> Markdown version of [/jobs/ext/3049176-forensic-malware-analyst-senior](https://www.wearedevelopers.com/jobs/ext/3049176-forensic-malware-analyst-senior). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Forensic & Malware Analyst - Senior - **Company:** Athena Technology Group - **Location:** Augusta, GA, United States - **Experience:** Expert - **Contract:** Permanent contract - **Skills:** Vbscript, Data Analysis, Bash Shell, Batch Files, Cyber Security, Information Systems, Digital Forensics, Intrusion Detection and Prevention, Python (Programming Language), Network Forensics, Packet Analyzer, Parsing, Windows PowerShell, Reverse Engineering, Forensic Toolkit, Scripting, Macros, Malware, Information Technology, Cybercrime, Malware Detection, Encase, Cyber Warfare - **Published:** September 24, 2026 - **Apply:** https://www.clearancejobs.com/jobs/9189721/forensic-malware-analyst-senior ## About the Role * Active TS clearance with the ability to obtain and maintain SCI eligibility and a CI Polygraph * Minimum of 12 years of relevant experience with a Bachelor's degree * Minimum of 10 years of relevant experience with a Master's degree * Minimum of 7 years of relevant experience with a PhD * An Associate degree with a minimum of 14 years of relevant experience may be considered * A high school diploma with a minimum of 16 years of relevant experience may be considered * Must possess an approved IA certification upon start, including one of the following or equivalent: CCNA-Security, CCNA-Cybersecurity, CySA+, GICSP, GSEC, Security+, CND, or SSCP * Experience conducting malware analysis and reverse engineering of malicious executable code * Experience analyzing non-compiled malicious content, including scripts, macros, encoded commands, and obfuscated files * Experience conducting dead-box forensic analysis and live forensic/incident handling analysis * Experience using static, dynamic, and hybrid malware analysis techniques * Experience with forensic tools such as EnCase, FTK, Autopsy, or equivalent platforms * Experience inspecting packet captures and conducting network forensic analysis * Experience identifying malicious domains, URI paths, protocols, User Agent strings, TLS metadata, command-and-control communications, and other indicators of compromise * Experience with scripting languages such as PowerShell, BASH, Python, or equivalent technologies * Experience developing or maintaining YARA rules or similar malware detection signatures * Experience collecting, preserving, and documenting digital forensic evidence * Experience with DoD standards of reporting and forensic case documentation * Strong analytical, technical writing, briefing, and communication skills * Ability to support surge operations when required by mission needs Desired: * Active or previously held GIAC Certified Forensic Analyst (GCFA) certification * CHFI or other relevant digital forensic or malware analysis certifications * Experience supporting cyber threat hunting operations * Experience conducting mobile device forensic examinations * Experience with DC3 forensic standards and case management processes * Advanced experience developing malware detection signatures and threat hunting analytics * Background in quantitative disciplines such as mathematics, statistics, computer science, cybersecurity, engineering, or related technical disciplines Physical and Environmental Conditions Normal Office Environment. Requires Sitting, Standing, Near Acuity, Speaking with colleagues and customers, Listening, Sight, Use of hands/fingers. ## Description We are seeking a Senior Forensic and Malware Analyst to support ARCYBER G3 cyber operations at Fort Gordon, GA. The selected candidate will conduct advanced digital forensic analysis, malware analysis, reverse engineering, network forensic analysis, and incident handling in support of mission-critical cyber investigations., * Conduct malware analysis and reverse engineering of compiled executable code to characterize malicious software functions, behaviors, and capabilities * Analyze and deobfuscate scripts, encoded commands, macros, PowerShell, VBScript, batch files, and other non-compiled malicious content to determine intent and functionality * Utilize static, dynamic, and hybrid analysis techniques to detect, identify, and characterize anomalous or malicious software and activity * Conduct dead-box forensic analysis and live forensic/incident handling analysis * Perform digital media forensic examinations using tools such as EnCase, FTK, Autopsy, or equivalent forensic platforms * Collect, preserve, document, and transfer forensic evidence associated with intrusions involving on-premises Information Systems * Analyze forensic images, suspicious and malicious files, intrusion-related artifacts, entry points, vectors, and indicators of compromise * Conduct network forensic analysis, including inspection of packet captures (PCAPs) for malicious indicators, protocol anomalies, command-and-control communications, domains, URI paths, User Agent strings, TLS metadata, and other intrusion artifacts * Conduct mobile device forensic examinations using mobile forensic laboratory tools and capabilities to acquire, examine, and analyze data from mobile devices * Develop and maintain malware detection signatures, including YARA rules, based on analytic findings to support detection engineering and threat hunting activities * Support cyber threat hunting activities and analysis of indicators of compromise and associated threat artifacts * Use scripting languages such as PowerShell, BASH, Python, or similar languages to automate analysis tasks, parse artifacts, and develop tools supporting malware and forensic workflows * Open, maintain, and close forensic cases in accordance with applicable DC3 and DoD forensic guidelines * Develop and maintain malware analysis artifacts, forensic case notes, supporting evidence, and all case-related documentation * Produce detailed written forensic and malware analysis reports in accordance with DoD reporting standards * Deliver daily, weekly, monthly, and ad hoc operational briefings to leadership and mission partners * Coordinate with internal and external mission partners and intelligence professionals to contextualize malware findings within broader adversary tactics, techniques, procedures, and campaign activity * Update forensic and malware analysis portions of Standard Operating Procedures (SOPs), Tactics, Techniques, and Procedures (TTPs), CSSP documentation, and applicable website information * Support surge operations as required by mission needs ## Related Videos - [Cyber Sleuth: Finding Hidden Connections in Cyber Data](https://www.wearedevelopers.com/videos/893-cyber-sleuth-finding-hidden-connections-in-cyber-data) - [Enhancing Workload Security in Kubernetes](https://www.wearedevelopers.com/videos/356-enhancing-workload-security-in-kubernetes) - [Crafting Custom Frameworks with Rust: A Deep Dive into Procedural Macros](https://www.wearedevelopers.com/videos/849-crafting-custom-frameworks-with-rust-a-deep-dive-into-procedural-macros) - [Training Bots on Deliveroo Data, Alexa Can Swear and Mushroom Electronics - Julia Kordick](https://www.wearedevelopers.com/videos/1839-training-bots-on-deliveroo-data-alexa-can-swear-and-mushroom-electronics-julia-kordick) - [Checkmate: 5 Real Incidents That Can End a Software Company](https://www.wearedevelopers.com/videos/100126-checkmate-5-real-incidents-that-can-end-a-software-company) - [Full Spectrum File Uploads](https://www.wearedevelopers.com/videos/870-full-spectrum-file-uploads) ## Related Articles - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Data Analyst Salary in the UK](https://www.wearedevelopers.com/magazine/278-data-analyst-salary-in-the-uk) - [Dev Digest 191: Malware interviews, EU ❤️ Open Source and Skilled Agents](https://www.wearedevelopers.com/magazine/645-dev-digest-191-malware-interviews-eu-open-source-and-skilled-agents) - [Best Paying Jobs in Technology](https://www.wearedevelopers.com/magazine/256-best-paying-jobs-in-technology) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [The Most Popular IT Jobs on the Market](https://www.wearedevelopers.com/magazine/376-the-most-popular-it-jobs-on-the-market)