Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Cyber Defense Forensics Lead - Clearance Required

Cydecor

Overview:

Cydecor is a premier Federal Government solutions provider, delivering differentiated innovations in mission systems and business platforms. We leverage leading-edge secure systems and software development, backed by industry-leading subject matter expertise, and business intelligence to enable decision-support and remain ahead of ever-evolving national security challenges. Our success rests squarely on three bedrock principles: People, our center of gravity; Mission, what inspires us; and an unyielding commitment to Excellence, what separates us.

Job Description:

We are seeking an experienced Cyber Defense Forensics Lead to lead enterprise digital forensics and investigative operations within a 24/7 SOC environment, providing technical expertise, operational oversight, and strategic direction across cyber defense, incident response, and insider threat investigations.

Responsibilities include:

  • Lead digital forensics investigations across enterprise environments, ensuring accurate analysis and timely incident containment
  • Conduct host-based and network-based forensic analysis to identify malicious activity, root cause, and scope of compromise
  • Perform malware triage and analysis to support incident response and threat mitigation efforts
  • Lead insider threat investigations, including detection, analysis, and escalation of suspicious or malicious user activity
  • Ensure strict adherence to evidence handling procedures, including chain-of-custody requirements and forensic integrity standards
  • Collect, preserve, analyze, and document digital evidence in support of investigative and legal processes
  • Develop and maintain forensic workflows, investigative methodologies, and standard operating procedures
  • Create dashboards, reports, and visualizations to support forensic investigations and SOC visibility
  • Analyze anomalous system and user behavior to identify potential insider threats or advanced adversary activity
  • Utilize forensic tools, SIEM platforms, endpoint detection and response (EDR), and intrusion detection systems (IDS) to support investigations
  • Support incident response teams by providing forensic expertise during active security incidents
  • Correlate forensic findings with threat intelligence to enhance detection and response capabilities
  • Provide mentorship and technical guidance to junior analysts and investigators
  • Coordinate with cross-functional teams including threat intelligence, incident response, and SOC operations
  • Ensure compliance with federal cybersecurity standards, policies, and investigative requirements
  • Support reporting and escalation of security incidents to appropriate stakeholders and leadership

Here's what you need (Required Qualifications):

  • Bachelor's degree
  • Minimum of 7 years of experience in cybersecurity, digital forensics, or incident response
  • Minimum of 5 years of hands-on experience conducting host-based and network-based security monitoring and forensic analysis
  • Strong experience identifying and analyzing anomalous activity, insider threats, and advanced cyber threat behaviors
  • Hands-on experience with forensic tools, SIEM platforms, EDR solutions, IDS/IPS, and security operations workflows
  • Experience supporting incident response efforts, including threat containment, eradication, and recovery
  • Strong understanding of evidence handling, chain-of-custody procedures, and forensic investigation best practices
  • Experience developing forensic reports, dashboards, and workflow documentation
  • Ability to analyze large data sets and correlate findings across multiple sources
  • Strong understanding of cybersecurity principles, threats, and attack methodologies
  • Experience handling sensitive or classified information in accordance with federal security standards

Bonus Points If You Have (Desired Qualifications):

  • GIAC Certified Forensic Analyst (GCFA), GIAC Reverse Engineering Malware (GREM), GIAC Certified Incident Handler (GCIH), or an equivalent certification
  • Experience supporting insider threat programs or user activity monitoring (UAM) initiatives
  • Experience working in a 24/7 SOC or federal cybersecurity operations environment
  • Familiarity with threat intelligence integration and adversary TTP analysis
  • Experience building or enhancing forensic capabilities within enterprise environments
  • Experience mentoring analysts in cyber forensics and investigative techniques

Security Clearance:

  • Active TS/SCI (or TS with SCI eligibility)

Education:

  • Bachelor's degree

Work Schedule:

  • Monday-Friday, Hybrid

Compensation and Benefits:

Cydecor offers a comprehensive compensation package including Health and Dental Insurance, Vision and Life Insurance, Short-Term & Long-Term Disability, 401(K) + company match, Paid Time Off (PTO), Paid Company Holidays, Tuition and Professional Development Assistance and more.

What We Believe:

We have an unwavering commitment to diversity with the aim that every one of our people has a full sense of belonging within our organization. As a business imperative, every person at Cydecor has the responsibility to create and sustain an inclusive environment.

Tags: Digital Forensics, Cybersecurity, Incident Response, SOC, Insider Threat, Threat Detection, Malware Analysis, SIEM, EDR, IDS, Intrusion Detection, Network Forensics, Host-Based Forensics, Chain of Custody, Evidence Handling, Cyber Defense, Threat Analysis, Security Operations Center, Splunk, Log Analysis, Endpoint Security, Threat Hunting, Advanced Persistent Threats (APT), Federal Government, Cleared Jobs, TS/SCI Clearance, Cyber Investigations, Security Analytics, DFIR (Digital Forensics and Incident Response), MITRE ATT&CK

Equal Employment Opportunity Statement

Cydecor is an Equal Employment Opportunity/Affirmative Action Employer (EEO/AA). All employment and hiring decisions are based on qualifications, merit, and business needs without regard to race, religion, color, sexual orientation, nationality, gender, ethnic origin, disability, age, sex, gender identity & expression, veteran status, marital status, or any other characteristic protected by applicable law.

If you are a qualified individual with a disability and/or a disabled veteran, you may request a reasonable accommodation if you are unable or limited in your ability to access job openings or apply for a job on this site because of your disability. You can request assistance by contacting View email address on click.appcast.io or calling View phone number on click.appcast.io.

Vacancy posted 6 days ago
Similar jobs that could be interesting for youBased on the Cyber Defense Forensics Lead - Clearance Required in Ashburn, VA vacancy
  •  ...platforms. We leverage leading-edge secure...  ...Cydecor is seeking a Cyber Incident Response...  ...across cyber defense, incident response...  ...evidence handling, forensic integrity, and documentation...  ..., and compliance requirements Here's what you...  ...TTPs Security Clearance: ~ Active TS/... 
    Cyber
    Temporary work
    Work experience placement
    Monday to Friday

    Cydecor

    Ashburn, VA
    5 days ago
  •  ...Lead, Proposal Pricing L3Harris is dedicated...  ...Trusted Disruptor in defense tech. With customers'...  ...space, air, land, sea and cyber domains in the interest...  ...policies, customer requirements and regulatory requirements...  ...: Security Clearance preferred Experience... 
    Cyber
    Contract work
    For contractors

    L3Harris Technologies

    Ashburn, VA
    4 days ago
  •  ...platforms. We leverage leading-edge secure systems and...  ...Zero Trust visibility requirements Drive modernization...  ...Expert, etc. Security Clearance: ~ Active Secret...  ...EDR, Threat Detection, Cyber Defense, Threat Intelligence, Digital Forensics, Threat Hunting,... 
    Cyber
    Temporary work
    Monday to Friday

    Cydecor

    Ashburn, VA
    5 days ago
  •  ...platforms. We leverage leading-edge secure systems...  ...accordance with federal requirements Conduct vulnerability...  ...as CS Security Clearance: ~ Active Secret...  ...Controls, Encryption, Cyber Risk, Federal...  ...Secret Clearance, Cyber Defense Equal Employment... 
    Cyber
    Temporary work
    Monday to Friday

    Cydecor

    Ashburn, VA
    5 days ago
  • $96.5k - $179.5k

     ...Trusted Disruptor in defense tech. With customers'...  ...space, air, land, sea and cyber domains in the...  ...security. Job Title: Lead, schedule Integrator...  ...review future demand requirements. Support Sales, Inventory...  ...obtain US secret security clearance. Qualifications:... 
    Cyber
    Contract work
    Work at office
    Local area
    Flexible hours

    L3Harris Technologies

    Ashburn, VA
    4 days ago
  •  ...solutions to enhance defense and mission capabilities...  ...physical, electronic, cyber, and communications...  ...senior technician, the Lead Security Systems Technician...  ...teams and clients. Requirements Responsibilities:...  ...be eligible for U.S. Government Security Clearance.... 
    Cyber
    Full time
    Night shift

    Active Security Consulting

    Sterling, VA
    4 days ago
  •  ...About Agile Defense At Agile Defense...  ...and new challenges require new solutions. That...  ...Title: Threat Hunt Lead Location: Reston, VA Clearance Level: TS (SCI...  ...diverse backgrounds in cyber security systems operations...  ...and network-based forensics related to the... 
    Cyber

    Agile Defense

    Reston, VA
    4 days ago
  • $39.97 - $43.97 per hour

     ...position will support the Defense Intelligence Agency (...  ...in physical and cyber security, IT management...  ...results to government leads. Qualifications To perform...  .... The following requirements represent the knowledge...  ...and maintain a security clearance and successfully clear... 
    Cyber
    Hourly pay
    Long distance

    Galapagos Federal Systems

    Reston, VA
    21 hours ago
  •  ...Gritter Francona is looking for a Cyber Defense Forensics Lead to support a potential project with the Department of Homeland Security. The Forensics...  ...loss, and analyzing insider threat activities. The role requires deep technical expertise in forensic tools and... 
    Cyber
    Temporary work

    Gritter Francona

    Ashburn, VA
    1 day ago
  •  ...Lead Systems Architect Nightwing provides technically...  ...full-spectrum cyber, data operations, systems...  ...operations, cyber defense and resiliency, vulnerability...  ...: Sterling, VA Clearance: TS/SCI Poly This...  ...understanding Sponsor's technical requirements and how they impact... 
    Cyber
    Contract work

    Navstar

    Sterling, VA
    5 days ago
  •  ...About Agile Defense At Agile Defense...  ...and new challenges require new solutions. That...  ...Response Team Lead Location: Reston, VA Clearance Level: TS (SCI Eligible...  ...seeking experienced Cyber Incident Response...  ...conducts deep-dive forensic investigations (host... 
    Cyber
    Work experience placement

    Agile Defense

    Reston, VA
    1 day ago
  •  ...the Trusted Disruptor in defense tech. With customers'...  ...space, air, land, sea and cyber domains in the interest...  .... Job Title: Lead, Program Management- Maritime...  ...Active Secret Clearance Preferred Additional...  ...many of our positions require the ability to obtain a... 
    Cyber
    Contract work
    For contractors
    Local area

    L3Harris

    Herndon, VA
    1 day ago
  • $120k - $150k

     ...Washington, DC; Reston, VA Required Clearance: Active TS/SCI with...  ...the most complex government, defense, and intelligence projects across...  ...response, threat hunting, and forensic investigations across...  ...tools Support SOC and cyber operations teams with packet... 
    Cyber
    Full time
    Relocation package
    Shift work
    Night shift

    Ennoble First, Inc.

    Reston, VA
    5 days ago
  •  ...Enterprise Logging Solution Lead The U.S. Customs and Border Protection (CBP) Cyber Security Directorate (CSD) is...  ...advanced threat intelligence, forensics, incident response, cloud and...  ...Secret with Top Secret eligibility clearance required.  Minimum of five (5) last... 
    Cyber

    General Dynamics Information Technology

    Ashburn, VA
    more than 2 months ago
  •  ...advanced full-spectrum cyber, data operations,...  ...operations, cyber defense and resiliency,...  ...seeking a Network Forensics Analyst to support...  ...the Government lead in coordinating teams...  ...engagements. Required Skills: - U.S. Citizenship...  ...an active TS/SCI clearance - Must be able... 
    Cyber
    Contract work
    Immediate start

    Nightwing

    Hamilton, VA
    23 days ago
  •  ...advanced full-spectrum cyber, data operations,...  ...operations, cyber defense and resiliency,...  ...is seeking a Host Forensics Analyst to support...  ...Assisting Federal leads with overseeing...  ...malicious code Required Skills: U.S. Citizenship...  ...an active TS/SCI clearance Must be able to... 
    Cyber
    Contract work
    Immediate start

    Nightwing

    Sterling, VA
    23 days ago
  • $155.9k - $233.9k

     ...satellite, launch, ground, and cyber systems for defense, civil and commercial...  ...evolving mission area that requires end-to-end integration, cross...  ...for a Spacecraft Program Lead (Senior Project Leader - Multi...  ...TS/SSBI/SCI security clearance and polygraph , which is issued... 
    Cyber
    Full time
    For contractors
    Work at office
    Immediate start
    Remote work
    Relocation package
    Flexible hours

    The Aerospace Corporation

    Chantilly, Loudoun County, VA
    4 days ago
  •  ..., VA *Clearance: *Active TS/SCI w...  ...Cornerstone Defense is the Employer of...  ...use their industry leading knowledge to provide...  ...We are seeking a Cyber Network Defense Analyst...  ...* Utilize forensic analysis to identify...  ...Provide and track requirements to engineering partners... 
    Cyber
    Contract work

    Cornerstone Defense

    Herndon, VA
    5 days ago
  •  ...advanced full-spectrum cyber, data operations,...  ...operations, cyber defense and resiliency,...  ...for digital forensics/incident response...  ...prior to imaging, as required - Perform forensic...  ...Required Skills/Clearances: - U.S. Citizenship...  ...defense analysis using leading edge technologies... 
    Cyber
    For contractors
    Immediate start
    Remote work

    Nightwing

    Hamilton, VA
    4 days ago
  •  ...About Agile Defense At Agile Defense we know that...  ...and new challenges require new solutions. That's why...  ...Title: Splunk Architect Lead Location: Reston, VA Clearance Level: Secret (TS Eligible...  ...programs delivering 24/7/365 Cyber Security Operations Center... 
    Cyber

    Agile Defense

    Reston, VA
    1 day ago
  •  ...Job Title Cybersecurity Lead - C Job Description The...  ...our solutions in the areas of cyber, cloud and enterprise security...  ...and emerging threats. Job Requirements Qualifications: • Bachelor...  ...skills. • Secret Security Clearance • Ability to travel up to 2... 
    Cyber
    Full time
    Remote work

    Telos Corporation

    Ashburn, VA
    5 days ago
  •  ...advanced full-spectrum cyber, data operations, systems...  ...operations, cyber defense and resiliency, vulnerability...  ...Manager (PM) to lead a fast-paced, dynamic program...  ...contractors. This role requires strong leadership,...  ...multiple stakeholders Clearance Requirements: TS/SCI with... 
    Cyber
    For contractors
    Work at office

    Nightwing

    Sterling, VA
    21 hours ago
  • $131.3k - $237.35k

     ...contain and eradicate cyber threats to CBP networks...  ...efforts of the team, leading by example, andconducting...  ...networks. This role requires a deep understanding...  ...use cases, and improve defensive posture. Mentor and...  ...GISF GXPN GWAPT Clearance: All CBP SOC... 
    Cyber
    Work at office
    Local area
    Immediate start

    Leidos

    Ashburn, VA
    4 days ago
  •  ...federal systems. The position requires experience supporting...  ...Key Details Location: Remote Clearance: NIH Public Trust Work Authorization...  ...incident response procedures and cyber threat intelligence Knowledge...  ...programs across civilian and defense sectors, including health,... 
    Cyber
    Temporary work
    Remote work

    Blu Omega LLC

    Ashburn, VA
    21 hours ago
  •  ...platforms. We leverage leading-edge secure...  ...seeking an experienced Cyber Threat...  ...intelligence, cyber defense, incident response...  ...'s what you need (Required Qualifications):...  ...and network-based forensics related to identification...  ...operations Security Clearance: ~ Active TS/... 
    Cyber
    Temporary work
    Monday to Friday

    Cydecor

    Ashburn, VA
    5 days ago
  • $92.5k - $171.5k

     ...Systems Engineer (Top Secret Clearance) L3Harris is dedicated to...  ...is the Trusted Disruptor in defense tech. With customers' mission...  ...the space, air, land, sea and cyber domains in the interest of national...  ...of engineering problems, requiring collaboration with all... 
    Cyber
    Casual work
    Local area
    Relocation
    Relocation package
    Flexible hours
    Shift work

    Navstar

    Herndon, VA
    4 days ago
  •  ...platforms. We leverage leading-edge secure systems...  ...seeking an experienced Cyber Threat Hunt Lead to lead...  ..., and cyber defense activities. Responsibilities...  ...Here's what you need (Required Qualifications):...  ...hunting teams Security Clearance: ~ Active TS/... 
    Cyber
    Temporary work
    Monday to Friday

    Cydecor

    Ashburn, VA
    5 days ago
  •  ...business platforms. We leverage leading-edge secure systems and...  ...Here's what you need (Required Qualifications): Bachelor...  ...tasks effectively Security Clearance: ~ Active Secret (TS...  ...Jobs, Secret Clearance, Cyber Defense Equal Employment Opportunity... 
    Cyber
    Temporary work
    Monday to Friday

    Cydecor

    Ashburn, VA
    5 days ago
  •  ...Location: Remote / Onsite (as required) Clearance: Active TS/SCI (DHS EOD...  ...eligibility required) Company: Argo Cyber Systems, LLC – A Service-...  ...incident response, digital forensics, proactive hunt operations, and continuous cyber defense across host-based, network-... 
    Cyber
    Local area
    Remote work

    Argo Cyber Systems

    Sterling, VA
    a month ago
  •  ...position is contingent upon award. Requires an active TS/SCI with CI Poly clearance prior to consideration The Continuous Monitoring Cyber Systems Engineer Technical Specialist...  ...include, but are not limited to: Leads the Continuous Monitoring (ConMon) team... 
    Cyber
    Full time

    RDR

    Chantilly, Loudoun County, VA
    4 days ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Cyber Defense Forensics Lead - Clearance Required. Be the first to apply!