Threat Analyst - Digital Forensics / Incident Reponse

Remote Full-time
Dragonfli Group is a cybersecurity and IT consulting firm based in Washington, DC, serving clients across federal and commercial sectors. We deliver high-impact solutions in cybersecurity, cloud engineering, and digital modernization. Dragonfli consultants operate in hybrid, remote, and on-site environments on engagements ranging from 6 to 36 months. We are seeking a Threat Analyst to support a critical Digital Forensics and Incident Response (DFIR) program at a large government agency. In this role, you will triage escalated security events, investigate potential threats, and correlate intelligence data to deliver actionable insights to stakeholders across the enterprise. You’ll work alongside cyber and intelligence professionals to help maintain situational awareness, mitigate cyber risks, and advance the agency’s cybersecurity maturity. The position requires a strong background in incident response, detection engineering, and forensic analysis—as well as experience applying AI/ML concepts in SECOPS environments. Hands-on familiarity with Splunk, Sentinel One, Armis, and SNA is highly preferred. This is a fully remote position. All work must be conducted from within the continental U.S. Candidates must be U.S. citizens or lawful permanent residents. Responsibilities • Triage security escalations and detections to determine scope, severity, and root cause • Monitor security events and threat feeds to identify patterns and indicators • Conduct deep-dive forensic investigations into cyber incidents • Analyze and synthesize threat data with other intelligence inputs • Collaborate across teams to fuse threat insights into operational actions • Recommend improvements to threat detection and response capabilities • Provide technical documentation and briefing support to program leadership • Stay current on emerging technologies and evolving threat actors Must-have: • 10+ years of cybersecurity experience • Proven incident responder with hands-on DFIR responsibilities • Experience integrating AI/ML into cyber operations or detection workflows • Familiarity with one or more tools: Splunk, Sentinel One, Armis, SNA • Strong written and verbal communication skills • Able to explain complex technical issues to non-technical stakeholders Preferred: • Experience supporting cybersecurity programs within federal civilian agencies • Exposure to intelligence-led threat modeling and cyber counterintelligence practices • Knowledge of cross-functional security operations and team collaboration • Insurance – health, dental, and vision • PTO and 11 Federal Holidays • 401(k) employer match Original job Threat Analyst - Digital Forensics / Incident Reponse posted on GrabJobs ©. To flag any issues with this job please use the Report Job button on GrabJobs. Apply tot his job Apply tot his job
Apply Now →

Similar Jobs

Senior Cyber Defense Forensic Analyst - Mid-Atlantic region (Remote - EST)

Remote Full-time

Principal/Digital Forensics, Incident Response & Cybersecurity (Forensic Services practice)

Remote Full-time

Manager, Digital Forensics and eDiscovery Remote Worker - Illinois, USA

Remote Full-time

Join Our Renewal Manager Talent Pipeline!

Remote Full-time

Manager, Technical Support Americas (Mobile Access & Extraction)

Remote Full-time

Senior Cyber Forensic Investigator, Hybrid

Remote Full-time

Digital Marketing Specialists | Transition to a Remote, Independent Career

Remote Full-time

Digital marketing manager for niche creator (content + subscription + course)

Remote Full-time

Digital Merchandiser

Remote Full-time

Digital Marketing Manager - Paid Ads

Remote Full-time

Experienced Senior Technical Program Manager – Amazon Remote Jobs (Part Time, Full Time) – DCP – Innovative Technology and Leadership Opportunities

Remote Full-time

Private Investigator

Remote Full-time

Supply Chain Data Analyst - Transforming Business Operations through Data-Driven Insights and Analytics

Remote Full-time

**Job Title: Customer Service Advisor – Join blithequark's Dynamic Team in Glasgow City Centre**

Remote Full-time

[Remote] Distinguished Engineer - 6G Architecture Leader

Remote Full-time

Senior Software Engineer

Remote Full-time

Principal Epidemiologist - Pharmaceutical & Regulatory Expertise

Remote Full-time

Global Accounting Compliance Systems Accountant

Remote Full-time

Experienced Data Entry Professional for Night Shift Operations – Remote Work Opportunity with blithequark

Remote Full-time

Family-Centered BCBA (Full-Time, Remote – No RBT Supervision)

Remote Full-time
← Back to Home