Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

AOUSC - Forensic and Malware Lead

cFocus Software Incorporated

cFocus Software seeks a Forensic and Malware Lead to join our program supporting the Administrative Office of the United States Courts (AOUSC). This position is Hybrid with the onsite location being in Washington, DC. This position requires a Public Trust clearance. Qualifications: Active Public Trust clearance B.S. Computer Science, Information Technology, or a related field Five (5) years within IR in a large SOC (over 5,000 endpoints) with at least 3 years focused on digital forensics for Operating System or file systems. Three (3) years of demonstrated expertise in disk, memory and registry analysis using industry standard tools such as EnCase, FTK, X-Ways, Volatility. Demonstrated understanding of file systems and Operating System artifacts including but not limited to (SRUM, Shellbags and Prefetch). Familiarity with federal evidence guidelines and chain of custody requirements. This role aligns with NICE work role PD-WRL-002 (Digital Forensics). Active GCFA, GREM, CFCE, or OSED certification Duties: Lead digital forensics and malware analysis activities in support of AOUSC Security Operations Division (SOD) operations. Provide advanced subject matter expertise for forensic investigations involving Windows, Linux, macOS, cloud, and enterprise environments. Perform static and dynamic malware analysis to identify indicators of compromise (IOCs), attacker tactics, techniques, and procedures (TTPs), and root cause. Analyze forensic artifacts, memory images, endpoint telemetry, SIEM data, and filesystem timelines to identify malicious activity and intrusion vectors. Coordinate with Cybersecurity Triage and Incident Response teams to support investigation, escalation, containment, remediation, and recovery activities. Conduct live forensic analysis utilizing Splunk Enterprise Security, Microsoft Sentinel, EDR tools, and AO-provided investigative tooling. Collect, preserve, duplicate, and maintain digital evidence in accordance with forensic evidence handling and chain-of-custody procedures. Develop forensic reports, malware analysis reports, incident artifacts, and technical documentation in accordance with Judiciary SOC Forensics SOPs and JSOCIRP requirements. Provide real-time investigative support for Priority 1 and Priority 2 cybersecurity incidents. Support analysis of advanced persistent threats (APT), ransomware, phishing campaigns, malicious scripts, and suspicious binaries. Perform memory analysis using approved forensic tools such as Volatility and other Judiciary-approved forensic platforms. Extract deleted or hidden data using forensic data carving and recovery techniques. Conduct analysis of endpoint, network, identity, and cloud telemetry to support incident investigations and threat hunting operations. Coordinate escalation and communication of investigative findings to AO leadership, incident responders, SOC management, and federal staff. Review and validate forensic and malware analysis deliverables to ensure technical accuracy, completeness, and compliance with SLA requirements. Develop and maintain forensic analysis procedures, malware analysis SOPs, investigative work instructions, and operational playbooks. Support enterprise security awareness reporting by contributing forensic findings, threat trends, and investigative recommendations. Participate in weekly technical meetings, operational briefings, and cybersecurity reporting activities. Support continuous process improvement initiatives related to digital forensics, malware analysis, investigative workflows, and incident response operations. Assist in transition-in and transition-out activities including knowledge transfer, operational readiness, training, and documentation support. #J-18808-Ljbffr cFocus Software Incorporated

Vacancy posted 4 days ago
Similar jobs that could be interesting for youBased on the AOUSC - Forensic and Malware Lead in Washington DC vacancy
  • cFocus Software seeks a Threat Hunt Lead to join our program supporting the Administrative Office of the United States Courts (AOUSC). This position is Hybrid with the onsite location...  ...analysis of threat actor behaviors, malware campaigns, phishing activity, suspicious... 
    Suggested
    Work at office

    cFocus Software Incorporated

    Washington DC
    19 hours ago
  • cFocus Software seeks a CTI Lead to join our program supporting the Administrative Office of the United States Courts (AOUSC). This position is Hybrid with the onsite location being...  ...analysis of cyber threats, including malware, phishing campaigns, and other attack vectors... 
    Suggested
    Work at office

    cFocus Software Incorporated

    Washington DC
    4 days ago
  • Cyber Threat Intelligence & Threat Hunting Lead Position Overview The Cyber Threat Intelligence & Threat Hunting Lead will oversee integrated...  ...threat hunting aligned to: MITRE ATT&CK, adversary TTPs, malware campaigns, and emerging threats. Integrate CTI into SOC... 
    Suggested

    cFocus Software Incorporated

    Washington DC
    1 day ago
  • cFocus Software seeks a Insider Threat Analyst Lead to join our program supporting the Administrative Office of the United States Courts (AOUSC). This position is Hybrid with the onsite location being in Washington, DC. This position requires a Public Trust clearance.... 
    Suggested
    Work at office

    cFocus Software Incorporated

    Washington DC
    1 day ago
  •  ...Job Description Job Description cFocus Software seeks a Blue Team Lead to join our program supporting the Administrative Office of the United States Courts (AOUSC). This position is Hybrid with the onsite location being in Washington, DC. This position requires a... 
    Suggested
    Work at office

    cFocus Software Incorporated

    Washington DC
    8 days ago
  • Threat Emulation & Readiness Lead / Red Team Lead Position Overview The Threat Emulation & Readiness Lead will oversee adversary emulation, red team operations, cyber readiness exercises, and threat-informed defense initiatives supporting a federal enterprise cybersecurity... 

    cFocus Software Incorporated

    Washington DC
    19 hours ago
  • $80k - $110k

    Alvarez & Marsal Deutschland GmbH is seeking an eDiscovery Senior Associate to lead projects involving electronic data collection relevant to litigation or investigations. The position requires strong analytical and project management skills, with a focus on client service... 

    Alvarez & Marsal Deutschland GmbH

    Washington DC
    2 days ago
  •  ...Arlington, Virginia, seeks a skilled cybersecurity professional to lead insider threat operations. Ideal candidates will have over 7...  ...cybersecurity experience, including 5 years in security monitoring and forensic tools, along with desirable certifications. The role involves... 

    Accenture

    Arlington, VA
    1 day ago
  • $160k - $190k

     ...Federal Solutions, Inc. is seeking an Incident Response (IR) Tech Lead in Bethesda, Maryland. The role involves leading incident...  ...12 years of experience, and expertise in incident response and forensics. The position offers a salary range of $160,000 - $190,000 and... 

    Edgewater Federal Solutions, Inc.

    Bethesda, MD
    1 day ago
  • $160k - $190k

    A government contracting firm is seeking an Incident Response (IR) Tech Lead in Bethesda, MD. This role involves leading significant incident responses, guiding teams in threat mitigation, and enhancing response processes in a 24x7 environment. Candidates must have 5+... 

    Edgewaterit

    Bethesda, MD
    4 days ago
  •  ...our Cyber Security division for an Incident Response Engagement Lead in the United States. S-RM is a global intelligence and...  ...always evolving, and our Advisory , Testing , Incident Response and Forensics practices are in more demand than ever. We’re building a team to... 
    Immediate start
    Flexible hours

    S-RM Intelligence and Risk Consulting

    Washington DC
    4 days ago
  • Position Title Insider Threat Program Lead Position Overview The Insider Threat Lead will design, mature, and oversee insider threat...  ...: NIST insider threat guidance behavioral analytics digital forensics and investigative methodologies. Strong briefing and... 

    cFocus Software Incorporated

    Washington DC
    1 day ago
  • $160k - $190k

    A cybersecurity firm is seeking an Incident Response Tech Lead to oversee an Incident Response team, provide expert support for threat mitigation, and manage significant incidents. Ideal candidates will possess 5+ years in cybersecurity operations, a relevant degree, and... 
    Contract work

    Edgewater Federal Solutions

    Bethesda, MD
    3 days ago
  • $94.4k - $178.8k

    RSM US LLP is seeking a Manager for their Investigations team in Washington, DC. This role includes leading investigations into fraud and misconduct, managing client communications, and contributing to proposals for business development. The ideal candidate will have a... 

    RSM US LLP

    Washington DC
    19 hours ago
  • $140k - $170k

    Charles River Associates is seeking an Associate Principal Full-Stack Developer in Washington, DC, to design and develop privacy-compliant software solutions. The ideal candidate will have 7-10+ years of experience in full-stack development with proficiency in languages...

    Charles River Associates

    Washington DC
    1 day ago
  • The Software Engineering Institute at Carnegie Mellon University is seeking a Reverse Engineer Researcher in Arlington, VA. This role involves reverse engineering malicious code, documenting findings, and applying AI in analysis. Ideal candidates hold a BS with 8 years ...
    Flexible hours

    Software Engineering Institute | Carnegie Mellon University

    Arlington, VA
    19 hours ago
  • Nightwing Group is seeking an experienced Electrical Engineer to lead the establishment of a Chip-Off Forensics Lab in Arlington, VA. You will provide expert guidance in hardware forensics and chip extraction, ensuring the integrity of critical cyber investigations. The... 

    Nightwing Group

    Arlington, VA
    4 days ago
  • $130k - $190k

    A leading forensic consulting firm in Virginia is seeking a Senior Forensic Engineer to lead investigations related to property damage claims. The role demands extensive experience in mechanical engineering, strong analytical skills, and HVAC knowledge. Responsibilities... 

    The Vertex Companies, Inc.

    Alexandria, VA
    1 day ago
  • SOC Operations Lead / Managed Detection & Response (MDR) Lead Position Overview The SOC Operations Lead will oversee 24x7x365 Security Operations Center (SOC) and Managed Detection & Response (MDR) operations supporting a large federal enterprise environment. The Lead... 

    cFocus Software Incorporated

    Washington DC
    4 days ago
  • A federal program contractor is seeking a Host Forensics Analyst to provide advanced technical support for cybersecurity incidents. This position requires US citizenship, TS/SCI clearance, and strong skills in cyber forensics and incident response. The candidate will oversee... 
    For contractors

    NewGen Technologies

    Arlington, VA
    3 days ago
  • Enprovera-Corporation is seeking a Deputy Project Manager in Washington, DC. This full-time position is responsible for supervising contractor personnel while ensuring compliance with performance and quality standards in support of national initiatives. The ideal candidate...
    Full time
    For contractors

    Enprovera-Corporation

    Washington DC
    19 hours ago
  •  ...Lead Incident Responder Evolver Federal is seeking a Lead Incident Responder to fulfill...  ...AOs, integrating threat intelligence and forensic analysis into response processes, and...  ...CrowdStrike, Microsoft Defender). Expertise in malware analysis, reverse engineering, and memory... 
    Contract work
    Flexible hours

    Evolver Federal

    Washington DC
    1 day ago
  • $135k - $175k

    Hilco Global seeks a Manager for the Investigations & Dispute Resolution practice in Washington, D.C. This role involves leading digital forensics and cyber investigations, ensuring effective evidence collection, and analyzing complex digital data. Ideal candidates will... 

    Hilco Global

    Washington DC
    19 hours ago
  • $131.3k - $237.35k

     ...unclassified and classified networks. We are currently seeking an IA Team Lead to help establish a new team as well as lead and mentor IA...  .... Monitoring system activity to detect unauthorized access, malware, and other potential security threats, and implementing ongoing... 
    Summer work

    Leidos

    Washington DC
    2 days ago
  • cFocus Software Incorporated seeks a skilled Insider Threat Analyst Lead to support the AOUSC's Insider Threat Program in Washington, DC. This hybrid role requires strong expertise in cybersecurity analysis, particularly in managing insider threats and developing governance... 

    cFocus Software Incorporated

    Washington DC
    4 days ago
  •  ...seeking a Senior Cybersecurity Engineer (Controls & Assessment Lead) to support this critical customer mission. The Senior Cybersecurity...  ...operations Background in security assessment of malware analysis platforms Experience with cloud security assessment... 
    Contract work
    Immediate start

    Nightwing

    Arlington, VA
    8 days ago
  •  ...Lead Cyber Threat Analyst Evolver Federal is seeking a Lead Cyber Threat Analyst to...  ...requires deep expertise in threat analysis, malware research, and adversary emulation within...  ...analysis, reverse engineering, and forensic investigations for complex incidents.... 
    Flexible hours

    Evolver Federal

    Washington DC
    3 days ago
  •  ...Washington, DC, is seeking a Cyber Threat Intelligence & Threat Hunting Lead to oversee integrated cyber threat operations and enhance...  ...operations, developing detection strategies, and analyzing malware trends. Preferred certifications include GCTI and CISSP, providing... 

    cFocus Software Incorporated

    Washington DC
    1 day ago
  •  ...Serve as an escalation point for sophisticated cyber incidents which require expertise in Incident Response(IR), Digital Forensics, Malware analysis, deep analysis of adversarial Tactics, Techniques and Procedures(TTPs), Network and Cloud security. Possess a deep... 

    Samprasoft

    Washington DC
    19 hours ago
  •  ...Senior Cybersecurity Incident Response & Penetration Testing Lead to support enterprise cybersecurity operations. This role...  ...response teams. ~ Strong expertise in threat intelligence, malware analysis, forensic analysis, and indicators of compromise (IOC). Required... 
    Local area

    ASSYST, Inc.

    Alexandria, VA
    8 days ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to AOUSC - Forensic and Malware Lead. Be the first to apply!