Digital Forensics and Incident Analyst (TS)
Agile Defense
Washington, DC
The Role
The analyst supports a Threat Analysis and Investigations function within a federal SOC, providing Tier 2 and Tier 3 incident response and digital forensics support. Day-to-day work spans log analysis, intrusion artifact collection, malware analysis, memory forensics, file system examination, and the production of written analytical reports for legal, oversight, and law enforcement stakeholders.
Skills & Experience
Candidates must demonstrate proficiency in file system forensics (NTFS, FAT, EXT), malware and memory analysis, chain-of-custody procedures, hashing (MD5, SHA), and network security concepts. Experience with enterprise forensic tooling, virtual machine environments (VMware, Hyper-V, EC2), and case management platforms is expected. A Top Secret clearance is required.
Who It Suits
This role suits an experienced digital forensics practitioner with a government or defence background who is comfortable operating within strict legal and procedural frameworks. Those aligned to the NICE Framework with hands-on incident response experience and the ability to communicate technical findings clearly to non-technical authorities will thrive here.
Typical advertised salary for Digital Forensics roles in United States: $90,000–$154,000 (median $122,000 — from 207 recent listings analysed by Forensic Focus).
Learn More/Apply





