> Markdown version of [/jobs/ext/3384307-cyber-forensics-analyst-cyber-intrusion-analyst](https://www.wearedevelopers.com/jobs/ext/3384307-cyber-forensics-analyst-cyber-intrusion-analyst). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Cyber Forensics Analyst / Cyber Intrusion Analyst - **Company:** Parsons Corporation - **Location:** Linthicum Heights, MD, United States - **Experience:** Experienced - **Salary:** $63,600.0 - $111,300.0 - **Contract:** Permanent contract - **Skills:** Microsoft Windows, Data Analysis, Apple Mac Systems, Network Analysis, Cyber Security, Computer Forensics, Linux, Digital Forensics, Reverse Engineering, Malware, Cybercrime, Encase, Cyber Warfare - **Published:** September 10, 2026 - **Apply:** https://parsons.wd5.myworkdayjobs.com/Search/job/US---MD-Linthicum/Cyber-Forensics-Analyst---Cyber-Intrusion-Analyst_R185844 ## About the Role * Junior - Bachelors degree and 2-4 years experience * Journeyman (Mid) - Bachelors degree and and 5-9 years experience * Senior - Bachelors degree and 10+ years experience All Levels * Active TS/SCI clearance * Experience in one or more of the following areas: + Cyber forensics + Intrusion analysis + Host-based analysis + Network-based analysis + Malware analysis + Reverse engineering + Digital evidence handling * Strong analytical and problem-solving skills * Ability to communicate technical findings clearly in writing and verbally * Willingness to learn, grow, and contribute in a collaborative technical environment What Desired Skills You'll Bring * At least one intermediate or advanced-level industry certification relevant to digital forensics (e.g., DGIAC Certified Forensic Examiner (GCFE), EnCase Certified Examiner (EnCE), Analysis Comparison Evaluation (ACE), or equivalent) * Experience with forensics imaging and evidence preservation * Experience conducting host-based and/or network-based forensic analysis * Experience analyzing APT activity, adversary behaviors, or sophisticated intrusion activity * Familiarity with malware analysis and/or reverse engineering * Relevant cybersecurity or forensic certifications * Experience supporting Government, DoD, IC, or national security cybersecurity missions * Familiarity with ISO/IEC 17025 accreditation standards and quality assurance procedures * Passion for continuous technical development and collaborative problem-solving Once you commit to joining the team, you'll have the opportunity to participate in Parsons' IGNITE Program-Integration, Growth, Networking, Innovation, Training, and Engagement. IGNITE is designed to keep future team members connected to Parsons, foster professional growth, and help you feel like part of the team even before your official start date. ## Description Parsons is growing its team of Cyber Forensic Analysts and Cyber Intrusion Analysts (at several levels) to support upcoming mission-critical cybersecurity work. If you enjoy hands-on cyber investigation, thrive on solving difficult technical problems, and want to work alongside experienced practitioners in a highly collaborative environment, these opportunities offer an excellent next step in your career. We are building our team in support of a customer mission that requires a range of hands-on cybersecurity expertise. These roles may involve forensics imaging, host-based forensics, network-based forensics, intrusion analysis, advanced threat analysis, malware analysis, reverse engineering, and related cyber investigative activities. We are looking for technical professionals who enjoy digging into complex problems, working through challenging cyber questions, and contributing to high-quality analysis that makes a real difference for the customer. Whether your strengths are in forensic collection, host or network analysis, intrusion investigation, malware analysis, or a blend of several cyber disciplines, we are interested in connecting with people who are excited to contribute and continue growing. Our cyber professionals work together as a cohesive unit, share knowledge freely, learn from one another, and continually improve both individual and team capability. You'll be joining Parsons' local Analytics & Engineering team, a community known for its strong culture of defensive cyber operations, technical excellence, and collaboration. We invest in both mission success and team connection through regular social events, technical talks, training opportunities, and hands-on innovation activities at our Cybersecurity Center of Excellence Lab in Columbia, MD. From team lunches and ice cream socials to family-friendly seasonal events and technical learning sessions, we work hard to create an environment where people can do meaningful work and enjoy being part of the team. What You'll Be Doing * Perform hands-on cyber analysis in support of customer mission requirements * Support one or more areas including: * Forensics imaging and evidence acquisition * Host-based forensics across Windows, LInux/Unix and macOS * Network-based forensics and intrusion analysis * APT analysis * Malware analysis and reverse engineering * Digital evidence collection, examination, and chain-of-custody documentation * Analyze and correlate data from multiple technical sources to identify malicious activity, artifacts, indicators, or investigative leads * Produce clear, accurate, and actionable technical findings and reporting * Apply sound forensic and analytic tradecraft to support cyber investigations and mission outcomes * Collaborate closely with other analysts and subject matter experts to solve complex technical problems * Continuously improve your technical skills and adapt to new tools, technologies, and cyber threats * Contribute to a team culture centered on learning, knowledge sharing, and technical excellence ## Related Videos - [Cyber Sleuth: Finding Hidden Connections in Cyber Data](https://www.wearedevelopers.com/videos/893-cyber-sleuth-finding-hidden-connections-in-cyber-data) - [Enhancing Workload Security in Kubernetes](https://www.wearedevelopers.com/videos/356-enhancing-workload-security-in-kubernetes) - [Docker network without Docker](https://www.wearedevelopers.com/videos/1418-docker-network-without-docker) - [ The attacker's footprint](https://www.wearedevelopers.com/videos/375-the-attacker-s-footprint) - [Full Spectrum File Uploads](https://www.wearedevelopers.com/videos/870-full-spectrum-file-uploads) - [Docker exec without Docker](https://www.wearedevelopers.com/videos/1094-docker-exec-without-docker) ## Related Articles - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [System change: restart as developer?](https://www.wearedevelopers.com/magazine/39-system-change-restart-as-developer) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [Top 6 Hackathons for Developers in 2023](https://www.wearedevelopers.com/magazine/263-top-6-hackathons-for-developers-in-2023) - [Where to Find Entry-Level Software Engineering Jobs](https://www.wearedevelopers.com/magazine/397-where-to-find-entry-level-software-engineering-jobs) - [Steps to Get a Software Engineer Internship](https://www.wearedevelopers.com/magazine/160-steps-to-get-a-software-engineer-internship)