Skip to main content
Agile Defense logo

Digital Forensics Lead

Agile Defense
Full Time
Reston, VAPosted 10 weeks ago

Job Description

About Agile Defense

At Agile Defense we know that action defines the outcome and new challenges require new solutions. That’s why we always look to the future and embrace change with an unmovable spirit and the courage to build for what comes next.

Our vision is to bring adaptive innovation to support our nation's most important missions through the seamless integration of advanced technologies, elite minds, and unparalleled agility—leveraging a foundation of speed, flexibility, and ingenuity to strengthen and protect our nation’s vital interests.

Requisition #: 1436

Job Title: Digital Forensics Lead

Location: Reston, VA

Clearance Level: TS (SCI Eligible)

SUMMARY

Agile Defense is seeking highly qualified Digital Forensics Lead to support USG enterprise cybersecurity program delivering 24/7/365 Cybersecurity Operations Center (SOC) services. These positions provide strategic leadership, operational oversight, and deep technical expertise across key mission areas, including cyber defense, incident response, threat hunting, insider threat, threat intelligence, engineering, and modernization initiatives.

JOB DUTIES AND RESPONSIBILITIES

Leads digital forensics and insider-threat investigations, ensuring proper evidence handling, strict chain-of-custody, and high-confidence analysis to enable rapid incident containment and remediation. Ability to perform endpoint and network-based forensic analysis, malware triage, and insider-threat investigations. Utilize customer SIEM Design and maintain dashboards, reports, and workflow documentation for forensics and incident response processes; provide mentorship to junior analysts.

QUALIFICATIONS

Education, Background, and Years of Experience

Bachelor’s degree in computer science, Engineering, STEM, Information Technology, or Cybersecurity

ADDITIONAL SKILLS & QUALIFICATIONS

Required Skills

TS (SCI Eligible)

Candidates will have a minimum of seven (7) years of professional experience with a solid understanding of incident response, insider threat investigations, digital forensics, and cyber threats. A minimum of five (5) years of hands-on experience with experience in the last two (2) years that includes bare metal, cloud or virtual system-based and network-based security monitoring, identifying and analyzing anomalous activities with familiarity in insider threat monitoring software, endpoint forensic tools, intrusion detection systems, intrusion analysis functions, security information event management (SIEM) platforms, endpoint detection and response tools, security operations ticket management.

The ability to create insider threat focused dashboards, reports and workflow diagrams. Experience collecting data, chain of custody and reporting results; handling and escalating security issues or emergency situations appropriately; providing incident response capabilities to isolate and mitigate threats to maintain confidentiality, integrity, and availability for protected data. Applicant will have excellent written and oral communication skills, be able to work independently and as part of a team. Willingness and experience with mentoring junior members in an open collaborative environment.

Preferred Skills

GCFA, GREM, GFCE, GNFA, GIME, GASF, GX-FA, Encase, Cellebrite or equivalent preferred.

Mobile Forensics

WORKING CONDITIONS

Environmental Conditions

Hybrid role in Reston, VA

Strength Demands

Physical Requirements

About Agile Defense

Agile Defense logo

Agile Defense

agiledefense.com

On-site

Want AI-powered job matching?

Upload your resume and get every job scored, your resume tailored, and hiring manager emails found - automatically.

Get Started Free