> Markdown version of [/jobs/ext/2988611-intrusion-analysis-technical-lead](https://www.wearedevelopers.com/jobs/ext/2988611-intrusion-analysis-technical-lead). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Intrusion Analysis Technical Lead - **Company:** Parsons View all jobs - **Location:** Towson, MD, United States - **Experience:** Expert - **Salary:** $48,422.0 - $87,235.0 - **Contract:** Permanent contract - **Skills:** Microsoft Windows, Data Analysis, Unix, Network Analysis, Cyber Security, Linux, Digital Forensics, Pcap, Packet Analyzer, Reverse Engineering, Malware, Cybercrime, Encase, Cyber Warfare - **Published:** September 18, 2026 - **Apply:** https://www.careerjet.com/job/us6a3e5b32d9b5f90a160ad213f968dca5/eaa ## About the Role * Active TS/SCI clearance * GCIH or equivalent cybersecurity certification * Bachelors degree with 8+ years experience * At least 5 years of recent experience leading technical efforts and supervising teams in a digital forensics laboratory environment * At least 7 years of experience performing digital and multimedia (D/MM) forensics examinations, analysis, and techniques * Experience within the last 7 years working with MS Windows, Apple/UNIX, and Linux operating systems related to forensics examinations * Experience within the last 7 years with forensic network analysis in support of the investigative process * Experience within the last 7 years analyzing endpoint, Packet Capture (PCAP) data, and other relevant data sources * Experience within the last 5 years utilizing common digital forensic examination tools, including FTK, EnCase, and X-Ways * Demonstrated experience with both network-based and host-based forensics, malware analysis, and/or reverse engineering * Strong understanding of cyber intrusion analysis, adversary behavior, and investigative tradecraft * Ability to provide technical leadership and mentorship within a team environment * Strong written and verbal communication skills What Desired Skills You'll Bring * Experience supporting Government or national security cybersecurity missions * Experience correlating data across host, network, malware, and forensic sources * Familiarity with advanced threat activity, including persistent or sophisticated intrusion techniques * Proven ability to improve analytic workflows, technical quality, and team effectiveness * Passion for mentoring analysts and helping technical teams grow ## Description In a world of possibilities, pursue one with endless opportunities. Imagine Next! At Parsons, you can imagine a career where you thrive, work with exceptional people, and be yourself. Guided by our leadership vision of valuing people, embracing agility, and fostering growth, we cultivate an innovative culture that empowers you to achieve your full potential. Unleash your talent and redefine what's possible., Parsons is looking for an experienced Intrusion Analysis Technical Lead to help guide a team of cyber analysts performing high-impact investigations in support of critical mission objectives. This role offers the opportunity to combine deep technical analysis skills with leadership, mentorship, and continuous improvement in an environment where technical excellence and mission success go hand in hand. In this role, you will serve as a technical leader for analysts performing advanced cyber analysis, including host-based and network-based forensic analysis, malware analysis, and reverse engineering. You will help guide the team's technical approach, support complex investigations, and ensure high-quality analysis that enables our customer to better understand, detect, and respond to sophisticated cyber threats. Your expertise will be instrumental in maintaining technical rigor, improving analytic workflows, and adapting the team's methods as new technologies and threats emerge. This position is ideal for someone who enjoys staying close to the technical work while also helping others succeed. You will collaborate closely with a highly skilled team of analysts, providing technical direction, mentorship, and day-to-day support to strengthen team performance and help individuals grow in their careers. You'll play a key role in elevating analytic quality, sharing best practices, and fostering a culture of technical excellence across the team. You'll be joining Parsons' local Analytics & Engineering team, a community known for its strong culture of defensive cyber operations, technical excellence, and collaboration. We invest in both mission success and team connection through regular social events, technical talks, training opportunities, and hands-on innovation activities at our Cybersecurity Center of Excellence Lab in Columbia, MD. From team lunches and ice cream socials to family-friendly seasonal events and technical learning sessions, we work hard to create an environment where people can do meaningful work and enjoy being part of the team. What You'll Be Doing * Serve as the technical lead for a team performing advanced intrusion analysis in support of customer mission objectives * Guide investigations involving host-based and network-based forensic analysis * Support and perform malware analysis and reverse engineering to better understand adversary behavior and malicious code * Help the team identify, analyze, and correlate indicators across multiple data sources to assess cyber threats and intrusion activity * Provide technical mentorship, guidance, and support to analysts working complex investigations * Promote analytic rigor, sound investigative methodology, and cybersecurity best practices * Help improve workflows, tools, and techniques as new technologies and mission needs evolve * Collaborate with internal stakeholders and technical teammates to ensure high-quality, mission-relevant analysis * Contribute to technical reporting and communication of findings to support customer decision-making, Overview: GovCIO is currently hiring for a Sr. Technical Program Manager to lead the execution of a fast paced IOC . This position will be located in Fort Meade, MD and will be a… + 15 days ago + ## Related Videos - [Cyber Sleuth: Finding Hidden Connections in Cyber Data](https://www.wearedevelopers.com/videos/893-cyber-sleuth-finding-hidden-connections-in-cyber-data) - [Docker network without Docker](https://www.wearedevelopers.com/videos/1418-docker-network-without-docker) - [WeAreDevelopers LIVE - Node and Package Security](https://www.wearedevelopers.com/videos/2138-wearedevelopers-live-node-and-package-security) - [What makes Cybersecurity different for critical infrastructure?](https://www.wearedevelopers.com/videos/571-what-makes-cybersecurity-different-for-critical-infrastructure) - [Docker exec without Docker](https://www.wearedevelopers.com/videos/1094-docker-exec-without-docker) - [The Time Paradox: Building Timezone-Safe Python/Django Applications](https://www.wearedevelopers.com/videos/1915-the-time-paradox-building-timezone-safe-python-django-applications) ## Related Articles - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [Dev Digest 191: Malware interviews, EU ❤️ Open Source and Skilled Agents](https://www.wearedevelopers.com/magazine/645-dev-digest-191-malware-interviews-eu-open-source-and-skilled-agents) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [The Geometry of Incidents: Connecting User Impact to Architecture](https://www.wearedevelopers.com/magazine/764-the-geometry-of-incidents-connecting-user-impact-to-architecture) - [What Are The Top Skills Required For Azure Developers?](https://www.wearedevelopers.com/magazine/77-what-are-the-top-skills-required-for-azure-developers)