CrawlJobs Logo

Digital Forensic Examiner

boozallen.com Logo

Booz Allen Hamilton

Location Icon

Location:
United States , Linthicum Heights

Category Icon

Job Type Icon

Contract Type:
Not provided

Salary Icon

Salary:

86900.00 - 198000.00 USD / Year

Job Description:

Use your specialized functional, technical, and military experience to conduct forensic collections of electronic evidence, including information system and network devices, while applying forensic software and hardware applications to analyze digital media. Leverage your expertise, support client counterintelligence efforts, and share your methodologies with others. Focus on growing as a team to deliver the best support to our customers, so you’ll have resources for mentoring and learning new skills and tools. Provide the right information at the right time to support the critical needs of our warfighters.

Job Responsibility:

  • Conduct forensic collections of electronic evidence, including information system and network devices
  • Apply forensic software and hardware applications to analyze digital media
  • Support client counterintelligence efforts
  • Share methodologies with others

Requirements:

  • 2+ years of experience with host based forensic
  • TS/SCI clearance
  • HS diploma or GED and 30+ years of experience working in a professional environment, Associate's degree and 24+ years of experience working in a professional environment, Bachelor's degree and 22+ years of experience working in a professional environment, or Master's degree and 20+ years of experience working in a professional environment
  • DoD Certified Digital Forensic Examiner (DFE) Certification

Nice to have:

  • 2+ years of experience with mobile device forensics
  • Certified Forensic Computer Examiner (CFCE), GIAC Certified Forensic Examiner (GCFE), or EnCase Certified Examiner Certification
What we offer:
  • Health, life, disability, financial, and retirement benefits
  • Paid leave
  • Professional development
  • Tuition assistance
  • Work-life programs
  • Dependent care
  • Recognition awards program

Additional Information:

Job Posted:
March 01, 2026

Work Type:
On-site work
Job Link Share:

Looking for more opportunities? Search for other job offers that match your skills and interests.

Briefcase Icon

Similar Jobs for Digital Forensic Examiner

Consultant, DFIR, Reactive Services

This role is client-facing and requires the Consultant to produce deliverables b...
Location
Location
United States , New York
Salary
Salary:
102000.00 - 139500.00 USD / Year
paloaltonetworks.it Logo
Palo Alto Networks Italia
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • 2+ years of incident response or digital forensics experience
  • Proficient with host-based forensics and data breach response
  • Experienced with EnCase, FTK, X-Ways, SIFT, Splunk, Volatility, WireShark, TCPDump, and open-source forensic tools
  • Bachelor’s Degree in Information Security, Digital Forensics, Cyber Security, Computer Science, related field, or equivalent experience required
Job Responsibility
Job Responsibility
  • Perform reactive incident response functions including host-based analysis on Windows, Linux, and Mac OS X systems to identify Indicators of Compromise (IOCs)
  • Examine firewall, web, database, and other log sources to identify evidence of malicious activity
  • Investigate data breaches leveraging forensics tools to determine the source of compromises
  • Serve an active role on unit 42 incident response engagements - guiding clients through digital forensics investigations, containment of security incidents, and providing tactical remediation recommendations
  • Ability to perform light travel requirements as needed to meet business demands (on average 30%)
What we offer
What we offer
  • May include restricted stock units and a bonus
  • Fulltime
Read More
Arrow Right

Digital Forensic Examiner

Critical decisions are made every single day in the military. What if you could ...
Location
Location
United States , Linthicum Heights
Salary
Salary:
86900.00 - 198000.00 USD / Year
boozallen.com Logo
Booz Allen Hamilton
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • 2+ years of experience with host based forensic
  • TS/SCI clearance
  • HS diploma or GED and 30+ years of experience working in a professional environment
  • Associate's degree and 24+ years of experience working in a professional environment
  • Bachelor's degree and 22+ years of experience working in a professional environment
  • Master's degree and 20+ years of experience working in a professional environment
  • DoD Certified Digital Forensic Examiner (DFE) Certification
Job Responsibility
Job Responsibility
  • Conduct forensic collections of electronic evidence including information system and network devices
  • Apply forensic software and hardware applications to analyze digital media
  • Support client Counterintelligence efforts
  • Provide the right information at the right time to support the critical needs of our warfighters
What we offer
What we offer
  • Health, life, disability, financial, and retirement benefits
  • Paid leave
  • Professional development
  • Tuition assistance
  • Work-life programs
  • Dependent care
  • Recognition awards program
Read More
Arrow Right

Lecturer in Cybersecurity

BSBI’s mission is to educate students to effectively shape the future and become...
Location
Location
Germany , Berlin, Hamburg
Salary
Salary:
55.00 EUR / Hour
gusgermany.com Logo
GUS Germany GmbH
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • PhD or PhD Candidate (in specific cases) with strong theoretical and practical knowledge in at least one of the following areas: (1) Cyber Security, (2) Information Security, (3) Network Security, (4) Digital Forensics
  • Industry certifications such as CISSP, CEH, OSCP, CRISC, CCNA, and CCNP are highly recommended
  • Prior teaching experience in higher education at University level
  • Very good knowledge of Windows OS, of MS Office suite (Excel, Word, Outlook, PowerPoint) and Microsoft Teams
  • Scientific publications in a related discipline
  • Fluent in spoken and written English (C2 level)
  • Knowledge of Educational Platforms (i.e. Canvas, Blackboard etc.)
  • Working knowledge of timetabling software
  • Sound knowledge of study regulations and rules
  • Very good organisational and communication skills
Job Responsibility
Job Responsibility
  • Conduct teaching and examination duties in accordance with the applicable examination and study regulations for students
  • Creatively design and develop instructional materials that enhance the learning experience and engagement of students
  • Revise, design, and develop new curricula for assigned modules as required, ensuring alignment with academic standards and learning outcomes
  • Develop and set examinations or other assessment instruments to ensure that written/rewritten examinations are provided alongside regular examinations at least two weeks prior to the conclusion of the semester or as specified
  • Grade written examinations and other assessment results within the deadlines stipulated by the Administration Office and submit the evaluated materials to the office promptly
  • Organise and facilitate the inspection of written examinations or other assessed performances
  • Actively participate in teaching evaluations by completing and submitting evaluation sheets prepared for each course
  • Supervise student dissertations, providing guidance and feedback, and assess and grade dissertations in accordance with academic standards
  • Parttime
Read More
Arrow Right

Consultant, DFIR, Reactive Services

As a client-facing Consultant in our reactive services team, you will be a criti...
Location
Location
United States , Santa Clara
Salary
Salary:
102000.00 - 139500.00 USD / Year
paloaltonetworks.it Logo
Palo Alto Networks Italia
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • 2+ years of incident response or digital forensics experience
  • Proficient with host-based forensics and data breach response
  • Experienced with EnCase, FTK, X-Ways, SIFT, Splunk, Volatility, WireShark, TCPDump, and open-source forensic tools
  • Bachelor’s Degree in Information Security, Digital Forensics, Cyber Security, Computer Science, related field, or equivalent experience required
Job Responsibility
Job Responsibility
  • Lead reactive incident response engagements, guiding clients through digital forensics investigations and security incident containment
  • Perform host-based forensic analysis across Windows, Linux, and Mac OS X systems to identify Indicators of Compromise (IOCs)
  • Investigate data breaches using advanced forensics tools to determine the source and scope of malicious activity
  • Examine firewall, web, database, and other log sources to identify evidence and artifacts of compromise
  • Proactively collaborate with clients and internal teams, providing expert guidance on tactical remediation recommendations to improve their security posture
  • Produce and present high-quality deliverables for client engagements, communicating complex findings to both technical and executive stakeholders
  • Travel as needed (approximately 30%) to support client-facing engagement demands
What we offer
What we offer
  • restricted stock units
  • bonus
  • Fulltime
Read More
Arrow Right

Principal Consultant, DFIR, Reactive Services

As a Principal Consultant for our reactive services, you will serve as a client-...
Location
Location
United States , Santa Clara
Salary
Salary:
151400.00 - 208100.00 USD / Year
paloaltonetworks.it Logo
Palo Alto Networks Italia
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Bachelor’s Degree in Information Security, Computer Science, Digital Forensics, Cyber Security, or a related field, or equivalent military experience
  • 6+ years of direct incident response or digital forensics consulting experience
  • Proficiency with host-based forensics, data breach response, and forensic tools such as EnCase, FTK, X-Ways, SIFT, Splunk, Volatility, or WireShark
  • Demonstrated experience managing the full lifecycle of a technical consulting engagement
  • Ability to travel as needed to meet business demands, averaging approximately 20%
Job Responsibility
Job Responsibility
  • Lead and manage complex incident response engagements, including scoping work, guiding clients through forensic investigations, and containing security incidents
  • Perform reactive incident response functions, including host-based analysis of Windows, Linux, and Mac OS X systems to identify Indicators of Compromise (IOCs)
  • Investigate data breaches by leveraging advanced digital forensics tools (e.g., EnCase, FTK, X-Ways, SIFT, Splunk) to determine the source and scope of compromises
  • Examine and analyze firewall, web, database, and other log sources to identify evidence of threat actor activity
  • Collaborate with clients and internal teams to provide strategic guidance and recommendations for long-term remediation and security posture improvement
  • Develop and produce high-quality, client-facing deliverables, including detailed reports and executive summaries
  • Provide mentorship and guidance to junior team members on incident response and forensics best practices, empowering others to develop their skills
What we offer
What we offer
  • restricted stock units
  • bonus
  • employee benefits
Read More
Arrow Right

Cybersecurity Incident Handler

As a Cybersecurity Incident Handler, you’ll take the lead on investigating and m...
Location
Location
United States , Morristown
Salary
Salary:
86000.00 - 109250.00 USD / Year
zelis.com Logo
Zelis
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Bachelor of Computer Science, Engineering, Information Security, Information Technology, or 4+ years of equivalent experience
  • 3+ years of enterprise level incident handling
  • Ability to partner with enterprise teams within a cybersecurity context
  • Effective oral and written communication skills with experience in cybersecurity technical process documentation
  • Demonstrated cyber defense and information security passion
  • Proven record of thought leadership via innovation and non-traditional solutions
  • Fundamental understanding of IT Security practices/programs/tooling, with demonstrated examples of driving initiatives forwards
Job Responsibility
Job Responsibility
  • Incident Analysis & Handling: Triage alerts, investigate suspicious activity, lead incident response steps, and coordinate containment and recovery efforts
  • Data Collection & Normalization: Make sure logs and security data are gathered correctly, cleaned up, and organized so the team can analyze them effectively
  • Digital Forensics: Examine systems, files, logs, and network data to understand what happened during security events
  • Mentoring & Training: Help newer analysts grow by sharing your experience, offering guidance, and running training sessions when needed
  • Technical / Process Guidance: Assist team members with technical questions, tool usage, investigation methods, and established response workflows
  • Shift Leadership: Act as the point person during your shift: manage workload, oversee investigations, ensure smooth handoffs, and support teammates. Participate in a rotating on-call schedule as required
  • Innovation: Look for opportunities to improve processes, recommend new tools or automations, and help refine how the team operates
What we offer
What we offer
  • 401k plan with employer match
  • flexible paid time off
  • holidays
  • parental leaves
  • life and disability insurance
  • health benefits including medical, dental, vision, and prescription drug coverage
  • Fulltime
Read More
Arrow Right

Senior Consultant, DFIR, Reactive Services (Unit 42) - Remote Weekend Shift

This role is client-facing and requires the Senior Consultant to help lead and p...
Location
Location
United States , New York
Salary
Salary:
128000.00 - 176000.00 USD / Year
paloaltonetworks.it Logo
Palo Alto Networks Italia
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • 4+ years of incident response or digital forensics experience with a passion for cyber security
  • Proficient with host-based forensics and data breach response
  • Experienced with EnCase, FTK, X-Ways, SIFT, Splunk, Volatility, WireShark, TCPDump, and open source forensic tools
  • Incident Response Consulting preferred
  • Bachelor’s Degree in Information Security, Computer Science, Digital Forensics, Cyber Security or related field or equivalent military experience required
Job Responsibility
Job Responsibility
  • Perform reactive incident response functions including but not limited to - host-based analysis functions through investigating Windows, Linux, and Mac OS X systems to identify Indicators of Compromise (IOCs)
  • Examine firewall, web, database, and other log sources to identify evidence and artifacts of malicious and compromised activity
  • Investigate data breaches leveraging forensics tools including Encase, FTK, X-Ways, SIFT, Splunk, and custom Unit 42 investigation tools to determine source of compromises and malicious activity that occurred in client environments
  • Lead incident response engagements to guide clients through forensic investigations, contain security incidents, and provide guidance on longer term remediation recommendations
  • Mentorship of Incident Response Consultants in incident response and forensics best practices
  • Ability to perform light travel requirements as needed to meet business demands (on average 30%)
What we offer
What we offer
  • restricted stock units
  • bonus
  • employee benefits
Read More
Arrow Right

Senior Consultant, IR

As a Senior Consultant in Unit 42’s Digital Forensics and Incident Response (DFI...
Location
Location
Australia , Sydney
Salary
Salary:
Not provided
paloaltonetworks.com Logo
Palo Alto Networks
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • 4+ years of professional experience using leading industry tools and technologies (e.g., Disk forensics tools, EDR technology, SIEM) for performing Digital Forensics and Incident Response (DFIR) investigations at scale
  • Proficient with host-based forensics on both Windows, Linux and Mac operating systems
  • Experienced with tooling such as EnCase, FTK, X-Ways, SIFT, Splunk, Volatility, WireShark, TCPDump, and other open source forensic tools
  • Solid understanding of the cyber threat landscape, and an ability to apply threat-led approaches to security engagements
  • Identified ability to grow into a valuable contributor to the practice and, specifically be collaborative and able to build relationships internally, externally, and across all PANW functions, including the sales team
  • have the potential and capacity to understand aspects of the business and develop a thorough understanding of PANW products over time
  • have/or a desire to grow an external presence via public speaking, conferences, and/or publications
  • ability to build credibility, executive presence, and gravitas
  • be able to have a meaningful and rapid delivery contribution
  • Ability to become proficient in at least two Palo Alto Networks products, including developing a deeper understanding of how our products integrate into an organisations cyber security program, and can be leveraged to produce data driven insights
Job Responsibility
Job Responsibility
  • Perform reactive incident response functions including but not limited to Host-based analysis outcomes via investigating Windows, Linux, and Mac OS X systems to identify Indicators of Compromise (IOCs)
  • Examine firewall, web, database, and other log sources to identify evidence and artefacts of malicious and compromised activity
  • Investigate data breaches leveraging industry standard forensics tools such as Encase, FTK, X-Ways, SIFT, Splunk, and custom Unit 42 investigation tools to determine source of compromises and malicious activity that occurred in client environments
  • Conduct triage and analysis tasks leveraging best of breed Endpoint Detection and Response (EDR) technology such as Cortex XDR, CrowdStrike, MDE etc.
  • Supported by senior team members, undertake incident response engagements to guide clients through forensic investigations, contain security incidents, and provide guidance on longer term remediation recommendations
  • Provide mentorship of Incident Response Consultants in incident response and forensics best practices
  • Working with practice leads to scope, schedule and deliver engagements end-to-end
  • Report generation that clearly communicates investigations and assessment details, results, and remediation recommendations to clients
  • Provide recommendations to clients on specific security measures to monitor and protect sensitive data and systems from infiltration and cyber-attacks including response and recovery of a data security breach
  • Contributing alongside practice leads to the continuous improvement and innovation of our services based on key drivers such evolving technology, threat landscape, regulatory requirements, lessons learned, industry standards and client requirements
  • Fulltime
Read More
Arrow Right