Post a job

Digital Forensic Intrusions Lead

On-site Linthicum, United States full time USD 200k to 225k/yr
Spry Methods is seeking a Forensic Acquisition and Extraction Lead to direct all forensic imaging and data extraction activities at a government digital forensics laboratory. This position manages the Imaging and Extraction section and gives its staff technical oversight. It is responsible for evidence acquisition from hard drives, mobile devices, and IoT devices, and for running laboratory workflows and maintaining chain-of-custody documentation.

What Your Day-To-Day Looks Like (Position Responsibilities):

    • Lead technical efforts supporting system and network forensic examinations.  

    • Supervise teams operating in a forensic laboratory environment.  

    • Oversee malware analysis and reverse engineering activities.  

    • Guide digital and multimedia forensic examinations and analysis.  

    • Analyze endpoint , Packet Capture (PCAP), and other relevant data sources.  

    • Apply forensic network analysis in support of investigative processes.  

    • Ensure technical activities comply with applicable legal, accreditation, and Government requirements.  

    • Use common forensic examination tools, including FTK, EnCase, and X-Ways.  

    • Support the quality and efficiency of task performance and assist with task-level financial and business processes, excluding inherently governmental functions.  

What You Need to Succeed (Minimum Requirements):

    • TS/SCI clearance eligible .  

    • Experience within the last five years leading technical efforts and supervising teams in a forensic laboratory environment similar in scope and complexity to the PWS.  

    • Experience within the last seven years performing digital and multimedia forensic examinations, analysis, and techniques.  

    • Experience within the last seven years using Microsoft Windows, Apple/UNIX, and Linux operating systems in forensic examinations.  

    • Experience within the last seven years conducting forensic network analysis in support of investigations.  

    • Experience within the last seven years analyzing endpoint , PCAP, and other relevant data sources.  

    • Experience within the last five years using common digital forensic tools, including FTK, EnCase, and X-Ways.  

Source: the employer's careers page. Last checked 2026-10-10. Posted 2026-10-07.

Applications happen on Spry Methods's own site. View role and apply

Get jobs like this by e-mailAt most one e-mail a day, only when something new matches. Unsubscribe in one click.

More from Spry Methods

All jobs at Spry Methods

Hiring for a role like this? See how employers fill a role fast.