Cyber Defense Forensics Lead - Clearance Required
Cydecor
Overview:
Cydecor is a premier Federal Government solutions provider, delivering differentiated innovations in mission systems and business platforms. We leverage leading-edge secure systems and software development, backed by industry-leading subject matter expertise, and business intelligence to enable decision-support and remain ahead of ever-evolving national security challenges. Our success rests squarely on three bedrock principles: People, our center of gravity; Mission, what inspires us; and an unyielding commitment to Excellence, what separates us.
Job Description:
We are seeking an experienced Cyber Defense Forensics Lead to lead enterprise digital forensics and investigative operations within a 24/7 SOC environment, providing technical expertise, operational oversight, and strategic direction across cyber defense, incident response, and insider threat investigations.
Responsibilities include:
- Lead digital forensics investigations across enterprise environments, ensuring accurate analysis and timely incident containment
- Conduct host-based and network-based forensic analysis to identify malicious activity, root cause, and scope of compromise
- Perform malware triage and analysis to support incident response and threat mitigation efforts
- Lead insider threat investigations, including detection, analysis, and escalation of suspicious or malicious user activity
- Ensure strict adherence to evidence handling procedures, including chain-of-custody requirements and forensic integrity standards
- Collect, preserve, analyze, and document digital evidence in support of investigative and legal processes
- Develop and maintain forensic workflows, investigative methodologies, and standard operating procedures
- Create dashboards, reports, and visualizations to support forensic investigations and SOC visibility
- Analyze anomalous system and user behavior to identify potential insider threats or advanced adversary activity
- Utilize forensic tools, SIEM platforms, endpoint detection and response (EDR), and intrusion detection systems (IDS) to support investigations
- Support incident response teams by providing forensic expertise during active security incidents
- Correlate forensic findings with threat intelligence to enhance detection and response capabilities
- Provide mentorship and technical guidance to junior analysts and investigators
- Coordinate with cross-functional teams including threat intelligence, incident response, and SOC operations
- Ensure compliance with federal cybersecurity standards, policies, and investigative requirements
- Support reporting and escalation of security incidents to appropriate stakeholders and leadership
Here's what you need (Required Qualifications):
- Bachelor's degree
- Minimum of 7 years of experience in cybersecurity, digital forensics, or incident response
- Minimum of 5 years of hands-on experience conducting host-based and network-based security monitoring and forensic analysis
- Strong experience identifying and analyzing anomalous activity, insider threats, and advanced cyber threat behaviors
- Hands-on experience with forensic tools, SIEM platforms, EDR solutions, IDS/IPS, and security operations workflows
- Experience supporting incident response efforts, including threat containment, eradication, and recovery
- Strong understanding of evidence handling, chain-of-custody procedures, and forensic investigation best practices
- Experience developing forensic reports, dashboards, and workflow documentation
- Ability to analyze large data sets and correlate findings across multiple sources
- Strong understanding of cybersecurity principles, threats, and attack methodologies
- Experience handling sensitive or classified information in accordance with federal security standards
Bonus Points If You Have (Desired Qualifications):
- GIAC Certified Forensic Analyst (GCFA), GIAC Reverse Engineering Malware (GREM), GIAC Certified Incident Handler (GCIH), or an equivalent certification
- Experience supporting insider threat programs or user activity monitoring (UAM) initiatives
- Experience working in a 24/7 SOC or federal cybersecurity operations environment
- Familiarity with threat intelligence integration and adversary TTP analysis
- Experience building or enhancing forensic capabilities within enterprise environments
- Experience mentoring analysts in cyber forensics and investigative techniques
Security Clearance:
- Active TS/SCI (or TS with SCI eligibility)
Education:
- Bachelor's degree
Work Schedule:
- Monday-Friday, Hybrid
Compensation and Benefits:
Cydecor offers a comprehensive compensation package including Health and Dental Insurance, Vision and Life Insurance, Short-Term & Long-Term Disability, 401(K) + company match, Paid Time Off (PTO), Paid Company Holidays, Tuition and Professional Development Assistance and more.
What We Believe:
We have an unwavering commitment to diversity with the aim that every one of our people has a full sense of belonging within our organization. As a business imperative, every person at Cydecor has the responsibility to create and sustain an inclusive environment.
Tags: Digital Forensics, Cybersecurity, Incident Response, SOC, Insider Threat, Threat Detection, Malware Analysis, SIEM, EDR, IDS, Intrusion Detection, Network Forensics, Host-Based Forensics, Chain of Custody, Evidence Handling, Cyber Defense, Threat Analysis, Security Operations Center, Splunk, Log Analysis, Endpoint Security, Threat Hunting, Advanced Persistent Threats (APT), Federal Government, Cleared Jobs, TS/SCI Clearance, Cyber Investigations, Security Analytics, DFIR (Digital Forensics and Incident Response), MITRE ATT&CK
Equal Employment Opportunity Statement
Cydecor is an Equal Employment Opportunity/Affirmative Action Employer (EEO/AA). All employment and hiring decisions are based on qualifications, merit, and business needs without regard to race, religion, color, sexual orientation, nationality, gender, ethnic origin, disability, age, sex, gender identity & expression, veteran status, marital status, or any other characteristic protected by applicable law.
If you are a qualified individual with a disability and/or a disabled veteran, you may request a reasonable accommodation if you are unable or limited in your ability to access job openings or apply for a job on this site because of your disability. You can request assistance by contacting View email address on click.appcast.io or calling View phone number on click.appcast.io.
- ...platforms. We leverage leading-edge secure systems and... ...Zero Trust visibility requirements Drive modernization... ...Expert, etc. Security Clearance: ~ Active Secret... ...EDR, Threat Detection, Cyber Defense, Threat Intelligence, Digital Forensics, Threat Hunting,...CyberTemporary workMonday to Friday
- ...platforms. We leverage leading-edge secure... ...federal insider threat requirements Support... ...experience leading the cyber component of an... ...Digital forensics experience or related... ...technologies Security Clearance: ~ Active TS... ...Detection, Cyber Defense, Security...CyberTemporary workMonday to Friday
- ...platforms. We leverage leading-edge secure systems... ...accordance with federal requirements Conduct vulnerability... ...as CS Security Clearance: ~ Active Secret... ...Controls, Encryption, Cyber Risk, Federal... ...Secret Clearance, Cyber Defense Equal Employment...CyberTemporary workMonday to Friday
$97.75k - $132.25k
...: Regular Clearance Level Must Currently... ...Trust/Other Required: None Job... ..., Asset Tracking, Cyber Risks, IT Asset Management... ...(CSD) is leading one of the most comprehensive... ...intelligence, forensics, incident response... ...U.S. government, defense and intelligence community...CyberTemporary workImmediate startRemote workWorldwideFlexible hours- ...About Agile Defense At Agile Defense... ...and new challenges require new solutions. That... ...Title: Threat Hunt Lead Location: Reston, VA Clearance Level: TS (SCI... ...diverse backgrounds in cyber security systems operations... ...and network-based forensics related to the...Cyber
- ...Gritter Francona is looking for a Cyber Defense Forensics Lead to support a potential project with the Department of Homeland Security. The Forensics... ...loss, and analyzing insider threat activities. The role requires deep technical expertise in forensic tools and...CyberTemporary work
- ...advanced full-spectrum cyber, data operations,... ...space operations, cyber defense and resiliency, vulnerability... .... Job Title: Lead Systems Architect Location... ...: Sterling, VA Clearance: TS/SCI Poly This... ...understanding Sponsor's technical requirements and how they impact...CyberContract work
- ...Lead Security Systems Technician Active Security... ...solutions to enhance defense and mission... ...physical, electronic, cyber, and communications security... ...specifications and authority requirements. Supervise and... .... Government Security Clearance. Active Security ConsultingCyberNight shift
- ...About Agile Defense At Agile Defense... ...new challenges require new solutions. That... ...Threat Monitoring Lead Job Title for... ...Location: Reston, VA Clearance Level: TS (SCI... ...leading the cyber component of an insider... ...experience Digital Forensics and related...Cyber
- ...About Agile Defense At Agile Defense... ...and new challenges require new solutions. That... ...Response Team Lead Location: Reston, VA Clearance Level: TS (SCI Eligible... ...seeking experienced Cyber Incident Response... ...conducts deep-dive forensic investigations (host...CyberWork experience placement
$120k - $150k
...Washington, DC; Reston, VA Required Clearance: Active TS/SCI with... ...the most complex government, defense, and intelligence projects across... ...response, threat hunting, and forensic investigations across... ...tools Support SOC and cyber operations teams with packet...CyberFull timeRelocation packageShift workNight shift- ...advanced full-spectrum cyber, data operations,... ...operations, cyber defense and resiliency,... ...seeking a Network Forensics Analyst to support... ...the Government lead in coordinating teams... ...engagements. Required Skills: - U.S. Citizenship... ...an active TS/SCI clearance - Must be able...CyberContract workImmediate start
- ...advanced full-spectrum cyber, data operations,... ...operations, cyber defense and resiliency,... ...is seeking a Host Forensics Analyst to support... ...Assisting Federal leads with overseeing... ...malicious code Required Skills: U.S. Citizenship... ...an active TS/SCI clearance Must be able to...CyberContract workImmediate start
- ..., VA *Clearance: *Active TS/SCI w... ...Cornerstone Defense is the Employer of... ...use their industry leading knowledge to provide... ...We are seeking a Cyber Network Defense Analyst... ...* Utilize forensic analysis to identify... ...Provide and track requirements to engineering partners...CyberContract work
- ...advanced full-spectrum cyber, data operations,... ...operations, cyber defense and resiliency,... ...for digital forensics/incident response... ...prior to imaging, as required Perform forensic... ...Required Skills/Clearances: ~ U.S. Citizenship... ...defense analysis using leading edge technologies...CyberFor contractorsImmediate startRemote work
- ...Job Title Cybersecurity Lead - C Job Description The... ...our solutions in the areas of cyber, cloud and enterprise security... ...and emerging threats. Job Requirements Qualifications: • Bachelor... ...skills. • Secret Security Clearance • Ability to travel up to 2...CyberFull timeRemote work
- ...Enterprise Logging Solution Lead The U.S. Customs and Border Protection (CBP) Cyber Security Directorate (CSD) is... ...advanced threat intelligence, forensics, incident response, cloud and... ...Secret with Top Secret eligibility clearance required. Minimum of five (5) last...Cyber
- ...platforms. We leverage leading-edge secure... ...seeking an experienced Cyber Threat... ...intelligence, cyber defense, incident response... ...'s what you need (Required Qualifications):... ...and network-based forensics related to identification... ...operations Security Clearance: ~ Active TS/...CyberTemporary workMonday to Friday
- ...platforms. We leverage leading-edge secure systems... ...seeking an experienced Cyber Threat Hunt Lead to lead... ..., and cyber defense activities. Responsibilities... ...Here's what you need (Required Qualifications):... ...hunting teams Security Clearance: ~ Active TS/...CyberTemporary workMonday to Friday
- ...business platforms. We leverage leading-edge secure systems and... ...Here's what you need (Required Qualifications): Bachelor... ...tasks effectively Security Clearance: ~ Active Secret (TS... ...Jobs, Secret Clearance, Cyber Defense Equal Employment Opportunity...CyberTemporary workMonday to Friday
$3,000 per month
...Rotary Mission Systems Cyber & Intelligence invites... ...: • Analyze user requirements to derive software design... ...• Serve as team lead at the level appropriate... ...advancing cutting‑edge cyber defense technologies. Our... ...possess active security clearance with a polygraph.CyberRelocation package- ...customer-oriented Principal Cyber Systems Engineer to join our... ...vital systems and drive cyber defense innovation in a collaborative... ...enterprise-level cyber requirements against approved architectures... ...such as JSIG and/or ICD 503 Clearance Requirements: ~ An active TS...CyberFull timeWork at office
- ...position is contingent upon award. Requires an active TS/SCI with CI Poly clearance prior to consideration The Continuous Monitoring Cyber Systems Engineer Technical Specialist... ...include, but are not limited to: Leads the Continuous Monitoring (ConMon) team...CyberFull time
- ...Apex Systems is seeking a Sr Cyber Security Engineer (SME) to support... ...for the U.S. Department of Defense. This role demands technical... ...with various frameworks. Required qualifications include a Master... ...for a DoD Top Secret Security Clearance. The position is remote with...CyberRemote work
- ...Trusted Disruptor in defense tech. With customers'... ...space, air, land, sea and cyber domains in the... ...Government/DoD program requirements, interfacing with suppliers... ...obtain a US security clearance. Briefs management... ...skills, with experience leading and collaborating in a...CyberLocal area
- ...Harris is the Trusted Disruptor in defense tech. With customers' mission-critical... ...the space, air, land, sea and cyber domains in the interest of national... ...and have every other Friday off Clearance: Active Secret Clearance Required To Be Considered For This Position...CyberWork at officeLocal area
- .... Explore what you can bring to our solutions in the areas of cyber, cloud and enterprise security. Be a part of the Telos culture... ...accountability of materials and goods with proper inventory controls. Job Requirements Qualifications: Minimum 1 years of experience in a similar...CyberFull time
$112k - $179k
...Cyber Incident Response Team (CIRT) Lead (SME) Job Locations US... ...Cyber Security Clearance Top Secret... ...response playbooks, forensic methodologies, adversary... ...to ensure defensible investigative outcomes... ...and legal/audit requirements. #ENOCS Qualifications...CyberContract workShift work$150k - $165k
...Cybersecurity Lead/ISSM Herndon, VA or Colorado Springs, CO... ...established information security AF requirements. This position is located in... ...one (1) of the following cyber security certifications:... ...an active Top Secret security clearance Desired Qualifications...CyberContract work- ...IT Network Engineer Active TS/SCI clearance with full scope poly required to be considered for this position. As IT Network Engineer, you... ...and consulting solutions in the areas of national defense, homeland and cyber security. TENICA provides knowledgeable and experienced...Cyber
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Cyber Defense Forensics Lead - Clearance Required. Be the first to apply!


