Sr. Forensic Malware Analyst Job at Bristol Bay Native Corporation, San Antonio, TX

T1krSGtTSTRUS0lYQlNEaW9EdVFpdElLa1E9PQ==
  • Bristol Bay Native Corporation
  • San Antonio, TX

Job Description

Lackland Air Force Base, San Antonio, TX, USA ? San Antonio, TX, USA Req #7121

Friday, February 7, 2025

STS Systems Support, LLC (SSS) is seeking a Sr. Forensic Malware Analyst to support our mission at Lackland AFB in San Antonio, TX.

Duties:
  • Document all findings in the investigation/incident log. (CDRL A008)
  • Track evidence inventory for intake and releasing to the forensics laboratory, ensuring proper handling and maintenance of evidence and chain of custody records with no more than 5% error rate.
  • Utilize forensic tools such as EnCase, FTK, FireEye, etc., and other systems as required.
  • Conduct analysis of metadata and forensic examinations of digital media from a variety of sources, including preservation, acquisition, and analysis of digital evidence with the goal of developing forensically sound evidence.
  • Confirm malicious activity when new information is identified through forensic analysis.
  • Investigate network and computer intrusions to identify root cause and generate indicators of compromise, documenting all findings in the investigation/incident log for each file.
  • Perform memory forensics and malware reverse engineering of suspected malicious files to verify if system compromise occurred and document all findings Indicators of Compromise (IOCs) in the investigation/incident log for each file.
  • Perform Hard Drive Analysis of suspected/confirmed infected or exploited systems and document all findings in the investigation/incident log for each hard drive with no more than a 5% error rate.
  • Develop methods to identify, contain, log, and analyze malware?based activities on AF AIS and networks. (A008)
  • Provide support to AF network administrators on the installation and analysis of packet sniffers on their network topology by reporting the functionality status upon request.
  • Generate forensic reports and synopses presenting complex technical processes and findings clearly and concisely to technical and non?technical audiences. (CDRL A008)
  • Collaborate with leadership and external agencies, including Counter?Intelligence activities/agencies, OSI, FBI, and other security agencies, to include Incident Responders, as well as other forensic analysts.
  • Provide AF OSI DCO technical support to law enforcement and counter?intelligence activities.
  • Turn any investigation over to AF OSI if it is determined during the course of an investigation a law was broken.
  • Support and/or augment Incident Response deployment with same day notice, allowing responders to retrieve hard drives or miscellaneous storage media, isolate system(s) for additional investigation, and perform other on?site Incident Response actions.
  • Set up a monitor or cage at the on?site location as needed.
  • Provide OJT to other contractor employees, military, and/or civilian personnel, ensuring continuity folders/working aids are updated at least once per quarter for efficient transition when personnel rotate.
  • Provide requested forensic information to operational flight commander as it relates to the Host Detection processes and procedures.
Requirements:
  • Active TS/SCI
  • More than five (5) years of experience as a Forensic Malware Technician.
  • Experience performing forensic acquisition and examination of Windows, Unix/Linux, and Macintosh?based computers and servers.
  • Strong understanding of a variety of forensic tools (Access Data, FTK, Guidance EnCase; including mobility tools such as Axiom/BlackBag, Mobilyze/Cellebrite/Paraben, FTK, X?Ways Forensics, FireEye, Volatility, Sleuthkit, BlackBag tools) and various Open Source forensic tools.
  • Shell Scripting is a plus.
  • Experience writing intelligence and technical articles for production and dissemination.
  • Very proficient in malware analysis, sandboxing, and software reverse engineering.
  • Proficient in scripting languages such as Python and PowerShell.
  • Extensive knowledge of MITRE ATT&CK framework, and its uses within the cybersecurity community (e.g., Open Source projects). Required: SANS GCFA (or equivalent).
  • GREM, GCTI and/or ACE certifications are a plus.

STS Systems Support, LLC (SSS) offers a competitive benefits package, including paid holidays, paid time off for sick and vacation leave, medical, dental and vision insurance, flexible spending accounts, short and long-term disability, company paid life insurance, 401(k) with a company match, discretionary profit sharing, and tuition reimbursement.

SSS is an Equal Opportunity Employer. Employment decisions are made without regard to any protected category. Hiring preference will be given to BBNC shareholders, their spouses and descendants and Alaska Natives in accordance with Public Law 93-638.

#J-18808-Ljbffr

Job Tags

Temporary work, For contractors, Flexible hours,

Similar Jobs

BrightKey, Inc

Mail Clerk Job at BrightKey, Inc

 ...BrightKey is looking for an experienced Mail Clerk in Clayton, MO ! If you are organized, have excellent attention to detail, and are passionate about ensuring smooth mail operations, we'd love to hear from you. Mail Clerk Job Description: We are seeking a detail... 

HouseSitter.com

House Sitter Wanted - Bertrand, Nebraska House Sitter Needed $50 Daily Apply Now! Job at HouseSitter.com

Are you looking for a house sitting gig in Bertrand, Nebraska? I need a reliable house sitter to look after my home while I'm away. The job includes pet feeding, plant care, snow clearing, and managing trash and recycling. I'm offering a daily payment of $50.0 for your... 

Didion Inc.

Summer Internship - Purchasing/Supply Chain Job at Didion Inc.

 ...Job Description Job Description Launch Your Career with Didion Summer 2026 Internships in Supply Chain/Purchasing Looking for a summer internship thats more than just a resume booster? At Didion, we offer a hands-on experience where your ideas matter and your... 

Aerotek

Warehouse Worker - $20-21/Hour - NO INTERVIEW Job at Aerotek

**Job Title: Warehouse Worker****Pay: $20.35/hr - $21.50/hr****Job Description**Aerotek is looking for long-term warehouse associates in the Woodland area. Must be okay loading and unloading trucks, material handling, order filling, etc. Shifts are either 10 - 12 hours... 

Medicorp Inc

Pennsylvania - Nocturnist - Hospitalist - (59452) Job at Medicorp Inc

 ...nightly admissions = 4 ~ Swing Shift Advanced Provider support (Physician Assistant or Nurse Practitioner) coverage ~ Ample moonlighting opportunities ~ Emergency Medicine physician available to assist with procedures as needed ~ Approx. 90 miles to Pittsburgh,...