Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Cybersecurity Forensics and Malware Lead

$145k - $155k

Gunnison Consulting Group, Inc.

Job Description

Job Description

Description:

*This position is contingent upon a future opening with Gunnison.

Salary: $145,000 - $155,000/year

Work Location: Hybrid. 4 days/week on site in Washington, DC

  • Lead digital forensic and malware analysis operations in support of cybersecurity activities for the federal customer
  • Provide subject matter expertise for forensic investigations across Windows, Linux, macOS, cloud, and enterprise environments
  • Perform both static and dynamic malware analysis to identify indicators of compromise, adversary techniques, and root causes
  • Analyze forensic artifacts, memory images, endpoint data, and SIEM telemetry to detect malicious activity
  • Coordinate with incident response and triage teams to support investigation, containment, and recovery efforts
  • Conduct live forensic investigations using enterprise security tools and approved forensic platforms
  • Collect, preserve, and manage digital evidence in accordance with forensic standards and procedures
  • Produce detailed forensic and malware analysis reports documenting findings and investigative results
  • Support real-time investigations involving high-severity security incidents
  • Analyze advanced threats including ransomware, phishing campaigns, and sophisticated malware
  • Perform memory analysis and data recovery using approved forensic methodologies
  • Correlate data from endpoint, network, identity, and cloud sources to support investigations
  • Communicate findings to leadership and cybersecurity teams, ensuring timely escalation as needed
  • Review forensic deliverables for accuracy, completeness, and compliance with SLAs
  • Develop and maintain forensic SOPs, playbooks, and investigative procedures
  • Support reporting and awareness efforts by contributing forensic insights and threat trends
  • Participate in technical briefings and operational meetings
  • Drive improvements in forensic and investigative processes
  • Support onboarding, training, and knowledge transfer activities
Requirements:
  • Bachelor’s degree in Computer Science, Information Technology, or related discipline
  • Minimum of 5 years of incident response experience in a large SOC, including at least 3 years focused on digital forensics
  • At least 3 years of experience conducting disk, memory, and registry analysis using industry-standard forensic tools such as EnCase, FTK, X-Ways, and Volatility
  • Strong understanding of file systems and operating system artifacts (e.g., SRUM, Prefetch, Shellbags)
  • Familiarity with federal evidence handling requirements and chain-of-custody procedures
  • Certification required: GCFA, GREM, CFCE, or OSED

Clearance Requirement : Ability to obtain and maintain a Public Trust.

The salary range for this position depends upon multiple factors including location, the individual's knowledge, skills, competencies, and experience, and contract-specific budget constraints and organizational requirements.

Gunnison Consulting Group's total compensation package also includes bonus and profit-sharing opportunities, depending on company and employee performance. Available employee benefits include:

  • 3 weeks of Personal Leave your first year
  • 11 paid Holidays each year
  • 5 days of Flexible Time Off each year
  • 401(k) company match at 50% up to 10% of your salary
  • Medical, Dental and Vision Insurance
  • Life and Disability Insurance
  • Public Transportation Subsidies
  • Certifications and Training Allowance - Up to $5,000/year!

Why Join Gunnison?

  • Gunnison takes on ambitious projects. We target fun, challenging work that requires creative thinking and innovation.
  • Quality is our top priority.
  • Gunnison employee benefits meet or exceed what other companies in the Washington, D.C. metropolitan area offer.
  • There is a great sense of camaraderie at Gunnison. This is an atmosphere we will maintain as we continue to grow.
  • We are growing rapidly and the opportunity for individual professional growth with Gunnison is outstanding.
  • We hire for careers at Gunnison, not to fill a position.

Equal Opportunity Employer. Must be eligible for employment in the United States. We are unable to sponsor candidates at this time.

In 1994 Gunnison began serving the greater Washington, D.C. metro area, focused on tackling our customers' most ambitious technology projects . By creating a culture dedicated to enabling our customers and employees to achieve more than they ever thought they could , the company has thrived for over 25 years.

Vacancy posted 1 day ago
Similar jobs that could be interesting for youBased on the Cybersecurity Forensics and Malware Lead in Washington DC vacancy
  • NewGen Technologies is seeking a Forensic & Malware Lead for potential upcoming work in Washington, DC. This position is critical for our Partner...  ...tools. This role offers a unique opportunity to contribute to federal cybersecurity efforts. #J-18808-Ljbffr NewGen Technologies
    Suggested

    NewGen Technologies

    Washington DC
    15 hours ago
  •  ...Description Job Description cFocus Software seeks a Forensic and Malware Lead to join our program supporting the Administrative Office...  ...malicious activity and intrusion vectors. Coordinate with Cybersecurity Triage and Incident Response teams to support... 
    Suggested
    Work at office

    cFocus Software Incorporated

    Washington DC
    13 days ago
  • We are looking for a Forensic & Malware Lead for potential upcoming work. This would be part of an opportunity for our Partner to expand their footprint within a Federal IT sector. Requirements US Citizenship Ability to obtain a Public Trust Clearance GCFA, CFCE, GREM... 
    Suggested

    NewGen Technologies

    Washington DC
    15 hours ago
  •  ...technology firm in Arlington, Virginia, seeks a skilled cybersecurity professional to lead insider threat operations. Ideal candidates will have over...  ..., including 5 years in security monitoring and forensic tools, along with desirable certifications. The role involves... 
    Suggested

    Accenture

    Arlington, VA
    1 day ago
  • $164.38k - $246.58k

     ...deliver advanced security solutions, and we’re looking for a Lead Vulnerability Researcher to help us continue pushing boundaries...  ...Wireless protocols and radio signal analysis File system forensics and fault injection frameworks ~ Experience leading a team of... 
    Suggested
    Full time
    Contract work
    Local area

    Two Six Technologies

    Arlington, VA
    11 hours ago
  • A federal program contractor is seeking a Host Forensics Analyst to provide advanced technical support for cybersecurity incidents. This position requires US citizenship, TS/SCI clearance, and strong skills in cyber forensics and incident response. The candidate will oversee... 
    For contractors

    NewGen Technologies

    Arlington, VA
    3 days ago
  •  ...restoration of services. Nightwing is seeking a Senior Cybersecurity Engineer (Controls & Assessment Lead) to support this critical customer mission. The...  ...operations Background in security assessment of malware analysis platforms Experience with cloud security... 
    Contract work
    Immediate start

    Nightwing

    Arlington, VA
    12 days ago
  •  ...Lead Cyber Threat Analyst Evolver Federal is seeking a Lead...  ...strengthen the organization's cybersecurity posture. This position requires...  ...in threat analysis, malware research, and adversary emulation...  ...analysis, reverse engineering, and forensic investigations for complex... 
    Flexible hours

    Evolver Federal

    Washington DC
    3 days ago
  •  ...which require expertise in Incident Response(IR), Digital Forensics, Malware analysis, deep analysis of adversarial Tactics, Techniques...  ...traffic. Design and facilitate tabletop exercises for both cybersecurity and non-cybersecurity personnel to enhance the organization... 

    Samprasoft

    Washington DC
    15 hours ago
  •  ...Cybersecurity Lead City/Town Location Washington DC Job Code 3034 Job Description: Requires skills to assess, plan, and enact security measures to help protect an organization from security breaches and attacks on its computer networks and systems. Be able to... 

    Orbis Corporation

    Washington DC
    2 days ago
  • cFocus Software Incorporated seeks a Vulnerability Management Lead to join the program supporting the Federal Communications Commission...  ...position requires expertise in vulnerability management and cybersecurity operations. The candidate should possess a relevant bachelor's... 
    Remote work

    cFocus Software Incorporated

    Washington DC
    2 days ago
  •  ...Opportunity: IntePros Federal is seeking a Strategic Growth Lead to identify, shape, capture, and win strategic contract...  ...application development, program management, systems integration, and cybersecurity services. We believe our core values are the keys to success... 
    Contract work
    Work at office
    Remote work

    IntePros Federal

    Washington DC
    5 days ago
  • $156k - $174k

     ...Cybersecurity Lead The Cybersecurity Lead will provide the Department of the Navy Office of Administration (DON OA) – Information Technology Division (ITD) support and implement all phases of the Risk Management Framework (RMF) as defined by the Department of the Navy... 
    Temporary work
    For contractors
    Work at office
    Immediate start
    Flexible hours
    Shift work

    Integral Federal

    Washington DC
    1 day ago
  •  ...Time Description RiVidium is seeking a DevSecOps Lead to help drive secure, modern, and automated technology...  ...infrastructure automation, release management, and the integration of cybersecurity into engineering workflows. The ideal candidate is a hands-on... 
    Full time
    Part time

    Rividium Inc

    Alexandria, VA
    1 day ago
  •  ...Description RiVidium is seeking a Vulnerability Management Lead to support our planned MODES III team supporting Military Community and Family Policy (MC&FP). This role supports IT, Cybersecurity, and Data Operations - Core Operations and helps deliver mission-... 
    Full time
    Contract work
    Part time

    Rividium Inc

    Alexandria, VA
    15 hours ago
  •  ...About DMI DMI is a leading provider of digital services and technology solutions, headquartered in Tysons Corner, VA. With a focus...  ...-end managed IT services, including managed mobility, cloud, cybersecurity, network operations, and application development, DMI supports... 
    Monday to Friday

    DMI

    Washington DC
    5 days ago
  •  ...Tau Six, an agile small company delivering cutting edge cybersecurity and systems integration services to the US National Security market, has an immediate need for an IT Capabilities Integration Lead for a Department of Defense customer. In this role you have the opportunity... 
    Immediate start

    Tau Six

    Arlington, VA
    1 day ago
  •  ...Deployment Lead Method Security is dedicated to reshaping cybersecurity in an era where AI-driven threats are growing rapidly. Our mission is to defend critical institutions—such as government, defense, and key commercial sectors—against these sophisticated threats... 
    Flexible hours
    Shift work

    Method Security

    Washington DC
    4 days ago
  •  ...Cybersecurity Lead BlueWater Federal is looking for a Cybersecurity Lead to support Dept of the Navy at the Pentagon Responsibilities Ensure compliance with RMF, FISMA, and other cybersecurity requirements. Assess, remediate, mitigate, and document/track... 
    For contractors

    BlueWater Federal Solutions

    Arlington, VA
    1 day ago
  •  ...Full-Time Description RiVidium is seeking a SOC Shift Lead to support our planned MODES III team supporting Military Community and Family Policy (MC&FP). This role supports IT, Cybersecurity, and Data Operations - Core Operations and helps deliver mission-... 
    Full time
    Contract work
    Part time
    Shift work
    Night shift

    Rividium Inc

    Alexandria, VA
    15 hours ago
  •  ...Job Type Full-time Description Client Solution Architects (CSA) is currently seeking a Cybersecurity Lead to support a program onsite* in the Washington DC area. For nearly 50 years, CSA has delivered integrated technology and operational support services... 
    Full time
    Contract work
    Work at office
    Remote work

    Client Solution Architects

    Washington DC
    1 day ago
  •  ...Cybersecurity IPT Lead (ISSM3) City/Town Location Washington DC Job Code 2739 Job Description: The incumbent provides support to the Program Executive Officer for Aircraft Carriers (PEO CVN), In-Service Aircraft Carriers Program Office (PMS 312), as the Lead... 
    Work at office

    Orbis Corporation

    Washington DC
    2 days ago
  • $108.48k - $184.41k

     ...experienced Identity, Credential and Access Management (ICAM) lead to provide end to end architecture leadership and delivery oversight...  ...assessments, recommendations, and decision support related to cybersecurity and compliance • Support delivery planning, sequencing, and... 
    Full time
    Contract work
    Work experience placement
    Work at office

    ICF

    Washington DC
    4 days ago
  • $135k - $175k

    Hilco Global seeks a Manager for the Investigations & Dispute Resolution practice in Washington, D.C. This role involves leading digital forensics and cyber investigations, ensuring effective evidence collection, and analyzing complex digital data. Ideal candidates will... 

    Hilco Global

    Washington DC
    15 hours ago
  • $140k - $160k

     ...Description SkyePoint Decisions is a leading Cybersecurity Architecture and Engineering, Critical...  ...and vulnerabilities. Perform forensic analysis of hosts artifacts, network traffic...  ...potential threats. Conduct malware analysis to generate IOCs to identify... 
    Contract work
    Local area
    All shifts
    Shift work

    SkyePoint Decisions

    Beltsville, MD
    9 days ago
  • $110k - $130k

     ...Job Description Job Description SkyePoint Decisions is a leading Cybersecurity Architecture and Engineering, Critical Infrastructure and Operations, and Applications Development and Maintenance IT service provider headquartered in Dulles, Virginia with operations... 
    Contract work
    Remote work

    SkyePoint Decisions

    Washington DC
    1 day ago
  • $140k - $150k

     ...Kentro, where innovation drives opportunity and collaboration leads to success. Our dynamic community of experts is fully committed...  ...FISMA SME to support the Department of Commerce/Office of Cybersecurity and IT Risk Management (OCRM) . The FISMA Lead serves as the... 
    Interim role
    Work at office
    Local area

    kentro

    Washington DC
    2 days ago
  • GAMA-1 Technologies is seeking a Senior ATO Subject Matter Expert in Washington, DC. This role centers on federal cybersecurity compliance, leading Security Assessment & Authorization (SA&A) efforts, and ensuring that mission-critical systems meet rigorous federal standards... 

    GAMA-1 Technologies

    Washington DC
    2 days ago
  •  ...through the Metropolitan Police Department, is seeking a Senior Cybersecurity Advisor in Washington, D.C. This role requires oversight of...  ...cybersecurity initiatives, providing technical guidance, and leading audits. A Bachelor’s degree in IT or related fields is essential... 

    DC Government

    Washington DC
    4 days ago
  • A cybersecurity technology firm in Arlington, VA seeks a Proposal Manager to oversee the entire lifecycle of DOW proposals, ensuring compliance and high-quality submissions. You'll work collaboratively with various teams, translating technical solutions into compelling... 
    Remote job

    Shift5

    Arlington, VA
    1 day ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Cybersecurity Forensics and Malware Lead. Be the first to apply!