Cyber Defense Forensics Lead - Clearance Required
Cydecor
Overview:
Cydecor is a premier Federal Government solutions provider, delivering differentiated innovations in mission systems and business platforms. We leverage leading-edge secure systems and software development, backed by industry-leading subject matter expertise, and business intelligence to enable decision-support and remain ahead of ever-evolving national security challenges. Our success rests squarely on three bedrock principles: People, our center of gravity; Mission, what inspires us; and an unyielding commitment to Excellence, what separates us.
Job Description:
We are seeking an experienced Cyber Defense Forensics Lead to lead enterprise digital forensics and investigative operations within a 24/7 SOC environment, providing technical expertise, operational oversight, and strategic direction across cyber defense, incident response, and insider threat investigations.
Responsibilities include:
- Lead digital forensics investigations across enterprise environments, ensuring accurate analysis and timely incident containment
- Conduct host-based and network-based forensic analysis to identify malicious activity, root cause, and scope of compromise
- Perform malware triage and analysis to support incident response and threat mitigation efforts
- Lead insider threat investigations, including detection, analysis, and escalation of suspicious or malicious user activity
- Ensure strict adherence to evidence handling procedures, including chain-of-custody requirements and forensic integrity standards
- Collect, preserve, analyze, and document digital evidence in support of investigative and legal processes
- Develop and maintain forensic workflows, investigative methodologies, and standard operating procedures
- Create dashboards, reports, and visualizations to support forensic investigations and SOC visibility
- Analyze anomalous system and user behavior to identify potential insider threats or advanced adversary activity
- Utilize forensic tools, SIEM platforms, endpoint detection and response (EDR), and intrusion detection systems (IDS) to support investigations
- Support incident response teams by providing forensic expertise during active security incidents
- Correlate forensic findings with threat intelligence to enhance detection and response capabilities
- Provide mentorship and technical guidance to junior analysts and investigators
- Coordinate with cross-functional teams including threat intelligence, incident response, and SOC operations
- Ensure compliance with federal cybersecurity standards, policies, and investigative requirements
- Support reporting and escalation of security incidents to appropriate stakeholders and leadership
Here's what you need (Required Qualifications):
- Bachelor's degree
- Minimum of 7 years of experience in cybersecurity, digital forensics, or incident response
- Minimum of 5 years of hands-on experience conducting host-based and network-based security monitoring and forensic analysis
- Strong experience identifying and analyzing anomalous activity, insider threats, and advanced cyber threat behaviors
- Hands-on experience with forensic tools, SIEM platforms, EDR solutions, IDS/IPS, and security operations workflows
- Experience supporting incident response efforts, including threat containment, eradication, and recovery
- Strong understanding of evidence handling, chain-of-custody procedures, and forensic investigation best practices
- Experience developing forensic reports, dashboards, and workflow documentation
- Ability to analyze large data sets and correlate findings across multiple sources
- Strong understanding of cybersecurity principles, threats, and attack methodologies
- Experience handling sensitive or classified information in accordance with federal security standards
Bonus Points If You Have (Desired Qualifications):
- GIAC Certified Forensic Analyst (GCFA), GIAC Reverse Engineering Malware (GREM), GIAC Certified Incident Handler (GCIH), or an equivalent certification
- Experience supporting insider threat programs or user activity monitoring (UAM) initiatives
- Experience working in a 24/7 SOC or federal cybersecurity operations environment
- Familiarity with threat intelligence integration and adversary TTP analysis
- Experience building or enhancing forensic capabilities within enterprise environments
- Experience mentoring analysts in cyber forensics and investigative techniques
Security Clearance:
- Active TS/SCI (or TS with SCI eligibility)
Education:
- Bachelor's degree
Work Schedule:
- Monday-Friday, Hybrid
Compensation and Benefits:
Cydecor offers a comprehensive compensation package including Health and Dental Insurance, Vision and Life Insurance, Short-Term & Long-Term Disability, 401(K) + company match, Paid Time Off (PTO), Paid Company Holidays, Tuition and Professional Development Assistance and more.
What We Believe:
We have an unwavering commitment to diversity with the aim that every one of our people has a full sense of belonging within our organization. As a business imperative, every person at Cydecor has the responsibility to create and sustain an inclusive environment.
Tags: Digital Forensics, Cybersecurity, Incident Response, SOC, Insider Threat, Threat Detection, Malware Analysis, SIEM, EDR, IDS, Intrusion Detection, Network Forensics, Host-Based Forensics, Chain of Custody, Evidence Handling, Cyber Defense, Threat Analysis, Security Operations Center, Splunk, Log Analysis, Endpoint Security, Threat Hunting, Advanced Persistent Threats (APT), Federal Government, Cleared Jobs, TS/SCI Clearance, Cyber Investigations, Security Analytics, DFIR (Digital Forensics and Incident Response), MITRE ATT&CK
Equal Employment Opportunity Statement
Cydecor is an Equal Employment Opportunity/Affirmative Action Employer (EEO/AA). All employment and hiring decisions are based on qualifications, merit, and business needs without regard to race, religion, color, sexual orientation, nationality, gender, ethnic origin, disability, age, sex, gender identity & expression, veteran status, marital status, or any other characteristic protected by applicable law.
If you are a qualified individual with a disability and/or a disabled veteran, you may request a reasonable accommodation if you are unable or limited in your ability to access job openings or apply for a job on this site because of your disability. You can request assistance by contacting View email address on click.appcast.io or calling View phone number on click.appcast.io.
- ...platforms. We leverage leading-edge secure... ...Cydecor is seeking a Cyber Incident Response... ...across cyber defense, incident response... ...evidence handling, forensic integrity, and documentation... ..., and compliance requirements Here's what you... ...TTPs Security Clearance: ~ Active TS/...CyberTemporary workWork experience placementMonday to Friday
- ...Lead, Proposal Pricing L3Harris is dedicated... ...Trusted Disruptor in defense tech. With customers'... ...space, air, land, sea and cyber domains in the interest... ...policies, customer requirements and regulatory requirements... ...: Security Clearance preferred Experience...CyberContract workFor contractors
- ...platforms. We leverage leading-edge secure systems and... ...Zero Trust visibility requirements Drive modernization... ...Expert, etc. Security Clearance: ~ Active Secret... ...EDR, Threat Detection, Cyber Defense, Threat Intelligence, Digital Forensics, Threat Hunting,...CyberTemporary workMonday to Friday
- ...platforms. We leverage leading-edge secure systems... ...accordance with federal requirements Conduct vulnerability... ...as CS Security Clearance: ~ Active Secret... ...Controls, Encryption, Cyber Risk, Federal... ...Secret Clearance, Cyber Defense Equal Employment...CyberTemporary workMonday to Friday
$96.5k - $179.5k
...Trusted Disruptor in defense tech. With customers'... ...space, air, land, sea and cyber domains in the... ...security. Job Title: Lead, schedule Integrator... ...review future demand requirements. Support Sales, Inventory... ...obtain US secret security clearance. Qualifications:...CyberContract workWork at officeLocal areaFlexible hours- ...solutions to enhance defense and mission capabilities... ...physical, electronic, cyber, and communications... ...senior technician, the Lead Security Systems Technician... ...teams and clients. Requirements Responsibilities:... ...be eligible for U.S. Government Security Clearance....CyberFull timeNight shift
- ...About Agile Defense At Agile Defense... ...and new challenges require new solutions. That... ...Title: Threat Hunt Lead Location: Reston, VA Clearance Level: TS (SCI... ...diverse backgrounds in cyber security systems operations... ...and network-based forensics related to the...Cyber
$39.97 - $43.97 per hour
...position will support the Defense Intelligence Agency (... ...in physical and cyber security, IT management... ...results to government leads. Qualifications To perform... .... The following requirements represent the knowledge... ...and maintain a security clearance and successfully clear...CyberHourly payLong distance- ...Gritter Francona is looking for a Cyber Defense Forensics Lead to support a potential project with the Department of Homeland Security. The Forensics... ...loss, and analyzing insider threat activities. The role requires deep technical expertise in forensic tools and...CyberTemporary work
- ...Lead Systems Architect Nightwing provides technically... ...full-spectrum cyber, data operations, systems... ...operations, cyber defense and resiliency, vulnerability... ...: Sterling, VA Clearance: TS/SCI Poly This... ...understanding Sponsor's technical requirements and how they impact...CyberContract work
- ...About Agile Defense At Agile Defense... ...and new challenges require new solutions. That... ...Response Team Lead Location: Reston, VA Clearance Level: TS (SCI Eligible... ...seeking experienced Cyber Incident Response... ...conducts deep-dive forensic investigations (host...CyberWork experience placement
- ...the Trusted Disruptor in defense tech. With customers'... ...space, air, land, sea and cyber domains in the interest... .... Job Title: Lead, Program Management- Maritime... ...Active Secret Clearance Preferred Additional... ...many of our positions require the ability to obtain a...CyberContract workFor contractorsLocal area
$120k - $150k
...Washington, DC; Reston, VA Required Clearance: Active TS/SCI with... ...the most complex government, defense, and intelligence projects across... ...response, threat hunting, and forensic investigations across... ...tools Support SOC and cyber operations teams with packet...CyberFull timeRelocation packageShift workNight shift- ...Enterprise Logging Solution Lead The U.S. Customs and Border Protection (CBP) Cyber Security Directorate (CSD) is... ...advanced threat intelligence, forensics, incident response, cloud and... ...Secret with Top Secret eligibility clearance required. Minimum of five (5) last...Cyber
- ...advanced full-spectrum cyber, data operations,... ...operations, cyber defense and resiliency,... ...seeking a Network Forensics Analyst to support... ...the Government lead in coordinating teams... ...engagements. Required Skills: - U.S. Citizenship... ...an active TS/SCI clearance - Must be able...CyberContract workImmediate start
- ...advanced full-spectrum cyber, data operations,... ...operations, cyber defense and resiliency,... ...is seeking a Host Forensics Analyst to support... ...Assisting Federal leads with overseeing... ...malicious code Required Skills: U.S. Citizenship... ...an active TS/SCI clearance Must be able to...CyberContract workImmediate start
$155.9k - $233.9k
...satellite, launch, ground, and cyber systems for defense, civil and commercial... ...evolving mission area that requires end-to-end integration, cross... ...for a Spacecraft Program Lead (Senior Project Leader - Multi... ...TS/SSBI/SCI security clearance and polygraph , which is issued...CyberFull timeFor contractorsWork at officeImmediate startRemote workRelocation packageFlexible hours- ..., VA *Clearance: *Active TS/SCI w... ...Cornerstone Defense is the Employer of... ...use their industry leading knowledge to provide... ...We are seeking a Cyber Network Defense Analyst... ...* Utilize forensic analysis to identify... ...Provide and track requirements to engineering partners...CyberContract work
- ...advanced full-spectrum cyber, data operations,... ...operations, cyber defense and resiliency,... ...for digital forensics/incident response... ...prior to imaging, as required - Perform forensic... ...Required Skills/Clearances: - U.S. Citizenship... ...defense analysis using leading edge technologies...CyberFor contractorsImmediate startRemote work
- ...About Agile Defense At Agile Defense we know that... ...and new challenges require new solutions. That's why... ...Title: Splunk Architect Lead Location: Reston, VA Clearance Level: Secret (TS Eligible... ...programs delivering 24/7/365 Cyber Security Operations Center...Cyber
- ...Job Title Cybersecurity Lead - C Job Description The... ...our solutions in the areas of cyber, cloud and enterprise security... ...and emerging threats. Job Requirements Qualifications: • Bachelor... ...skills. • Secret Security Clearance • Ability to travel up to 2...CyberFull timeRemote work
- ...advanced full-spectrum cyber, data operations, systems... ...operations, cyber defense and resiliency, vulnerability... ...Manager (PM) to lead a fast-paced, dynamic program... ...contractors. This role requires strong leadership,... ...multiple stakeholders Clearance Requirements: TS/SCI with...CyberFor contractorsWork at office
$131.3k - $237.35k
...contain and eradicate cyber threats to CBP networks... ...efforts of the team, leading by example, andconducting... ...networks. This role requires a deep understanding... ...use cases, and improve defensive posture. Mentor and... ...GISF GXPN GWAPT Clearance: All CBP SOC...CyberWork at officeLocal areaImmediate start- ...federal systems. The position requires experience supporting... ...Key Details Location: Remote Clearance: NIH Public Trust Work Authorization... ...incident response procedures and cyber threat intelligence Knowledge... ...programs across civilian and defense sectors, including health,...CyberTemporary workRemote work
- ...platforms. We leverage leading-edge secure... ...seeking an experienced Cyber Threat... ...intelligence, cyber defense, incident response... ...'s what you need (Required Qualifications):... ...and network-based forensics related to identification... ...operations Security Clearance: ~ Active TS/...CyberTemporary workMonday to Friday
$92.5k - $171.5k
...Systems Engineer (Top Secret Clearance) L3Harris is dedicated to... ...is the Trusted Disruptor in defense tech. With customers' mission... ...the space, air, land, sea and cyber domains in the interest of national... ...of engineering problems, requiring collaboration with all...CyberCasual workLocal areaRelocationRelocation packageFlexible hoursShift work- ...platforms. We leverage leading-edge secure systems... ...seeking an experienced Cyber Threat Hunt Lead to lead... ..., and cyber defense activities. Responsibilities... ...Here's what you need (Required Qualifications):... ...hunting teams Security Clearance: ~ Active TS/...CyberTemporary workMonday to Friday
- ...business platforms. We leverage leading-edge secure systems and... ...Here's what you need (Required Qualifications): Bachelor... ...tasks effectively Security Clearance: ~ Active Secret (TS... ...Jobs, Secret Clearance, Cyber Defense Equal Employment Opportunity...CyberTemporary workMonday to Friday
- ...Location: Remote / Onsite (as required) Clearance: Active TS/SCI (DHS EOD... ...eligibility required) Company: Argo Cyber Systems, LLC – A Service-... ...incident response, digital forensics, proactive hunt operations, and continuous cyber defense across host-based, network-...CyberLocal areaRemote work
- ...position is contingent upon award. Requires an active TS/SCI with CI Poly clearance prior to consideration The Continuous Monitoring Cyber Systems Engineer Technical Specialist... ...include, but are not limited to: Leads the Continuous Monitoring (ConMon) team...CyberFull time
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Cyber Defense Forensics Lead - Clearance Required. Be the first to apply!

