Seize your opportunity to make a personal impact as a CI Digital Forensics Examiner supporting our intelligence customer. GDIT is your place to make meaningful contributions to challenging projects and grow a rewarding career. At GDIT, people are our differentiators. As a CI Digital Forensics Examiner, you will help ensure that today is safe and tomorrow is smarter.
Our work depends on a TS / SCI level cleared CI Digital Forensics Examiner joining our team to support our customer.
Duties & Responsibilities :
- Perform Digital Media Acquisition and Digital Forensic Review of various platforms to include Windows, Linux, and Mac OS based systems using a variety of digital forensic tools.
- Investigate suspected instances of computer, mobile device, and network penetrations.
- Ingest media into an archive, copy media images, and employ advanced media forensics tools during the course of a forensic examination (ENCASE and Windows Forensic toolkit are two of the many tools used for media forensics).
- Investigate computer viruses and malicious code and prepare, write, and present reports and briefings.
- Provide weekly status updates when conducting forensics.
- Provide a written report at the conclusion of each forensics examination. Reports will include, at a minimum, the following information :
- Case File Number
- Computer Name
- User Name, File Names, etc.
- Background
- Investigation Details
- Status / Disposition
- Recommendations
- Intelligence Information Report (if deemed necessary by government lead)
Personnel will support CI Incident Assessments to determine possible foreign intelligence entity involvement with the customer's computer system. In the process of supporting an Incident Assessment, reports must be produced and updated weekly. Reports will include, at a minimum, the following information :
Case File NumberComputer NameUser NameBackgroundInvestigation DetailsStatus / DispositionSkills and Experience :
Required :
7+ years of forensic experience in CI or law enforcement investigations.Gain and maintain, at vendor's expense, a digital forensic examiner certification within six months of assignment. Qualifying certification sources include government, military, and industry.Meet minimum training requirements, within one calendar year of assignment, for access to DoD networks in accordance with DoDM 8140.03, by attaining and maintaining at least baseline certification for DoDM 8140.03 Information Assurance Technician Level II compliance.Desired :
Be a credentialed graduate of an accredited federal CI, federal law enforcement, DoD CI, or DoD law enforcement training academy.Possess post–graduate degree in Science, Technology, Engineering, Mathematics disciplines.Possess and demonstrate knowledge and understanding of foreign adversaries' security and intelligence services, terrorist organizations, and cyber threats posed to customer, DoD and IC partners.Possess and provide a DoD Cyber Crimes Investigator certification.Experience with the latest forensic technologies such as Access Data Forensic Toolkit (FTK).Possess and provide a digital forensic examiner certification. Qualifying certification sources include government, military, and industry.Location : Customer Site
Clearance : Active TS / SCI with ability to obtain CI Poly
US Citizenship Required
J-18808-Ljbffr