**TS/SCI required** 100% Remote – Cyber Forensics Analyst

Zachary Piper Solutions, LLC

Zachary Piper Solutions is seeking a Cloud Forensics Analyst to join one of our clients in supporting the mission of a Federal Agency. This position requires a TS/SCI clearance and at least five (5) years of experience – and is currently 100% remote

The Cloud Forensics Analyst is a recently identified position and affords ample opportunities for training and career growth within the Cloud Forensics field The role will provide support for onsite and remote incident response to civilian Government agencies and critical asset owners who experience cyber-attacks

The ideal applicant will join a Hunt and Incident Response Team (HIRT) which is responsible for securing the Nation's cyber and communications infrastructure This program provides Federal Agencies with front-line response for cyber incidents and proactively hunts for malicious cyber activity

Responsibilities of the Cloud Forensics Analyst:

• Will assist in acquiring/collecting computer artifacts (e

g malware, user activity, link files, etc) in support of onsite engagements – triage electronic devices to assess evidentiary value

• Execute appropriate courses of actions (COA) in response to identified threats and analyze any anomalous in network activity

• Correlate forensic findings to network events in support of developing an intrusion narrative and document system state information (eg running adequate processes and proper network connections) prior to imaging as is required

• Would be expected to perform forensic triage of an incident to include determining scope, urgency and potential impact and document forensic analysis from initial participation through resolution

• Following an incident or threat analysis would be expected to collect, process, preserve, analyze, and present computer related evidence While simultaneously coordinate with Government end-users to validate/investigate alerts or additional preliminary findings

Qualifications for the Cloud Forensics Analyst:

• Bachelor of Science in Computer Science, Computer Engineering, Information Technology, or industry relevant degree; or HS Diploma & 7-9 years of host or digital forensics experience

• 5 + Years of experience in cybersecurity and cybersecurity operations – experience in cyber forensic investigations using leading edge technologies and industry standard forensic tools

• Understanding of APIs and proficiency with PowerShell/PowerShell modules leveraged to conduct API – Proficiency with scripting languages (eg Bash, Python, PowerShell, JS), must have an understanding of Azure administration, M365 administration and/or development/DevOps

• Awareness of strategies/architectures involved in implementing M365/Azure authentication Experience in acquisition, processing, and analysis of digital evidence from onsite enterprises and cloud native platforms

• Understanding of SaaS, PaaS and IaaS in the Cloud Environment, authoring cyber investigative reports documenting digital forensics findings, analyze and characterize cyber-attacks unique to cloud skilled in identifying different classes of attacks and attack stages

• Understanding of system and application security threats and vulnerabilities, experience in proactive analysis of systems and networks, to include creating trust levels, and understanding cloud authentication methods

• Must have an active TS/SCI clearance and be able to obtain DHS Entry on Duty (EOD) suitability

Desired Certifications (preferred-not required to start):

• GCLD, GCPS, GCPN, GWEB, CCSP, GCFA, GCFE, GCIH, EnCE, CCE, CFCE, CISSP, Kubernetes Security Specialist, Microsoft 365 Certifications, Microsoft Azure Certifications AWS Certifications, SANS Cloud Courses (SEC541, SEC584, SEC588)

Compensation for the Cloud Forensics Analyst include:

• Salary Range:
• $90,000 – $125,000 **depending on experience**

• Full Benefits: (Cigna Healthcare, Dental, Vision, 401k, etc)

