1. Home
  1. Home
  2. Digital Forensics Lead
G

Glidewell India

Reston • Reston • VA

Digital Forensics Lead

full-time • Hybrid • Reston
insider threat
cybersecurity
incident response
siem
digital forensics
At Agile Defense we know that action defines the outcome and new challenges require new solutions. That’s why we always look to the future and embrace change with an unmovable spirit and the courage to build for what comes next.

Our vision is to bring adaptive innovation to support our nation's most important missions through the seamless integration of advanced technologies, elite minds, and unparalleled agility—leveraging a foundation of speed, flexibility, and ingenuity to strengthen and protect our nation’s vital interests.

Requisition #: 1436
Job Title: Digital Forensics Lead
Location: Reston, VA
Clearance Level: TS (SCI Eligible)

SUMMARY


Agile Defense is seeking highly qualified Digital Forensics Lead to support USG enterprise cybersecurity program delivering 24/7/365 Cybersecurity Operations Center (SOC) services. These positions provide strategic leadership, operational oversight, and deep technical expertise across key mission areas, including cyber defense, incident response, threat hunting, insider threat, threat intelligence, engineering, and modernization initiatives.

JOB DUTIES AND RESPONSIBILITIES


Leads digital forensics and insider-threat investigations, ensuring proper evidence handling, strict chain-of-custody, and high-confidence analysis to enable rapid incident containment and remediation. Ability to perform endpoint and network-based forensic analysis, malware triage, and insider-threat investigations. Utilize customer SIEM Design and maintain dashboards, reports, and workflow documentation for forensics and incident response processes; provide mentorship to junior analysts.

QUALIFICATIONS


Education, Background, and Years of Experience
Bachelor’s degree in computer science, Engineering, STEM, Information Technology, or Cybersecurity

ADDITIONAL SKILLS & QUALIFICATIONS

Required Skills

TS (SCI Eligible)
Candidates will have a minimum of seven (7) years of professional experience with a solid understanding of incident response, insider threat investigations, digital forensics, and cyber threats. A minimum of five (5) years of hands-on experience with experience in the last two (2) years that includes bare metal, cloud or virtual system-based and network-based security monitoring, identifying and analyzing anomalous activities with familiarity in insider threat monitoring software, endpoint forensic tools, intrusion detection systems, intrusion analysis functions, security information event management (SIEM) platforms, endpoint detection and response tools, security operations ticket management.
The ability to create insider threat focused dashboards, reports and workflow diagrams. Experience collecting data, chain of custody and reporting results; handling and escalating security issues or emergency situations appropriately; providing incident response capabilities to isolate and mitigate threats to maintain confidentiality, integrity, and availability for protected data. Applicant will have excellent written and oral communication skills, be able to work independently and as part of a team. Willingness and experience with mentoring junior members in an open collaborative environment.

Preferred Skills
GCFA, GREM, GFCE, GNFA, GIME, GASF, GX-FA, Encase, Cellebrite or equivalent preferred.
Mobile Forensics

WORKING CONDITIONS

Environmental Conditions
Hybrid role in Reston, VA
Strength Demands
Physical Requirements