Lead Cyber Forensics Investigator
ECS
Key Responsibilities Lead end-to-end cyber forensic investigations, including intake, triage, scoping, evidence strategy, tasking, analysis coordination, and deliverable development. Define investigative objectives, data sources, timelines, roles, assumptions, and expected outputs for forensic activities. Ensure forensic investigations align with incident response priorities, legal and compliance requirements, organizational risk tolerance, and mission needs. Direct the collection, preservation, processing, and handling of digital evidence from endpoints, servers, cloud services, identity platforms, security tools, network devices, and other relevant sources. Ensure evidence integrity through documented chain‑of‑custody procedures, repeatable acquisition methods, secure storage, and defensible handling practices. Validate forensic acquisition approaches, tool outputs, and evidence handling procedures for completeness, accuracy, and admissibility where applicable. Oversee analysis of host artifacts, file systems, memory, logs, endpoint telemetry, malware indicators, authentication activity, network data, and other forensic evidence. Identify attack vectors, compromise timelines, persistence mechanisms, lateral movement, privilege escalation, data access, exfiltration indicators, and affected assets. Correlate forensic findings with SOC alerts, threat intelligence, SIEM data, EDR telemetry, vulnerability information, and incident response actions. Produce and review high‑quality forensic reports, investigative timelines, evidence summaries, executive summaries, and technical findings. Translate forensic evidence into clear risk, impact, and business language for technical and non‑technical audiences. Develop practical recommendations to support containment, eradication, recovery, control improvements, detection enhancements, and future prevention. Serve as the primary forensic point of contact during cybersecurity incidents, investigations, and follow‑up analysis activities. Brief SOC leadership, program leadership, system owners, legal or compliance stakeholders, and technical teams on forensic status, findings, risks, and next steps. Coordinate with SOC analysts, threat hunters, threat intelligence analysts, engineers, and other responders while maintaining disciplined investigative practices. Lead and mentor forensic analysts and contributors, including assigning tasks, reviewing work products, and supporting professional development. Review evidence, analysis methods, timelines, conclusions, and reports for accuracy, consistency, completeness, and defensibility. Support standardization of forensic playbooks, evidence checklists, reporting templates, workflows, and quality‑control practices. Maintain and improve forensic methodologies, tools, lab procedures, evidence repositories, and analysis workflows. Support lessons learned, after‑action reviews, tabletop exercises, and readiness activities that improve investigative speed and quality. Stay current with evolving attacker tradecraft, forensic artifacts, operating systems, cloud platforms, endpoint technologies, and investigative best practices. Required Skills 7+ years of experience in digital forensics, incident response, cyber investigations, SOC operations, threat analysis, or closely related cybersecurity roles. Proven experience leading formal cyber forensic investigations or incident‑response forensic workstreams. Hands‑on experience collecting, preserving, and analyzing digital evidence from enterprise systems, endpoints, logs, network sources, cloud platforms, or security tools. Strong understanding of forensic methodologies, chain of custody, evidence integrity, incident response lifecycle, and investigative documentation standards. Experience using forensic, EDR, SIEM, log analysis, or investigation tools such as EnCase, FTK, Magnet AXIOM, Autopsy/Sleuth Kit, Volatility, Velociraptor, Splunk, Sentinel, CrowdStrike, Microsoft Defender, or equivalent technologies. Excellent written and verbal communication skills, including the ability to produce defensible technical reports and brief stakeholders on findings and recommendations. Desired Skills Experience leading forensic investigations in regulated, government, critical infrastructure, law enforcement, defense, financial, or healthcare environments. Experience with Windows, Linux, cloud, identity, email, endpoint, memory, malware, and network forensics. Familiarity with cybersecurity frameworks and guidance such as NIST, MITRE ATT&CK, CIS Controls, ISO 27001, or incident response best practices. Certifications such as GCFA, GCFE, GCIH, GNFA, CISSP, CCE, EnCE, CFCE, CHFI, Security+, or equivalent. Experience briefing executives, legal counsel, compliance stakeholders, or senior technical leadership during high‑priority incidents. Experience developing forensic playbooks, training analysts, improving lab procedures, or building forensic readiness programs. ECS Federal LLC is an equal opportunity employer and does not discriminate or allow discrimination on the basis of any characteristic protected by law. All qualified applicants will receive consideration for employment without regard to disability, status as a protected veteran or any other status protected by applicable federal, state, or local jurisdiction law. #J-18808-Ljbffr ECS
- ...SOC Team Lead Job Locations US-OR-Portland ID... ...Operations Center (SOC), Digital Forensics, Service Desk, Splunk... ...integrated, high-performing cyber operations that protect the enterprise... ...during high-priority investigations and post-incident activities....SuggestedFull timeFor contractors
- ...Position Title: Lead Cyber Forensics Analyst Location: Portland, OR | Full-Time Cybervance is a rapidly growing information security... ...who will be charged with conducting computer forensic investigations, data recovery, electronic discovery, and participate in cybersecurity...SuggestedFull time
- Edgewaterit in Portland, Oregon is seeking a SOC Lead to oversee operations of the Security Operations Center. This role integrates cyber operations to protect against threats... ...a cyber team, and directing digital forensics efforts. Ideal candidates will have a degree...Suggested
- A global engineering and consulting firm seeks a Building Envelope Specialist in Portland, Oregon, to oversee and assess building envelope projects. Responsibilities include reviewing design documents, conducting field tests, and preparing reports. Candidates must have ...SuggestedWork at office
- Edgewater Federal Solutions, Inc. is seeking a SOC Lead to oversee Security Operations Center functions in Portland, Oregon. This pivotal... ...role involves managing SOC operations, directing digital forensics, supervising service desk personnel, and ensuring compliance with...Suggested
- ...a public notice for Drug Enforcement Administration Criminal Investigator GL-1811-7/9/11 positions open to U.S. Citizens. A job announcement... .... Gather and analyze evidence through investigative leads, seizures, arrests, execution of search warrants, and a variety...Permanent employmentLocal areaRelocationTrial periodWeekend work
- Overview The Registered Nurse (RN) is a professional caregiver who assumes responsibility and accountability for assessing, planning, implementing, and evaluating the care of patients. The staff RN utilizes the nursing process by use of technology, therapeutic intervention...Hourly payShift workNight shiftWeekend workAfternoon shift
- AAA Cooper Transportation, Inc. is seeking a City Dispatcher for its Portland, OR office. This role involves managing shipments throughout the system and coordinating with dispatch and service center management. Ideal candidates should have a high school diploma, knowledge...Work at office
- EmergencyMD is seeking a 911 Emergency Communications Dispatch Supervisor in Vancouver, WA. This role involves supervising call takers and dispatching for police, fire, and medical services. Candidates should possess strong leadership, decision-making, and communication...
- Levy Restaurants is seeking a Concessions Supervisor in Portland, Oregon, to oversee assigned concession locations and ensure compliance with service standards. The ideal candidate will have supervisory experience in a fast-paced environment and be ready to create memorable...
$98.6k - $147.9k
Vancouver Clinic is seeking a Lab Information Systems Supervisor in Vancouver, WA. This role involves managing clinical and anatomic pathology computer systems, overseeing projects, and ensuring compliance with regulations. The ideal candidate must have an Associate’s or...- WorkSource Oregon is seeking a Bilingual Mandarin Lab Supervisor for their Beaverton, Oregon location. This role involves team leadership, ensuring lab compliance with safety protocols, and translating technical protocols for effective communication. The ideal candidate...
- CRESA is seeking a 911 Emergency Communications Dispatch Supervisor in Vancouver, Washington. This supervisory role entails managing call takers and dispatch staff, ensuring efficient operations in the emergency communication center. Ideal candidates will have relevant ...
- Honey Bucket is looking for a Route Supervisor to lead our team of route drivers in Tualatin, Oregon. This role is vital for ensuring that we provide top-tier portable sanitation services while mentoring and developing our staff. As a Route Supervisor, you will oversee...
- ..., those who join the Secret Service are courageous, intelligent, strong and determined. A diverse team capable of balancing our investigative mission and fulfilling our protective legacy. Proven to be worthy of trust and confidence. Be tomorrow's Secret Service. Duties...Overseas
- A U.S. law enforcement agency is seeking a Criminal Investigator (Special Agent) responsible for preventing, detecting, and investigating... ...include conducting complex investigations, developing investigative leads, and coordinating with various agencies. Candidates must be U....
- .... Duties & Responsibilities The position is for a Criminal Investigator (Special Agent) with primary responsibility for prevention, detection... ...awareness of precedent decisions. Develop and investigate leads from known criminal activities, interwoven with legitimate...Work at officeLocal area
- ...disseminating actionable intelligence on cyber threats, adversary tactics,... ...with threat context during alert triage, investigation, escalation, and incident response activities... ...Collaborate with SOC analysts, threat hunters, forensics personnel, security engineers, Splunk...Contract workWork at office
$22.85 - $25 per hour
...support lifesaving changes for people affected by substance use and mental health conditions. POSITION TITLE: Residential Aide Lead Non-Exempt Position RESPONSIBLE TO: Residential Aide Supervisor and Program Director MAJOR DUTIES: The Lead works...Full timeTemporary workPart timeImmediate startTrial periodShift workNight shiftWeekend work- Honeybucket is seeking a Route Supervisor to lead our team of Route Drivers in Tualatin, Oregon. The role is crucial in fostering quality service and mentoring employees, while ensuring operational efficiency and customer satisfaction. The ideal candidate will possess...
$37 - $40 per hour
Columbia River Veterinary Specialists is hiring an Emergency Technician Supervisor (Dayshift) in Vancouver, WA. This role involves supervising technical staff and managing patient care, while also ensuring effective medical record keeping and handling financial processes...Hourly payDay shift- ...Parts Company is seeking a Production Supervisor in Portland, Oregon. This role specializes in managing production activities and leading a team to achieve quality targets. The ideal candidate should have 5-10 years of relevant experience and a high school diploma or GED...
- The Springs Living in Lake Oswego, Oregon, is seeking a Housekeeping Lead responsible for supervising the housekeeping team and maintaining high standards of cleanliness. In this role, you'll oversee inventory management, scheduling, and ensure exceptional service to residents...
$18.77 - $20.5 per hour
...seeking a full-time Store Supervisor to utilize management and customer service skills. In this role, you will oversee store operations, lead a team, and ensure excellent service. The position offers competitive pay of $18.77 - $20.50 per hour, alongside benefits like...Hourly payFull time- ...special agent applicants, positions requiring counter‑intelligence polygraphs, foreign task force officers, and internal affairs investigations. Responsibilities Investigate crimes, execute arrests, conduct interviews and interrogations, and preserve and document...Permanent employmentTemporary workWork at office
$21 per hour
...Supervisor, Front Of House Lead We are hiring immediately for full time SUPERVISOR, FRONT OF HOUSE LEAD positions. Location: Delta PDX - 7000 NE Airport Way, Suite 211, Portland, OR 97218. Note: online applications accepted only. Schedule: Full time schedule....Hourly payFull timePart timeLocal areaImmediate startRemote workWorldwideFlexible hours- ...Chief Artificial Intelligence Officer (CAIO) About the Company Leading digital transformation consulting firm specializing in IT, management & creative solutions Industry Information Technology and Services Type Public Company Founded 19...
$100 per hour
...contributing to the overall security and cleanliness of the facility. The officer works under the guidance of the Juvenile Detention Lead worker and plays a crucial role in supporting the rehabilitation and well-being of detained youth. What It Takes: **Integrity:**...Hourly payFull timeContract workPart timeFlexible hoursShift workRotating shift- Troy Center is seeking a dedicated Registered Nurse (RN) Supervisor in Troy, NY. This role involves overseeing resident care by managing nursing staff, fostering a compassionate atmosphere for residents and families, and ensuring proper documentation of care services. Candidates...Daily paid
$95k - $105k
..., OR. In this full-time role, you will supervise underground drilling operations and ensure compliance with safety standards while leading crew training initiatives. Candidates should have 5+ years of hands-on experience in underground drilling and strong communication...Full time
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Lead Cyber Forensics Investigator. Be the first to apply!
- cyber Portland, OR
- forensic science Portland, OR
- forensic pathologist Portland, OR
- forensic manager Portland, OR
- forensic psychiatrist Portland, OR
- forensic accounting analyst Portland, OR
- forensic analyst Portland, OR
- structural forensic engineer Portland, OR
- forensic consultant Portland, OR
- forensic investigator Portland, OR


