Senior Digital Media Forensic Analyst (Contingent)

Sphinx LLCFort Meade, MD
$139,200 - $165,000Onsite

About The Position

As a Senior Digital Media Forensic Analyst supporting U.S. Army Counterintelligence and Counterterrorism investigations, you will execute the full forensic-examination lifecycle evidence acquisition, in-depth analysis, and pre-trial-quality reporting with rigorous chain-of-custody discipline. You will also research and evaluate emerging forensic technologies, deploy and lead forensic training events, and provide operational security assessments that strengthen Army CI/CT mission outcomes. This position is contingent upon contract award. Start Date TBD.

Requirements

  • Active Top Secret/SCI security clearance with current CI Polygraph (within last 5 years)
  • Due to clearance requirements U.S. Citizenship is required
  • DoD Certified Digital Forensic Examiner (DFE), required at hire, non-negotiable
  • Minimum 2 years of host-based forensic experience
  • Operational mobile-device forensics experience (Cellebrite UFED, Oxygen Forensic Detective, or MSAB XRY)

Nice To Haves

  • Digital forensics certification: CFCE, GCFE/GCFA, EnCE, or ISFCE CCE
  • Malware analysis depth: GREM (GIAC Reverse Engineering Malware)
  • DC3 Cyber Training Academy graduate (Windows Forensic Examinations, Forensic Intrusions in a Windows Environment)
  • Anti-forensics detection expertise, with direct experience supporting Army CI/CT investigative missions
  • CompTIA Security+/Network+ (DoD 8140 baseline)

Responsibilities

  • Perform all phases of forensic examination of digital media, on-site and off-site evidence acquisition/seizure, in-depth forensic analysis, and pre-trial-quality reporting
  • Maintain chain-of-custody and adhere to Federal Rules of Evidence and ISO 27037 throughout the examination lifecycle
  • Provide forensic support for incident response activities, intrusion events, and malware analysis in support of CI and CT investigations
  • Conduct mobile-device forensic extraction (logical, file-system, physical) using Cellebrite UFED, Oxygen Forensic Detective, or MSAB XRY
  • Execute timeline reconstruction across file-system, registry, browser, and mobile artifacts using log2timeline / Plaso
  • Perform memory forensics with Volatility / Rekall to recover credentials, encryption keys, and malware persistence indicators
  • Detect anti-forensic adversary tradecraft — timestomping, file-wiping, encryption attempts, steganography
  • Research, design, deploy, and lead forensic training events; evaluate emerging forensic technologies and provide adoption recommendations

Benefits

  • 401K with corporate match
  • Company paid health, vision, dental, disability, and other insurance options
  • Variety of incentives and opportunities to support the development and well-being of our personnel
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service