making, and communication...
- Levy Restaurants is seeking a Concessions Supervisor in Portland, Oregon, to oversee assigned concession locations and ensure compliance with service standards. The ideal candidate will have supervisory experience in a fast-paced environment and be ready to create memorable...
$98.6k - $147.9k
Vancouver Clinic is seeking a Lab Information Systems Supervisor in Vancouver, WA. This role involves managing clinical and anatomic pathology computer systems, overseeing projects, and ensuring compliance with regulations. The ideal candidate must have an Associate’s or...- ...Description: Job Summary: The RN Team Leader assumes a lead role, in collaboration with a clinician partner, to assist in the development of a high functioning self-directed team. He/she practices and demonstrates skills that foster professional commitment of the...Work at officeLocal areaMonday to Friday
- A recruitment firm is seeking a Remote Lead Project Manager for a 12-month contract in Portland, Oregon, with a possibility of extension. The ideal candidate will have over 5 years of experience in IT project management, with a strong background in handling software and...Contract workRemote work
$52.39 - $78.06 per hour
...so much of what we do, and we look for experts in the field to lead the way. Do you have your finger on the pulse of information systems... ...serve? If so, we’d like to hear from you. This Applications Analyst III supports several non-clinical, business applications...Work at officeRemote work$120k - $150k
A cybersecurity firm is seeking an experienced Security Engineer to oversee the administration of critical security platforms in Portland, OR. The successful candidate will have a strong technical background in cybersecurity tools such as FTK and Cortex XSOAR. Responsibilities...$37 - $40 per hour
Columbia River Veterinary Specialists is hiring an Emergency Technician Supervisor (Dayshift) in Vancouver, WA. This role involves supervising technical staff and managing patient care, while also ensuring effective medical record keeping and handling financial processes...Hourly payDay shift- ...Parts Company is seeking a Production Supervisor in Portland, Oregon. This role specializes in managing production activities and leading a team to achieve quality targets. The ideal candidate should have 5-10 years of relevant experience and a high school diploma or GED...
$18.77 - $20.5 per hour
...seeking a full-time Store Supervisor to utilize management and customer service skills. In this role, you will oversee store operations, lead a team, and ensure excellent service. The position offers competitive pay of $18.77 - $20.50 per hour, alongside benefits like...Hourly payFull time- The Springs Living in Lake Oswego, Oregon, is seeking a Housekeeping Lead responsible for supervising the housekeeping team and maintaining high standards of cleanliness. In this role, you'll oversee inventory management, scheduling, and ensure exceptional service to residents...
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Cyber Forensics Analyst Lead. Be the first to apply!
- information security consultant Portland, OR
- cyber security analyst Portland, OR
- cyber Portland, OR
- forensic engineer Portland, OR
- forensic consultant Portland, OR
- forensic analyst Portland, OR
- forensic science Portland, OR
- forensic photographer Portland, OR
- forensic psychiatrist Portland, OR
- forensic accounting analyst Portland, OR


