How do they match: Digital Forensics Analysts

  • Conduct investigations on computer-based crimes establishing documentary or physical evidence, such as digital media and logs associated with cyber intrusion incidents. Analyze digital evidence and investigate computer security incidents to derive information in support of system and network vulnerability mitigation. Preserve and present computer-related evidence in support of criminal, fraud, counterintelligence, or law enforcement investigations.

  • Develop plans for investigating alleged computer crimes, violations, or suspicious activity.
  • Develop policies or requirements for data collection, processing, or reporting.
  • Analyze log files or other digital information to identify the perpetrators of network intrusions.
  • Create system images or capture network settings from information technology environments to preserve as evidence.
  • Identify or develop reverse-engineering tools to improve system capabilities or detect vulnerabilities.
  • Perform web service network traffic analysis or waveform analysis to detect anomalies, such as unusual events or trends.

  • Develop technical methods or processes.
  • Analyze security of systems, network, or data.