Digital Forensics Analyst

Booz Allen Hamilton

Confirmed live today High trust

Quick summary

Work type
On-site
Location
Bethesda, MD
Salary
$62,000–$141,000 / yr
Employment
Full-time
Posted
23 days ago
Freshness
Confirmed live today

Market check

Salary context

Below market

How this pay compares to similar roles

Similar $140k
This role $102k
$49k $184k
below market most similar roles pay here above market

This role pays less than 88% of similar roles. Most pay $117,500–$162,000 — the blue band above. At the midpoint, this role pays about $102k versus about $140k for comparable roles.

Based on 240 similar postings.

Employer

About Booz Allen Hamilton

Booz Allen Hamilton is a management and technology consulting firm that provides analytics, digital, engineering, and cybersecurity solutions primarily to U.S. government agencies and commercial clients. Industry: Management & Technology Consulting

Booz Allen Hamilton currently has 1504 open roles on FindRole.

Listed pay typically runs $86,800–$198,000 across 918 roles with salary data.

Most-posted roles

View all roles at Booz Allen Hamilton

At a glance

TL;DR · Digital Forensics Analyst

The Digital Forensics Analyst joins a 24x7x365 Security Operations Center and Incident Response team to conduct evidence collection, forensic analysis, data recovery, and reporting during incident investigations. The analyst performs hands-on activities including forensic imaging, analyzing physical and virtual drives, and documenting incidents while developing forensics playbooks and standard operating procedures. Key responsibilities involve investigating security events across Linux, Windows, and macOS platforms and network-based systems. The role requires proficiency with the Splunk SIEM platform and forensic recovery of evidence devices (FRED). Candidates must correlate data from multiple technical sources to identify malicious activity and artifacts. Technical skills include using tools like EnCase, FTK, X-Ways, Cellebrite, Autopsy, KAPE, and Velociraptor to support federal stakeholders and produce high-quality technical documentation and briefings.

What you'll do

  • Conduct forensic imaging and analysis of physical and virtual drives.
  • Collect, store, and maintain forensic images using FRED and other forensic tools.
  • Perform evidence collection and data recovery during security incident investigations.
  • Analyze and correlate data from multiple technical sources to identify malicious activity.
  • Develop forensics playbooks, standard operating procedures, and chain-of-custody documentation.
  • Produce high-quality incident reports and technical briefings for technical and non-technical audiences.
  • Support the SOC by investigating security events and performing ad-hoc forensic analysis.

What we're looking for

  • 2+ years of experience in a SOC providing forensic analysis, imaging, log and evidence analysis, and incident documentation.
  • Experience analyzing and responding to forensic security requests across Linux, Windows, or macOS and network-based platforms.
  • Experience developing or contributing to evidence collection, examination, chain-of-custody documentation, or standard operating procedures.
  • Experience using Splunk SIEM platform to support investigations and evidence enrichment.
  • Experience using a forensic recovery of evidence device (FRED) to collect, store, and maintain forensic images.
  • Ability to analyze and correlate data from multiple technical sources to identify malicious activity, artifacts, or investigative leads.
  • Ability to communicate clearly with technical and non-technical audiences and produce high-quality incident reports and briefings.
  • Bachelor's degree.

More like this

Similar roles

Digital Forensic Examiner

Booz Allen Hamilton

Warrenton, OR +1 23 days ago $112,900–$257,000
Digital Forensics Incident Response Log Analysis Python PowerShell Windows Linux EnCase FTK Axiom Splunk Elk Stack Timeline Analysis IOCs

Digital Forensic Examiner, Mid

Booz Allen Hamilton

Washington, DC 29 days ago
Digital Forensics Incident Response Log Analysis Python PowerShell Windows Linux Mac EnCase FTK Axiom Splunk Elk Stack Timeline Analysis IOCs

Digital Forensic Examiner, Mid

Booz Allen Hamilton

Washington, DC 29 days ago
Digital Forensics Incident Response Log Analysis Python PowerShell Windows Linux Mac EnCase FTK Axiom Splunk Elk Stack Timeline Analysis IOCs

Digital Network Exploitation Analyst

Booz Allen Hamilton

Wahiawa, HI 74 days ago $99,000–$225,000
SIGINT Network Exploitation Vulnerability Analysis Network Mapping CNO Social Network Analysis MASINT IMINT HUMINT Computer Protocols Network Topology Telecommunications Networks
5+ yrs exp

Cybersecurity Forensics and Incident Response Analyst

Bosch

Pittsburgh, PA 11 days ago
Digital Forensics Incident Response Python Bash PowerShell SIEM SOAR EDR Malware Analysis Packet Analysis Splunk Volatility EnCase FTK SIFT X-Ways Sleuth Kit Autopsy Velociraptor Active Directory MITRE ATT&CK Cryptography Network Security IDS/IPS Firewalls Web Application Firewalls Machine Learning AI Data Analysis
3+ yrs exp

Digital Analytics Analyst

US Bank

Chicago, IL +1 21 days ago
SQL Python R Hadoop SAS Power BI Tableau Excel Predictive Modeling Big Data Statistics AI Data Analytics
5+ yrs exp Hybrid