Cyber / Digital Forensic Analyst
AntietamTechnologies
Job Description
Job Description
Incident Response & Digital Forensics Lead
Work arrangement: Hybrid (1-2 days a week onsite)
Location: Germantown, Maryland
Employment type: Full-Time
Clearance requirement: Top Secret/RD
Position Overview
We are seeking an experienced Incident Response & Digital Forensics Lead to manage the day-to-day operations of a cybersecurity response team while remaining actively involved in technical investigations.
This is a hands-on leadership role supporting a federal customer. The successful candidate will lead incident response and digital forensic activities, coordinate directly with customer stakeholders, and translate complex findings into clear briefings and recommendations for senior federal leadership.
The role also provides technical support across cloud security, endpoint security, identity and access management, secure networking, and incident response. The ideal candidate has strong incident handling and forensic investigation experience, combined with the organizational and stakeholder-management skills of a mid-level project or program manager. This position requires some on-site work.
Key Responsibilities
- Manage the team’s daily operations, priorities, workload, assignments, and deliverables.
- Lead and participate directly in cyber incident investigations, forensic examinations, analysis, containment, eradication, and recovery activities.
- Coordinate incident response functions across technical teams, business stakeholders, vendors, and customer leadership.
- Serve as a primary point of contact for the customer during active incidents and related investigative activities.
- Prepare and deliver incident briefings, executive summaries, technical findings, status reports, and recommended courses of action to senior federal leadership.
- Collect, preserve, document, and analyze intrusion artifacts, including malware, malicious code, scripts, executables, logs, system images, and network evidence.
- Use investigative findings and threat intelligence to support containment, mitigation, remediation, and prevention of cyber defense incidents across the enterprise.
- Provide expert technical guidance to enterprise cyber defense analysts, engineers, administrators, and technicians working to resolve security incidents.
- Conduct or oversee forensic acquisition and analysis of endpoints, servers, mobile devices, cloud environments, and other relevant digital evidence.
- Maintain evidentiary integrity, chain-of-custody records, investigation notes, timelines, and other case documentation.
- Monitor relevant external information sources, including cybersecurity vendors, government advisories, Computer Emergency Response Teams, information-sharing organizations, and threat-intelligence providers.
- Assess emerging vulnerabilities, threats, tactics, techniques, and procedures for potential impact on the customer environment.
- Develop and improve incident response plans, playbooks, escalation procedures, forensic processes, reporting templates, and operational metrics.
- Coordinate lessons-learned reviews and ensure corrective actions are documented, assigned, and tracked through completion.
- Support technical cybersecurity activities involving cloud platforms, endpoint protection, identity and access management, network security, logging, and monitoring.
- Mentor team members and promote consistent investigative, technical, and documentation standards.
- Support incident response exercises, tabletop exercises, readiness assessments, and after-action reviews.
Required Qualifications
- Demonstrated professional experience in cybersecurity incident response, incident handling, and digital forensic investigations.
- Experience leading or coordinating a cybersecurity operations, incident response, or forensic investigation team.
- Ability and willingness to perform hands-on technical work while managing team operations and customer deliverables.
- Experience collecting, preserving, analyzing, and documenting digital evidence and intrusion artifacts.
- Working knowledge of Windows and Linux operating systems, enterprise networks, endpoint technologies, cloud environments, authentication systems, and security logging.
- Familiarity with common attacker tactics, techniques, and procedures, including the phases of an intrusion and methods used to establish persistence, evade detection, and exfiltrate data.
- Ability to assess technical evidence, determine incident scope and impact, and recommend appropriate containment and remediation measures.
- Strong written and verbal communication skills, including the ability to explain complex technical findings to executives and nontechnical stakeholders.
- Experience preparing formal incident reports, executive briefings, investigation summaries, and corrective-action recommendations.
- Strong organizational, project-management, and stakeholder-coordination skills.
- Ability to manage competing priorities and operate calmly and effectively during high-severity incidents.
- Ability to work on-site at the designated customer location.
- Ability to satisfy applicable federal customer suitability, background investigation, and clearance requirements.
Preferred Qualifications:
- GIAC Certified Forensic Examiner (GCFE)
- GIAC Certified Incident Handler (GCIH)
- CompTIA Cybersecurity Analyst (CySA+)
- GIAC Certified Forensic Analyst (GCFA)
- GIAC Network Forensic Analyst (GNFA)
- Certified Information Systems Security Professional (CISSP)
- Hands-on experience with forensic and investigative tools such as Magnet AXIOM, Magnet Graykey, OpenText EnCase, and Cellebrite.
- Experience performing mobile-device acquisition and forensic analysis.
- Experience supporting federal agencies or other regulated, high-security environments.
- Familiarity with NIST incident response guidance and the MITRE ATT&CK framework.
- Experience with endpoint detection and response, security information and event management, cloud-security, network-analysis, malware-analysis, or threat-intelligence platforms.
- Experience managing projects, schedules, risks, customer communications, and multidisciplinary technical teams.
- Knowledge of legal, regulatory, privacy, and evidentiary considerations associated with forensic investigations.
Education and Experience
- Bachelor’s degree in cybersecurity, computer science, information technology, digital forensics, engineering, or a related field; equivalent relevant experience may be considered.
- 5+ years of cybersecurity experience, including substantial experience in incident response or digital forensics.
- Prior technical leadership, team-lead, project-management, or program-coordination experience.
Success in This Role
The successful candidate will be a credible technical investigator, a steady incident leader, and an effective customer-facing communicator. This individual must be comfortable moving between detailed forensic analysis, team coordination, and executive-level reporting—often during time-sensitive and high-impact events.
Additional Information
This role may require participation in an on-call rotation and work outside normal business hours during significant cyber incidents. Any travel, scheduling, citizenship, clearance, or other customer-specific requirements will be communicated during the recruiting process.
Antietam Technologies Inc. is an equal opportunity employer. Employment decisions are made without regard to legally protected characteristics and in accordance with applicable law.
\nCompany DescriptionAntietam Technologies Inc. is a Small Service-Disabled Veteran owned company and an Equal Opportunity Employer (EEO). Antietam has been providing Cyber Security solutions and specialized skills to our customers since 2004 and pride ourselves on mission excellence. That excellence is reflected through our commitment to our employee's professional growth and advancement which translates to the highest quality service to our customers.
Company Description
Antietam Technologies Inc. is a Small Service-Disabled Veteran owned company and an Equal Opportunity Employer (EEO). Antietam has been providing Cyber Security solutions and specialized skills to our customers since 2004 and pride ourselves on mission excellence. That excellence is reflected through our commitment to our employee's professional growth and advancement which translates to the highest quality service to our customers.
- ...command enterprise response to material cyber incidents across cloud, on‑premises, and... ...criteria, and crisis management handoffs. Forensics evidence handling: Coordinate preservation... ...collection, preservation and analysis of digital evidence and chain of custody; timeline reconstruction...CyberHourly payFull timeTemporary workWork at officeFlexible hours3 days per week
$3,000 per month
...referral is hired, you'll receive a $3,000 payment! code-extrefer WHAT WE’RE DOING Lockheed Martin, Rotary Mission Systems Cyber & Intelligence invites you to step up to one of today’s most daunting challenges: the use of advanced electronics to undermine our way...Cyber- DescriptionTier 3 Cybersecurity Analyst Location: Rockville, MD Position OverviewThe Tier... ..., incident response, threat hunting, and forensic analysis. This role operates at the core... ...identify, analyze, and mitigate sophisticated cyber threats impacting Agency systems.Salary $...Cyber
- ...resolution of errors. Ensures all software is patched and meets cyber security requirements. Provides phone as well as email... ...the following title are encourage to apply: Sr. Mainframe Systems Analyst (COBOL/JCL/DB2); Mainframe Programmer; Systems Analyst;...CyberContract work
$112k - $179k
...Systems Administrator Job Locations US-MD-Gaithersburg Requisition ID 2026-162587 Position Category Cyber Security Clearance Top Secret Responsibilities This is an on-site position in Gaithersburg, MD. Peraton is...CyberContract workShift work$154.05k - $278.48k
Leidos Intel Sector combines technology-enabled services and mission software capabilities in the areas of cyber, logistics, security operations, and decision analytics to support our defense and intel customers’ mission to defend against evolving threats around the world...CyberFull timeContract workFor contractors$115k - $160k
...comprehensive IT services tailored to meet the needs of federal agencies. Our capabilities include IT Infrastructure & Cloud Services, Cyber Security, Software Integration & Development, Data Solution & AI, and Enterprise Applications. These capabilities are backed by...CyberFull timePart timeWork experience placement$135k - $216k
...documentation Diagnose, troubleshoot, and resolve complex technical issues across existing application environments, including response to Cyber security alerts affecting IIS and web servers Produce clear, concise, and accurate technical documentation throughout all phases...CyberContract workShift work$141.92k - $212.89k
...in the financial sector? As a Senior Principal Risk Specialist, Cyber Engagements, you'll play a pivotal role in strengthening the... ...Finance, Economics, Business Administration, Cybersecurity, Computer Forensics, Data Analytics, or related fieldsAdvanced degree or...CyberFull timeTemporary workFor contractorsFor subcontractorLocal areaImmediate start$111.5k - $207.5k
...Degree in Computer Science (or related field) and 4 years of experience or Master's. In lieu of a degree, 8 years of experience in cyber security and software engineering Experience supporting regulated or mission-critical environments. Experience with mobile application...CyberLocal areaFlexible hours- ...functionality that satisfies the needs of the business. Responsible for planning, designing, testing, and implementing and maintaining the cyber-security for our Cloud and web applications. Analyze problems and implement solutions that trade off architectural constraints of...Cyber1 day per week
$75 - $85 per hour
...access, modification, or loss. This role requires expertise in cyber security, email platforms, cloud environments, and data protection... ...and agree that your application may be reviewed using AI tools.Job SummaryJob number: JP-006179642Profession: Security Analyst/EngineerCyberContract workTemporary work- ...thrives here. Summary: The Senior Cyber Threat Analyst will lead efforts to investigate... ...incident response, threat hunting, and forensics. The Senior Cyber Threat Analyst will... ...threat analysts in incident response and digital forensics methodologies....CyberRemote workFlexible hours
- ...company providing lifecycle IT, data analytics, cloud managed hosting services, agile software development, DevOps, Test Automation, Cyber Security, and infrastructure solutions. Additionally, we provide Professional Talent Acquisition Services as we proudly support the...CyberContract workFor contractorsLocal area
- ...limited to: - Implement cybersecurity standards consistent with NIST 800-53 Rev. 5 and NIH/HHS policies. - Conduct continuous cyber risk assessments. - Deploy privacy-preserving computation methods. - Coordinate NIST 800-53 control implementation with the...Cyber
$91.6k - $153k
...Support, Engineering & Analysis, and Training. Linux Administrator Location: US-MD-Gaithersburg ID Job ID: 2025-3641 Category IT / Cyber Security / Network Systems Position Type Full-Time Remote: No Clearance Required Secret Overview AMERICAN SYSTEMS is an employee-...CyberFull timeFor contractorsRemote work$154.05k - $278.48k
...the DOMEX Technology Platform (DTP) contract supporting National Digital Exploitation & OSINT Center systems. Have impact as part of a... ...complex hardware and software systems Experience managing a team of Cyber Security Engineers (CSEs) and Information System Security...CyberContract workLocal areaImmediate startRemote workFlexible hours$245.5k - $393k
...Type Regular Job Description Position Summary The Space, Cyber and Directed Energy Segment Vice President of Engineering serves... ...segment. · Support implementation of common engineering frameworks, digital engineering approaches, model-based systems engineering, and...CyberPermanent employmentFull timeContract workWork experience placement$107.9k - $195.05k
...mission software capabilities in the areas of cyber, logistics, security operations, and... ...protect people and critical assets. Geospatial Analyst Solutions Directorate, part of the... ...commercial customers with smarter, more efficient digital and mission innovations. Headquartered in...CyberContract workLocal areaImmediate start- ...mission objectives. WHO WE ARE At Lockheed Martin, we're a leading aerospace and defense company that's shaping the future of cyber and intelligence. We're committed to innovating at the Edge: Harnessing the latest advancements in cyber, artificial intelligence...Cyber
- ...Knowledge of Zero trust, zone-based architecture, defense in depth, SASE, SSE, and micro-segmentation * Strong expertise of IT risks, cyber security, Cloud components, Routing Protocols, Security protocols and tools. * Familiarity with Identity solutions, CI/CD tools,...CyberRemote workFlexible hours
- ...services, workforce solutions, and digital solutions. We are... ...Management teams, including A&A Analysts, A&A Specialists, A&A SMEs, A... ...Management Engineers to deliver the cyber authorization services. A... ...in incident response and forensic analysis. Ability to adapt...CyberFull timeContract workTemporary workFor contractorsWork at officeImmediate startHome officeFlexible hoursShift work
- ...enabled services and mission software capabilities in the areas of cyber, logistics, security operations, and decision analytics to... ...Senior Systems Engineer for the Chinook Program on the Advanced Analyst Augmentation Analytical Cloud Enablement System (4ACES) team. The...CyberContract workWorldwide
- ...Grad roles, this workshop is designed to enhance your interview preparation for a diverse range of positions, including Business Analyst, Cyber, Data Analyst, Finance, Management, MBA, and Product roles. Join us for a session of interview preparation to support your...CyberRemote job
$155k
...DISH TV, Sling TV, Boost Infinite, Boost Mobile, DISH Wireless, OnTech and GenMobile.Job Duties and ResponsibilitiesSr HRIS Systems Analyst sought by Hughes Network Systems LLC. in Germantown, MD.Process employee data, including auditing records and compliance with...- ActioNet, Inc. is seeking a Tier 3 Cybersecurity Analyst to serve as a senior technical leader within the SOC, focusing on advanced threat detection, incident response, threat hunting, and forensic analysis for Agency systems. The role requires 8+ years in security operations...Cyber
$113k - $188k
Job Family:IT Cyber SecurityTravel Required:NoneClearance Required:Ability to Obtain Public TrustWhat You Will Do:Leads cybersecurity strategy and implementation, including risk management framework processes, control implementation, and documentation.Embeds security practices...CyberFull timeFlexible hours- ...Analytics, Economics, Finance, Risk Management, Technology (including Cyber and Software Development) and more. Join us to hear directly... ...-Workplace, culture and life at Freddie Mac -Our intern and analyst/full-time programs -Comprehensive rewards including...CyberRemote jobFull timeSummer workInternshipSummer internship
- ...Our Mission At Dobbs Defense, we deliver mission-centric IT, Cyber, and data analytics solutions for our government and commercial clients through the convergence of automation, innovation, training, and education. Delivering high-quality IT, cybersecurity, and data...CyberContract workRemote work
- ...advanced C5ISR and security solutions to enhance defense and mission capabilities, addressing threats across physical, electronic, cyber, and communications security for commercial and U.S. Government clients. Our Electronics Technicians are essential in installing, programming...CyberHourly payNight shift
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Cyber / Digital Forensic Analyst. Be the first to apply!
- cyber Germantown, MD
- digital design intern Germantown, MD
- digital strategy Germantown, MD
- digital accessibility Germantown, MD
- digital engineer Germantown, MD
- digital Germantown, MD
- digital analytics Germantown, MD
- forensic manager Germantown, MD
- forensic engineer Germantown, MD
- forensic analyst Germantown, MD


