Overview
Position Summary : The Senior Computer Forensics Specialist leads the Digital Media Forensics Team in support of counterintelligence (CI) and counterterrorism (CT) investigations. This role executes the full forensic lifecycle (onsite / offsite acquisition, lab analysis, reporting) for hostbased and mobile devices, conducts incident response / malware triage, and mentors other forensics specialists. The Senior Computer Forensic Specialist also designs and delivers training, evaluates emerging technologies (software / hardware), performs operational security assessments and authors / maintains SOPs to standardize and improve forensic workflows.
Miniumum Qualifications
Position Requisites :
- Must be a U.S. Citizen
- Active TS / SCI clearance required
Education / Experience Requirements
High school diploma and 14 years of relevant experience with at least a portion of the experience in the last two years ORAssociate degree and 12 years of relevant experience with at least a portion of the experience in the last two years ORBachelors degree and 10 years of relevant experience with at least a portion of the experience in the last 2 years ORMasters degree and 8 years of relevant experience with at least a portion of the experience in the last 2 years.Additional Experience Requirements
Hands-on experience in the last 2 yearsProven execution of full forensic lifecycle with chain of custody and evidentiary protocols.Ability to collaborate with CI / HUMINT, Cyber, and Tech Ops stakeholders.Certification Requirements
DoD Certified Digital Forensic Examiner (DFE) (required)Additionally one of the following : CFCE (preferred), GCFE or EnCase certified ExaminerPreferred Qualifications
5+ years recent digital forensics in DoD / IC environments; experience in malware triage and incident response supporting CI / CT missions.Additional certifications (e.g., EnCE, CFCE, GCFA / GNFA, GREM, CCE).Experience designing / running forensic labs, tool validation programs, and writing SOPs; history of optimizing workflows and reducing cycle time.Familiarity with RMF, ACIC editorial standards, and integration with Tech Ops / CyberRoles and Responsibilities
Support CI / CT investigations by researching, designing, deploying, and leading training events for examiners and analysts; create training artifacts and checklists that codify best practices.Conduct operational security assessments tied to forensic operations and coordinate with Tech Ops / Cyber teams for secure handling and storage of evidence.Evaluate and test emerging digital forensic software / hardware; recommend adoption paths and integration steps; document validation / verification of tools for evidentiary defensibility.Develop and refine forensic procedures / SOPs and endtoend workflows (acquisition ? analysis ? reporting) to improve cycle times and quality against established thresholds.Recover data (documents, photos, emails, log files) from hostile or damaged systems; hunt for host / mobile findings.Perform mobile device forensics (logical / physical extractions, app artifact analysis); corroborate host / mobile findings for holistic case narratives.Maintain chain of custody and adhere to rules of evidence; prepare lab worksheets, imaging notes, and custody logs for audit readiness.Produce intelligence level reporting and detailed process documentation (e.g., AARs, capability / architecture assessments, policy analysis, analytical information reports); ensure timeliness, clarity, and accuracy.Brief findings to technical / nontechnical audiences; provide testimony support when required.Coordinate priorities and schedules with COR / TPOC / PMO; provide status inputs and update risk / issue logs for forensic operations.Position availability is contingent upon contract award
#J-18808-Ljbffr