Job description
Overview
The Forensic Analyst leads, conducts, and assists in data preservation and digital investigations in complex litigation cases by leveraging knowledge of digital forensic tools, technology and protocols related to the collection and management of electronically stored information (ESI) from a wide variety of data sources. The analyst performs investigative work and data collections as part of a forensics and collections team.
Responsibilities
Works internally with colleagues in the planning and execution of data preservation using the most appropriate and legally defensible solutions
Performs investigative analysis activities for a variety of digital devices, computers, storage media, servers, networks, and cloud-based services, including seizure and retention of mobile phones and handheld devices where needed.
Performs data restoration and data conversion to prepare data for processing and hosting
Displays sound knowledge and expertise of common operating systems and applications and exhibits an aptitude for problem solving in a methodical manner consistent with forensic protocols
Follows Digital Forensic good practice methodologies (ISO17025 standard and ACPO Principles of Digital Evidence) in all aspects of the forensic and eDiscovery workflow
Assists with and independently conducts the forensic examination of data and prepares expert reports and other expert witness documentation related to investigations
Displays competence in oral delivery of complex technical information to non-technical clients
Displays high degree of comfort operating in a client-facing environment and meeting the needs of clients
Ability to be responsive to internal and external communications
Has the ability to make well-reasoned decisions “on the spot” and execute on the plan
Qualifications
Minimum Education Requirements: • Bachelor’s degree in forensic computing or equivalent relevant experience
Minimum Experience Requirements:1 to 3 years of progressively responsible experience in related roles
Other Requirements: • Excellent communication skills – both written and verbal• Ability to thrive in a highly collaborative team environment• Ability to work on multiple projects concurrently• Demonstrate working knowledge and understanding of evidence management• Proficient in the usage of forensic acquisition tools and working with various file formats• Ability to collect data from a wide array of ESI, including: computers, mobile devices, media storage devices, servers, networks, social media, and cloud-based services.• Familiarity with rules of evidence, ACPO guidelines, ISO17025 and Chain of Custody• Good understanding of computer networking in corporate environments• Availability for short notice or weekend travel when necessary
Preferred Attributes:• EDiscovery experience with relevant forensic collection and analysis software• Certifications in EnCase, FTK, Cellebrite, Nuix, CFE or similar• SQL or scripting
Originally posted on Himalayas
Who can apply
Eligible countries: United States. Accepted UTC offsets: UTC-10, UTC-9, UTC-8, UTC-7, UTC-6, UTC-5, UTC+14. Review the full description for employer-specific work authorization, residency and schedule requirements.