Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Lead Cyber Forensics Investigator

ECS

Key Responsibilities Lead end-to-end cyber forensic investigations, including intake, triage, scoping, evidence strategy, tasking, analysis coordination, and deliverable development. Define investigative objectives, data sources, timelines, roles, assumptions, and expected outputs for forensic activities. Ensure forensic investigations align with incident response priorities, legal and compliance requirements, organizational risk tolerance, and mission needs. Direct the collection, preservation, processing, and handling of digital evidence from endpoints, servers, cloud services, identity platforms, security tools, network devices, and other relevant sources. Ensure evidence integrity through documented chain‑of‑custody procedures, repeatable acquisition methods, secure storage, and defensible handling practices. Validate forensic acquisition approaches, tool outputs, and evidence handling procedures for completeness, accuracy, and admissibility where applicable. Oversee analysis of host artifacts, file systems, memory, logs, endpoint telemetry, malware indicators, authentication activity, network data, and other forensic evidence. Identify attack vectors, compromise timelines, persistence mechanisms, lateral movement, privilege escalation, data access, exfiltration indicators, and affected assets. Correlate forensic findings with SOC alerts, threat intelligence, SIEM data, EDR telemetry, vulnerability information, and incident response actions. Produce and review high‑quality forensic reports, investigative timelines, evidence summaries, executive summaries, and technical findings. Translate forensic evidence into clear risk, impact, and business language for technical and non‑technical audiences. Develop practical recommendations to support containment, eradication, recovery, control improvements, detection enhancements, and future prevention. Serve as the primary forensic point of contact during cybersecurity incidents, investigations, and follow‑up analysis activities. Brief SOC leadership, program leadership, system owners, legal or compliance stakeholders, and technical teams on forensic status, findings, risks, and next steps. Coordinate with SOC analysts, threat hunters, threat intelligence analysts, engineers, and other responders while maintaining disciplined investigative practices. Lead and mentor forensic analysts and contributors, including assigning tasks, reviewing work products, and supporting professional development. Review evidence, analysis methods, timelines, conclusions, and reports for accuracy, consistency, completeness, and defensibility. Support standardization of forensic playbooks, evidence checklists, reporting templates, workflows, and quality‑control practices. Maintain and improve forensic methodologies, tools, lab procedures, evidence repositories, and analysis workflows. Support lessons learned, after‑action reviews, tabletop exercises, and readiness activities that improve investigative speed and quality. Stay current with evolving attacker tradecraft, forensic artifacts, operating systems, cloud platforms, endpoint technologies, and investigative best practices. Required Skills 7+ years of experience in digital forensics, incident response, cyber investigations, SOC operations, threat analysis, or closely related cybersecurity roles. Proven experience leading formal cyber forensic investigations or incident‑response forensic workstreams. Hands‑on experience collecting, preserving, and analyzing digital evidence from enterprise systems, endpoints, logs, network sources, cloud platforms, or security tools. Strong understanding of forensic methodologies, chain of custody, evidence integrity, incident response lifecycle, and investigative documentation standards. Experience using forensic, EDR, SIEM, log analysis, or investigation tools such as EnCase, FTK, Magnet AXIOM, Autopsy/Sleuth Kit, Volatility, Velociraptor, Splunk, Sentinel, CrowdStrike, Microsoft Defender, or equivalent technologies. Excellent written and verbal communication skills, including the ability to produce defensible technical reports and brief stakeholders on findings and recommendations. Desired Skills Experience leading forensic investigations in regulated, government, critical infrastructure, law enforcement, defense, financial, or healthcare environments. Experience with Windows, Linux, cloud, identity, email, endpoint, memory, malware, and network forensics. Familiarity with cybersecurity frameworks and guidance such as NIST, MITRE ATT&CK, CIS Controls, ISO 27001, or incident response best practices. Certifications such as GCFA, GCFE, GCIH, GNFA, CISSP, CCE, EnCE, CFCE, CHFI, Security+, or equivalent. Experience briefing executives, legal counsel, compliance stakeholders, or senior technical leadership during high‑priority incidents. Experience developing forensic playbooks, training analysts, improving lab procedures, or building forensic readiness programs. ECS Federal LLC is an equal opportunity employer and does not discriminate or allow discrimination on the basis of any characteristic protected by law. All qualified applicants will receive consideration for employment without regard to disability, status as a protected veteran or any other status protected by applicable federal, state, or local jurisdiction law. #J-18808-Ljbffr ECS

Vacancy posted 3 days ago
Similar jobs that could be interesting for youBased on the Lead Cyber Forensics Investigator in Portland, OR vacancy
  •  ...SOC Team Lead Job Locations US-OR-Portland ID...  ...Operations Center (SOC), Digital Forensics, Service Desk, Splunk...  ...integrated, high-performing cyber operations that protect the enterprise...  ...during high-priority investigations and post-incident activities.... 
    Suggested
    Full time
    For contractors

    Edgewater Federal Solutions

    Portland, OR
    2 days ago
  •  ...Position Title: Lead  Cyber Forensics Analyst  Location: Portland, OR | Full-Time Cybervance is a rapidly growing information security...  ...who will be charged with conducting computer forensic investigations, data recovery, electronic discovery, and participate in cybersecurity... 
    Suggested
    Full time

    Cybervance

    Portland, OR
    2 days ago
  • Edgewaterit in Portland, Oregon is seeking a SOC Lead to oversee operations of the Security Operations Center. This role integrates cyber operations to protect against threats...  ...a cyber team, and directing digital forensics efforts. Ideal candidates will have a degree... 
    Suggested

    Edgewaterit

    Portland, OR
    23 hours ago
  • A global engineering and consulting firm seeks a Building Envelope Specialist in Portland, Oregon, to oversee and assess building envelope projects. Responsibilities include reviewing design documents, conducting field tests, and preparing reports. Candidates must have ...
    Suggested
    Work at office

    Stantec Consulting International Ltd.

    Portland, OR
    23 hours ago
  • Edgewater Federal Solutions, Inc. is seeking a SOC Lead to oversee Security Operations Center functions in Portland, Oregon. This pivotal...  ...role involves managing SOC operations, directing digital forensics, supervising service desk personnel, and ensuring compliance with... 
    Suggested

    Edgewater Federal Solutions, Inc.

    Portland, OR
    2 days ago
  •  ...a public notice for Drug Enforcement Administration Criminal Investigator GL-1811-7/9/11 positions open to U.S. Citizens. A job announcement...  .... Gather and analyze evidence through investigative leads, seizures, arrests, execution of search warrants, and a variety... 
    Permanent employment
    Local area
    Relocation
    Trial period
    Weekend work

    Drug Enforcement Administration

    Portland, OR
    4 days ago
  • Overview The Registered Nurse (RN) is a professional caregiver who assumes responsibility and accountability for assessing, planning, implementing, and evaluating the care of patients. The staff RN utilizes the nursing process by use of technology, therapeutic intervention...
    Hourly pay
    Shift work
    Night shift
    Weekend work
    Afternoon shift

    Intermountain Health

    Portland, OR
    23 hours ago
  • AAA Cooper Transportation, Inc. is seeking a City Dispatcher for its Portland, OR office. This role involves managing shipments throughout the system and coordinating with dispatch and service center management. Ideal candidates should have a high school diploma, knowledge...
    Work at office

    AAA Cooper Transportation, Inc.

    Portland, OR
    23 hours ago
  • EmergencyMD is seeking a 911 Emergency Communications Dispatch Supervisor in Vancouver, WA. This role involves supervising call takers and dispatching for police, fire, and medical services. Candidates should possess strong leadership, decision-making, and communication...

    EmergencyMD

    Vancouver, WA
    3 days ago
  • Levy Restaurants is seeking a Concessions Supervisor in Portland, Oregon, to oversee assigned concession locations and ensure compliance with service standards. The ideal candidate will have supervisory experience in a fast-paced environment and be ready to create memorable...

    Levy Restaurants

    Portland, OR
    1 day ago
  • $98.6k - $147.9k

    Vancouver Clinic is seeking a Lab Information Systems Supervisor in Vancouver, WA. This role involves managing clinical and anatomic pathology computer systems, overseeing projects, and ensuring compliance with regulations. The ideal candidate must have an Associate’s or...

    Vancouver Clinic

    Vancouver, WA
    23 hours ago
  • WorkSource Oregon is seeking a Bilingual Mandarin Lab Supervisor for their Beaverton, Oregon location. This role involves team leadership, ensuring lab compliance with safety protocols, and translating technical protocols for effective communication. The ideal candidate...

    WorkSource Oregon

    Beaverton, OR
    23 hours ago
  • CRESA is seeking a 911 Emergency Communications Dispatch Supervisor in Vancouver, Washington. This supervisory role entails managing call takers and dispatch staff, ensuring efficient operations in the emergency communication center. Ideal candidates will have relevant ...

    CRESA

    Vancouver, WA
    1 day ago
  • Honey Bucket is looking for a Route Supervisor to lead our team of route drivers in Tualatin, Oregon. This role is vital for ensuring that we provide top-tier portable sanitation services while mentoring and developing our staff. As a Route Supervisor, you will oversee... 

    Honey-Bucket-1

    Tualatin, OR
    1 day ago
  •  ..., those who join the Secret Service are courageous, intelligent, strong and determined. A diverse team capable of balancing our investigative mission and fulfilling our protective legacy. Proven to be worthy of trust and confidence. Be tomorrow's Secret Service. Duties... 
    Overseas

    U.S. Secret Service

    Portland, OR
    4 days ago
  • A U.S. law enforcement agency is seeking a Criminal Investigator (Special Agent) responsible for preventing, detecting, and investigating...  ...include conducting complex investigations, developing investigative leads, and coordinating with various agencies. Candidates must be U.... 

    ATF

    Portland, OR
    23 hours ago
  •  .... Duties & Responsibilities The position is for a Criminal Investigator (Special Agent) with primary responsibility for prevention, detection...  ...awareness of precedent decisions. Develop and investigate leads from known criminal activities, interwoven with legitimate... 
    Work at office
    Local area

    ATF

    Portland, OR
    23 hours ago
  •  ...disseminating actionable intelligence on cyber threats, adversary tactics,...  ...with threat context during alert triage, investigation, escalation, and incident response activities...  ...Collaborate with SOC analysts, threat hunters, forensics personnel, security engineers, Splunk... 
    Contract work
    Work at office

    ECS Limited

    Portland, OR
    1 day ago
  • $22.85 - $25 per hour

     ...support lifesaving changes for people affected by substance use and mental health conditions. POSITION TITLE: Residential Aide Lead Non-Exempt Position RESPONSIBLE TO: Residential Aide Supervisor and Program Director MAJOR DUTIES: The Lead works... 
    Full time
    Temporary work
    Part time
    Immediate start
    Trial period
    Shift work
    Night shift
    Weekend work

    Lifeline Connections

    Vancouver, WA
    25 days ago
  • Honeybucket is seeking a Route Supervisor to lead our team of Route Drivers in Tualatin, Oregon. The role is crucial in fostering quality service and mentoring employees, while ensuring operational efficiency and customer satisfaction. The ideal candidate will possess... 

    Honeybucket

    Tualatin, OR
    3 days ago
  • $37 - $40 per hour

    Columbia River Veterinary Specialists is hiring an Emergency Technician Supervisor (Dayshift) in Vancouver, WA. This role involves supervising technical staff and managing patient care, while also ensuring effective medical record keeping and handling financial processes...
    Hourly pay
    Day shift

    Columbia River VetERinary Specialists

    Vancouver, WA
    23 hours ago
  •  ...Parts Company is seeking a Production Supervisor in Portland, Oregon. This role specializes in managing production activities and leading a team to achieve quality targets. The ideal candidate should have 5-10 years of relevant experience and a high school diploma or GED... 

    Genuine Parts Company

    Portland, OR
    3 days ago
  • The Springs Living in Lake Oswego, Oregon, is seeking a Housekeeping Lead responsible for supervising the housekeeping team and maintaining high standards of cleanliness. In this role, you'll oversee inventory management, scheduling, and ensure exceptional service to residents... 

    The Springs Living

    Lake Oswego, OR
    1 day ago
  • $18.77 - $20.5 per hour

     ...seeking a full-time Store Supervisor to utilize management and customer service skills. In this role, you will oversee store operations, lead a team, and ensure excellent service. The position offers competitive pay of $18.77 - $20.50 per hour, alongside benefits like... 
    Hourly pay
    Full time

    Broadway Ace Hardware

    Beaverton, OR
    1 day ago
  •  ...special agent applicants, positions requiring counter‑intelligence polygraphs, foreign task force officers, and internal affairs investigations. Responsibilities Investigate crimes, execute arrests, conduct interviews and interrogations, and preserve and document... 
    Permanent employment
    Temporary work
    Work at office

    ATF

    Portland, OR
    4 days ago
  • $21 per hour

     ...Supervisor, Front Of House Lead We are hiring immediately for full time SUPERVISOR, FRONT OF HOUSE LEAD positions. Location: Delta PDX - 7000 NE Airport Way, Suite 211, Portland, OR 97218. Note: online applications accepted only. Schedule: Full time schedule.... 
    Hourly pay
    Full time
    Part time
    Local area
    Immediate start
    Remote work
    Worldwide
    Flexible hours

    Compass Group USA

    Portland, OR
    4 days ago
  •  ...Chief Artificial Intelligence Officer (CAIO) About the Company Leading digital transformation consulting firm specializing in IT, management & creative solutions Industry Information Technology and Services Type Public Company Founded 19... 

    Confidential

    Portland, OR
    23 hours ago
  • $100 per hour

     ...contributing to the overall security and cleanliness of the facility. The officer works under the guidance of the Juvenile Detention Lead worker and plays a crucial role in supporting the rehabilitation and well-being of detained youth. What It Takes: **Integrity:**... 
    Hourly pay
    Full time
    Contract work
    Part time
    Flexible hours
    Shift work
    Rotating shift

    Clark County Washington

    Vancouver, WA
    2 days ago
  • Troy Center is seeking a dedicated Registered Nurse (RN) Supervisor in Troy, NY. This role involves overseeing resident care by managing nursing staff, fostering a compassionate atmosphere for residents and families, and ensuring proper documentation of care services. Candidates...
    Daily paid

    Troy Center

    Portland, OR
    1 day ago
  • $95k - $105k

     ..., OR. In this full-time role, you will supervise underground drilling operations and ensure compliance with safety standards while leading crew training initiatives. Candidates should have 5+ years of hands-on experience in underground drilling and strong communication... 
    Full time

    Utilities One

    Portland, OR
    23 hours ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Lead Cyber Forensics Investigator. Be the first to apply!