Jobs and Careers
AC

Digital Forensics & Incident Response Associate Manager

Accenture Federal Services
United Statesfull_timeVerifiedPosted 24 Feb 2025
💰 $184,500/yr($93,700/yr$184,500/yr)

About the role

At Accenture Federal Services, nothing matters more than helping the US federal government make the nation stronger and safer and life better for people. Our 13,000+ people are united in a shared purpose to pursue the limitless potential of technology and ingenuity for clients across defense, national security, public safety, civilian, and military health organizations.   Join Accenture Federal Services to do the work you love in an inclusive, collaborative, and caring community, where you can be empowered to grow, learn and thrive through hands-on experience, certifications, industry training and more.   Join us to drive positive, lasting change that moves missions and the government forward!  

You Are:

The Digital Forensics & Incident Response Associate Manager will work under the guidance of the forensics lead to efficiently handle and analyze evidence, and investigate escalations from various teams including response, legal, human resources, and CISO. Your technical expertise will be crucial in collaborating with operations teams and management to address security issues, differentiate between true and false positives, conduct malware analysis, and enhance our organization's security posture. This is a hybrid role based in Chantilly, VA.

Responsibilities:

  • Ingest and properly handle evidence, analyze it, and perform investigations.
  • Collaborate with operations teams and management to resolve security issues.
  • Perform malware analysis and provide recommendations to strengthen security.
  • Maintain excellent communication skills and thorough knowledge of incident response lifecycles, digital forensics, evidence handling, common cyber-attacks, and federal incident reporting requirements.

Here's What You Need:

  • US Citizenship required.
  • 3-5 years of experience in information security or an equivalent combination of education and work experience.
  • 3+ years of experience in performing digital forensics on both physical and cloud systems.
  • 2+ years of experience in event and log analysis with tools such as Anti-Virus, Intrusion Detection Systems, Firewalls, Active Directory, Web Proxies, Data Loss Prevention tools, and Security Information and Event Management (SIEM) solutions.
  • 1+ years of experience in investigating, containing, eradicating, and preventing security compromises, including implementing or requesting IP/domain/URL blocks, file hash blocks, email purges, software removal, and device reimaging.
  • 1+ years of experience in collecting, processing, reviewing, and producing Electronically Stored Information (ESI) for legal teams.
  • Exceptional written and oral communication skills, attention to detail, and interpersonal skills.
  • Experience in presenting complex technical information to decision-makers and guiding them through the decision-making process.

Bonus Points if you have: 

  • Ability to work independently and deliver solutions without direct supervision.
  • Familiarity with various network and host-based security applications and tools, including network and host assessment/scanning tools, intrusion detection systems, and other security software.
  • Experience with TCP/IP, common application layer protocols, and packet analysis.
  • Experience in performing static and dynamic malware analysis.
  • Knowledge of indicators of attack and compromise.
  • Understanding of detection design and engineering concepts to fine-tune detections.
  • Familiarity with Windows/Linux architecture and endpoint analysis.
  • Proficiency in basic data parsing and analysis tools such as Excel, grep, sed, awk, regex, etc.
  • Understanding of evidence preservation and chain of custody.
  • Familiarity with the Electronic Discovery Reference Model (EDRM) for ESI discovery, preservation, and production.
  • SANs GIAC Certifications (e.g., GCED, GCLD, GCIH, GCFA, GREM).
  • Expertise in Digital Forensics, Network Forensics, Memory Forensics, Malware Analysis.
  • Proficiency in eDiscovery and forensic software (Nuix, Microsoft Purview eDiscovery, EnCase, Cellebrite, Sumuri, FTK).
  • Scripting skills (PowerShell, Bash, Python).
  • Experience with Microsoft SIEM solutions (Sentinel, Defender).

#LI-CorpFunction

#LI-Hybrid 

 

As required by local law, Accenture Federal Services provides reasonable ranges of compensation for hired roles based on labor costs in the states of California, Colorado, Hawaii, Illinois, Maryland, Minnesota, New York, Washington, and the District of Columbia. The

Apply for this role

Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.

Apply Now →Generate Application Kit

Free account required — sign up in 30s

Company

Accenture Federal Services

View company profile →