Booz Allen Hamilton-logo
Booz Allen Hamilton
·
January 4, 2026
Apply Now
This job has closed.

Cyber Defense Forensics Analyst

San Antonio, TX
Full-time
Hybrid
$69K/yr - $158K/yr
Entry, Mid Level
Booz Allen Hamilton is seeking a Cyber Defense Forensics Analyst to join their security operations center. In this role, you will be responsible for responding to and mitigating cyber threats, conducting incident response investigations, and analyzing security data to protect critical infrastructure.
Apply Now

Responsibilities

  • As a security operations center analyst, you’re in the middle of the action, responding to and mitigating threats in real time
  • You’re the first line of cyber defense for your organization, and they look to you for guidance on best practices and security measures
  • We need a SOC analyst like you to help us secure critical infrastructure from the constant onslaught of cyber-attacks
  • As an analyst on our team, you’ll develop network defense skills as you learn to monitor, detect, and analyze threats by interacting directly with affected users and leveraging state-of-the-art technologies
  • When an incident is detected, you’ll work with the team to collect data to help incident response understand and mitigate the threat
  • You’ll analyze alerts to figure out just how many systems are affected and initiate recovery efforts
  • You’ll contribute to assessments and learn how to analyze patterns to understand attackers’ goals to stop them from succeeding

Qualification

Required

  • Experience conducting digital forensics or incident response investigations within classified DoD environments
  • Experience with forensic tools such as EnCase, FTK, Autopsy, Cellebrite, Volatility, or X-Ways
  • Experience with SIEMS such as Splunk or ArcSight
  • Knowledge of Windows, Linux, and network forensic artifacts, including memory and disk analysis
  • Ability to identify, triage, and report events that occur to protect data, information systems, and infrastructure
  • Ability to collect, preserve, and analyze evidence in accordance with DoD or federal chain-of-custody standards
  • Ability to find trends, patterns, or correlations in security data
  • TS/SCI clearance
  • HS diploma or GED
  • DoD 8140 baseline Level II Certification such as Security+, CySA+, CISSP, or DoD Cyber Workforce Framework Certification

Preferred

  • Experience supporting Cyber Protection Teams (CPTs), Defensive Cyber Operations (DCO), or Air Force cyber missions
  • Experience with Elastic, Splunk, Wireshark, or MISP for multi-source data correlation
  • Knowledge of malware analysis, reverse engineering, or memory forensics
  • Ability to prepare and brief forensic findings to commanders or senior decision-makers
  • Bachelor's degree in Digital Forensics, Information Assurance, or Cybersecurity
  • GCFA, GCFE, CHFI, or CEH Certifications

Benefits

  • Health, life, disability, financial, and retirement benefits
  • Paid leave
  • Professional development
  • Tuition assistance
  • Work-life programs
  • Dependent care
  • Recognition awards program
Booz Allen Hamilton is a consulting firm that specializes in analytics, technology, and engineering.
Glassdoor
4.2
Founded in 1914
Mclean, Virginia, USA
10001+ employees
http://www.boozallen.com
Booz Allen Hamilton is a consulting firm that specializes in analytics, technology, and engineering.
Glassdoor
4.2
Founded in 1914
Mclean, Virginia, USA
10001+ employees
http://www.boozallen.com