Forensics / Incident Response SME
$145k - $155kValiant Solutions
Position Description Valiant Solutions is seeking a Forensics / Incident Response SME to join our rapidly growing and innovative cybersecurity team! Do you have experience in IT security and a strong background in Incident Response and Forensics? If so, you may be interested in this dual-focused position that requires active participation in all Incident Response activities, complemented by deep, specialized expertise in Forensic Analysis. This is your opportunity to join a busy Security Engineering team delivering cutting-edge solutions to a fantastic Government client. Specialized experience in incident response, managing APTs, forensic analysis, and handling evidentiary data is key for this challenging and rewarding role. This role will be responsible for all incident response and management activities, forensic analysis, and other emerging enterprise-wide IT challenges. We are seeking a motivated individual to join this team, which is constantly evolving and currently developing cloud security solutions in AWS. You’ll be passionate about what you do and will be able to work autonomously to engineer your way out of problems. The IR/Forensics SME shall be responsible for all incident response and management activities, forensic analysis, and other emerging enterprise-wide IT challenges. Named one of the Best Places to Work in the Washington DC area for 12 consecutive years , Valiant is proud of our employee-centric culture and commitment to excellence. If you are interested in learning more about Valiant and this opportunity, This position allows for 100% remote work. Remote work requires a high level of trust in our employees, and we strictly adhere to the details outlined in our Remote Work Policy below. Required Experience 8+ years of specialized experience in incident response, management of the APT, forensic analysis, and handling of evidentiary data, with the most recent experience in the past 4 years. Experience with Mobile Device Forensics Experience performing IR, Forensics, and post-mortem reports in cloud environments (AWS preferred). Ability to identify malware characteristics and conduct reverse engineering in x86 and x64 assembly Ability to demonstrate and conduct Windows memory forensics techniques to analyze malware threats. Strong knowledge of malware code and behavioral analysis. Working knowledge in SIFT, REMnux, or other similar frameworks. Experience in Presentation and Reporting of Evidence and Analysis Experience in File System Timeline Analysis Experience in Live Incident Response and Volatile Evidence Collection Experience in Advanced Windows Registry Analysis Experience in Forensic Imaging and Filesystem Media Analysis Experience performing Advanced Network Event and Protocol analysis and timeline reconstruction Experience and ability to develop, use, and follow Standard Operating Procedures (SOPs) In-depth experience with processing and triage of Security Alerts from multiple sources, but not limited to Endpoint security tools, SIEM, email security solutions, CISA, Threat Intel Sources Demonstrated ability to evaluate events (through a triage process) and identify appropriate prioritization for response Expert understanding of security incident response processes Support and participate in Threat Hunt and Threat Intel operations Responsibilities Participate in a rotating on-call; rotation is based on the number of team members Serve as a hybrid Incident Response (IR) and Digital Forensics (DFIR) function, requiring both real-time incident handling and deep forensic investigative expertise across enterprise and cloud environments. Provide Incident Management and Forensic Support as required for incidents/investigations, including off-hours Provide Incident Management support, including guidance and expertise to the Incident Response Team and SOC components Development of policies, instructions, standards, and procedures around security functions Develops, maintains, and optimizes the malware and forensic analysis laboratory environment Maintains digital evidence Chain of Custody for forensic activity in accordance with policy, industry standards, and law Perform forensic analysis on a variety of networks, hosts, digital media, and operating systems/environments as but not limited to: Windows, Mac, iOS, Android, Windows Mobile, Linux/Unix, Mainframe, and cloud computing platforms (SaaS, PaaS, IaaS) Prepare detailed written technical reports covering the methodology applied to forensic investigation, findings, and recommendations for further action Provide SME technical analysis for Incident Response and Forensics for Incident / Breach / and Compromise Activities. Including but not limited to malware detection, lateral movement, data collection, and exfiltration detection Provide a complete response to all DFIR tasks Produce and review aggregated performance metrics Work directly with Security and SOC leadership to convert intelligence and results from forensic analysis into useful detection in enterprise security tools Collaborate with the incident response team to rapidly build detection rules as needed Perform customer security assessments Supporting incident response or remediation as needed Participate and develop, and run tabletop exercises Perform lessons learned activities Supporting ad-hoc data and investigation requests Support the enrichment and enhancement of security monitoring tools, including but not limited to evaluation and recommendations on rule tuning and development of new rules/detections Participate in a rotating on-call schedule Strongly Preferred Certifications: GIAC Certified Forensics Examiner (GCFE) Certified Forensic Analyst (GCFA) Certified Computer Examiner (CCE) AccessData Certified Examiner (ACE) EnCase Certified Examiner (EnCE) Magent Certified Forensic Examiner (MCFE) Magent Certified GRAYKEY Examiner (MCGE) AWS Solution Architect (AWS) SANS GIAC Certified Incident Handler (GCIH) SANS GIAC Certified Intrusion Analyst (GCIA) SANS GIAC Network Forensics Analyst (GNFA) SANS GIAC Certified Enterprise Defender (GCED) SANS GIAC Reverse Engineering Malware (GREM) Carnegie Mellon Certified Computer Incident Handler (CSIH) IACIS Certified Forensic Computer Examiner (CFCE) ISFCE Certified Computer Examiner (CCE) About Valiant Solutions Valiant Solutions is a security-focused IT solutions provider with public clients nationwide. Named one of the fastest growing privately held companies by Inc. 5000, Washington Technology’s Fast 50, and Washington Business Journal’s Best Places to Work in the D.C. area, Valiant Solutions prides itself on providing its employees with great benefits and career development opportunities. As a company, we are just as committed to growing careers as we are to building world-class IT solutions, all while enjoying an unparalleled work-life balance. We are in a phase of tremendous growth and building the team that will take us to the next level. We seek people whose talents and accomplishments will contribute to a thriving company, who have the character to support their capacity, and can make a positive impact on our culture. Alongside our talented team, you’ll learn to think quickly on your feet and expand your own personal and professional skill set. Our management team will inspire you to consider new perspectives and challenge you to become a better practitioner in the fast-paced industry of IT security. We hire people we respect – and we trust them to deliver results leveraging their expertise. If you would enjoy working in a dynamic environment as part of a stellar team of professionals, Benefits Snapshot (includes, but not limited to) Valiant pays 99% of the Medical, Dental, and Vision Coverage for Full-time EmployeesValiant contributes 25% towards Health Coverage for Family and Dependents100% Paid Short Term Disability and Life Insurance Policy for Full-time Employees100% Paid Certifications401K Matching up to 4%Paid Time OffPaid Federal HolidaysWellness & Fitness ProgramValiant University – Online Education and Training PortalFSA programs for: Medical Costs, Dependent Care, Transit, and ParkingReferral Bonuses The salary range for this position is a general guideline and not a guarantee of compensation or salary. It has been benchmarked in relation to the scope of the role, market rate, and internal equity. The salary for this role is expected to be in the $145,000 - $155,000 salary range. Where a candidate falls within the band can be determined based on one or more of the following: skillset, experience level, achievements, education, geographic location, security clearance, involvement in corporate tasks, and other non-discriminatory factors. In addition to the base salary, this role will include benefits as described above. Valiant reserves the right to adjust the salary range, experience requirements, and position responsibilities at any time without prior notice. Remote Work Policy Remote work necessitates a high level of trust in our employees. To ensure that employee performance does not suffer in a remote work environment, all employees who telecommute are expected to have a quiet and distraction‑free workspace with adequate internet, dedicate their full attention and availability to their job duties during working hours, and maintain a schedule during core business hours that align with those of their coworkers and Valiant's clients. In alignment with Valiant's inclusive and engaging environment, cameras are encouraged and can be required to be on during virtual video conferences. Additionally, in alignment with the Office of the Inspector General’s effort to eliminate conflicting employment, all Valiant employees are required to disclose any current or future outside employment engagements. During onboarding and throughout employment, employees must disclose any current activities or intent to engage in outside employment or other professional activities and obtain written approval. Employees may not solicit or conduct any outside business during core business hours for Valiant Solutions and our clients. Equal Employment Opportunity Valiant Solutions is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, age, disability, genetic information, marital status, or veteran status, in accordance with applicable law. Physical Demands Sitting or standing at a desk for prolonged periods of time and consistent operation of a computer. Frequent communication and exchanging of accurate information via electronic communication, phones, and in person. Occasionally lift and/or move moderate amounts of weight, typically less than 20 pounds. Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions of the job. Authorization to Share Resume and Personal Information By submitting your resume for this position, you authorize Valiant Solutions to share your resume, as well, personal information included on the resume, with its subsidiaries, affiliates and teaming partners for the purpose of considering you for this position and other available positions requiring comparable skills, education and experience. Should Valiant Solutions or its affiliates and teaming partners wish to initiate pre‑employment discussions, you will be asked to complete an employment application and related employment documents. #J-18808-Ljbffr
- Nightwing Group seeks a Cyber Host Forensic Analyst IV to join ourStrike team in Arlington, VA. The role requires serving as an incident response SME, leading high-priority investigations, and delivering executive-ready reports. The candidate will work across multiple...Suggested
- ...and work remotely one day. A member of our recruitment team will provide more details.The Global Director of Autonomous Incident Response and Forensic Analysis leads the strategy, execution, and continuous improvement of a 24/7 global incident response (IR) and digital...SuggestedFull timeWork at officeLocal areaRemote work1 day per week
- Nightwing Group seeks a Cyber Network Forensic Analyst III to support a U.S. Government client in Arlington, VA. You will lead on-site incident response, coordinate with government teams, and determine containment and remediation steps for breaches. The role requires U...Suggested
- ...Rutgers, The State University of New Jersey, is seeking a Senior Incident Response Analyst for the Office of Information Technology. This... ...Analysts. Provides expert-level analytic, investigative and forensic support of complex security incidents to detect and remediate...SuggestedFull timeTemporary workSeasonal workWork at officeFlexible hoursShift work
- Nightwing Group in Arlington, VA is seeking a Cloud Forensic Analyst III to support on-site incident response for a U.S. Government customer. You will conduct investigations to determine breach severity, develop remediation plans, and assist with restoration of services...Suggested
- Nightwing Group is seeking a Cyber Host Forensic Analyst II to support a U.S. Government client in Arlington, VA. The role focuses on onsite incident response, forensic analysis, and documenting findings to drive remediation. The candidate will collect and analyze digital...
$140k - $184k
The Digital Forensics SME provides advanced digital forensics and incident response (DFIR) expertise, supporting investigation, analysis, and remediation of complex cybersecurity incidents across the Agency enterprise. Salary $140K-184K Clearance: TS/DOE Q Key Responsibilities...Full timeFlexible hours$140k - $184k
ActioNet, Inc. seeks a Digital Forensics SME with extensive DFIR experience to investigate,... ...analyze, and remediate complex cybersecurity incidents across the agency enterprise. The role... ...clearance. The candidate will lead SOC response, ensure proper evidence handling, and...- ...stakeholders Develop and maintain Digital Forensics policies and procedures... ...reduction projects, including post-incident lessons learned Serve as a technical SME for Insider Threat, DLP, and... ...cyber investigations and incident response processes Experience with case management...
$116.26k - $151.13k
...date. Job Summary The Digital Forensic Analyst investigates and... ...analyst partners with Cyber Incident Responders, HR, Legal, Ethics... ...learned. Serve as a technical SME for Insider Threat, DLP, and... ...investigations and incident response processes. Experience with case...Work experience placement$105.4k - $124k
...per week. US Bank is seeking a Digital Forensic Examiner to join the E-Discovery &... ...following onboarding and mentorship. Main Responsibilities: Conduct forensic collections and examinations... ...investigations, or closely related incident response experience. Experience...Temporary workLocal area3 days per week- ...AM Koniag Data Solutions, a Koniag Government Services company, is seeking an experienced Digital Forensics Analyst to support cybersecurity operations and incident response activities for a federal government client. This position requires an active security clearance...Local areaRemote workFlexible hoursNight shift
- ...specialize in building envelope, engineering, forensic consulting, dispute resolution,... ...opportunities for advancement! Overview Responsible for investigating, analyzing, traffic control... ...an analysis of the cause of various incidents. Work involves documenting and...Full timeContract workPart timeWork experience placementLocal areaWorldwideNight shift
$91.1k - $170.4k
...effectiveness of the Cyber Triage and Forensics team's daily operations. Tasked with managing... ...and triage, combined with their responsibility for setting performance expectations and... ...detect and respond to information security incidents, develop, maintain, and follow...Work experience placementSummer holidayLocal areaFlexible hoursShift work- EY is seeking a Cyber Triage and Forensics Shift Lead Supervising Associate to oversee the CTF Analysts, drive incident detection and triage, and guide performance in a... ...analysis, and process improvement, with responsibilities spanning monitoring, investigation, and...Shift work
$104.8k - $192.3k
...build a better working world. EY's Forensics Insurance and Federal Claims Services practice... ...as hurricanes, fires, tornadoes, cyber incidents, and other catastrophic losses. We... ...loss events, and oversee teams responsible for the preparation and presentation of...Summer holidayWork at officeFlexible hours- NVIDIA is seeking a Cybersecurity Analyst to lead incident response across corporate, cloud, and product environments. You will perform threat hunting, cloud incident response, and digital forensics to accelerate detections and strengthen security posture. Collaborate...
$160k - $258.75k
NVIDIA is seeking a Cybersecurity Analyst with deep expertise in incident response, forensics investigation, threat hunting, and proactive cyber defense. This role is ideal for a cybersecurity professional passionate about defending enterprise and product environments...$28 - $30 per hour
Forensic Assertive Community Treatment (FACT) Program Manager Full Time Burlington, VT,... ...Resume are required with your application. Responsibilities: Oversee the day-to-day program... ...Medicaid, documentation, confidentiality, incident-reporting, and other applicable program...Hourly payFull timeContract workWork at officeLocal areaTrial periodFlexible hours- Cyber Host Forensic Analyst II page is loaded## Cyber Host Forensic Analyst IIlocations: Arlington, VAtime type: Full timeposted... ...supporting a U.S. Government customer to provide support for onsite incident response to civilian Government agencies and critical asset owners...Contract workWork experience placementImmediate start
- Cyber Network Forensic Analyst III page is loaded## Cyber Network Forensic Analyst IIIlocations: Arlington, VAtime type: Full timeposted... ...a U.S. Government customer to provide support for onsite incident response to civilian Government agencies and critical asset owners...Contract workImmediate start
$54 per hour
...Nurse Job Summary: The purpose of Forensic Assertive Community Treatment (FACT) is... ...Completes and signs progress notes, incident reports, and other required documentation... ...candidates that are selected will receive a response. We encourage you to apply for any position...Hourly payTemporary workPart timeWork at officeMonday to FridayFlexible hoursShift work- Amentum is seeking a Forensic Digital Evidence Advisor to support ICITAP activities with host nations. The role focuses on mobile and... ..., remote within the United States, and part‑time, with responsibilities for quality training, standards #J-18808-Ljbffr InuplandsRemote jobPart timeFor contractors
- ...associating digital data to assist in the prosecution of criminal cases. Writes formal forensic reports, creates high-quality exhibits for court, and provides expert testimony. Responsibilities Performs in-depth content analysis of mobile devices and digital media for...Full timeContract workWork at officeShift work
$120k - $170k
...The Role Immediate Opening for a Forensic Engineer/ Structural Professional Engineer to work in our Jersey City, NJ location in charge... ...and expert witness testimony. The Forensic Engineer is responsible for leading and managing forensic investigation, report preparation...For contractorsWork experience placementLocal areaImmediate start- ...professional to support attorneys with financial, healthcare, and forensic accounting analyses for civil fraud cases. The role includes... ...reports and timelines for investigations and trials. Responsibilities also cover analyzing government healthcare claims (Medicare/Medicaid...Work at office
$85k - $105k
...for genomics, discovery pharmacology, forensics, advanced material sciences and in the... ...Quality Assurance (QA) Coordinator is responsible for ensuring that DPT’s quality system... ...tracks nonconformances, deviations and incident reports. Ensures completeness and accuracy...Full timeContract workWork at officeLocal area- ...PM Remote/Telecommuting No remote/telecommuting opportunity Position Summary Reporting to the Director of Forensic Services, the Technical Lead is responsible for the technical operation of the Human DNA Identification ( HDI ) Laboratory and serves as the laboratory’...Full timeTemporary workRemote workMonday to Friday
$100k - $195k
Haag, a Salas O’Brien Company and a leader in forensic engineering and consulting since 1924, is seeking an experienced Forensic Structural... ...considered the property of Haag, and the company will not be responsible for any fees associated with the hiring of that candidate....Contract workTemporary workLocal areaRemote workWork from homeHome office- ...highly skilled Professional Engineer specializing in Structural Forensics in the Ohio area. The successful candidate will investigate... ...matters, providing expert testimony when necessary. Responsibilities include conducting detailed forensic investigations of structural...
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Forensics / Incident Response SME. Be the first to apply!
- digital forensics Brooklyn, NY
- cyber forensics Brooklyn, NY
- entry level digital forensics Brooklyn, NY
- forensic consultant Brooklyn, NY
- computer forensic analyst Brooklyn, NY
- forensic accounting analyst Brooklyn, NY
- forensic engineer Brooklyn, NY
- forensic science Brooklyn, NY
- forensic accounting Brooklyn, NY
- entry level computer forensics Brooklyn, NY

