• Forensic Analyst (P)

    Job Locations US-NC-Fayetteville
    Clearance Required Top Secret / SCI
    Job ID
    # of Openings
    Full Time
  • Overview

    Fulcrum is seeking a Forensic Analyst to support our customer. 


    U.S. Special Operations Command (USSOCOM) Joint Intelligence Center, Identity Intelligence Operations Division (JICSOC-i2O) within the J2 Directorate of Intelligence conducts Processing, Exploitation and Dissemination (PED) of biometrics, forensics, and Document and Media Exploitation (DOMEX) intelligence for special operations force (SOF) commanders and national decision-makers. The USSOCOM J2 has major responsibilities in the areas of threat identification, Sensitive Site Exploitation (SSE), Weapons Technical Intelligence, Force Protection, SOF Vetting of “GREEN FORCE” Personnel, Identity Protection and Blue Force Biometrics.  


    The purpose of this task is to provide contracted subject matter expertise (SME) for Identity Intelligence (i2) support to forward deployed SOF forces in response to the USSOCOM Commander’s Priorities. The contractor shall provide SMEs to support the Production, Exploitation, and Dissemination (PED) of biometric, forensic, Document and Media Exploitation (DOMEX) materials that require coordination with multiple government agencies and use of several USG data sources to build case files and write Intelligence Information Reports (IIR) for rapid dissemination to SOF forces and the intelligence community (IC). 


    • Provide forensic and analytical PED support (which includes processing, exploitation and dissemination of latent fingerprints, digitized latent prints, forensic reports, production statistics for management status reporting and standard operating procedures / SOPs). 
    • Provide Digital Media and CELLEX processing and analytical support to ensure rapid and accurate exploitation of captured enemy materials. 
    • Devise a Digital Media Enabled Watch List (WL) for media of interest in accordance with all applicable SOPs. Manage the Digital Media WL in coordination with NMEC and SOF components to include SOF nominations with all applicable SOPs. 
    • Provide DOMEX capability briefings to supported military units and visiting senior leaders.  
    • Provide DOMEX production statistics to the COR weekly.  
    • Deliver to the COR standardized weekly reporting to include metrics and vignettes of all WL encounters and i2 information of interest collected globally during the week and any future requirements gathering and process development.  
    • Other duties may be assigned, as necessary. 



    • Bachelor's degree (BSEE, BSCS, BSCE) B.S. in Electrical Engineering (BSEE), or B.S. in Computer Science, or B.S. in Civil Engineering or equivalent Forensic degree from a four-year college or university; or equivalent combination of forensic training, certifications (from other DoD or USG training sources), and 3 years of experience with current forensics hardware, software, and methodologies. 


    • A minimum 1-year experience in a combination of the following: 
    • Using FTK 1x/3x, EnCase 5x or 6x, iLook, P2 Commander, or similar forensic examination toolsets. 
    • With new technologies and programming techniques for multiple software languages, including, but not limited to SQL programming, C#, C/C++,      Perl, Python. 
    • Using regular expression patterns in order to conduct bit-by-bit live searches on media. 
    • Producing forensically sound images of digital media, i.e., SATA, IDE, flash drives using imaging software, such as FTK imager or other command line tools, both internal & external write block hardware. 
    • Wiping, verifying, and validating media before and after conducting an examination. 
    • Using virtual platforms such as VMware Server / Workstation in order to mount & view media in its native operating system. 
    • Data recovery/carving experience using WinHEX, X-Ways Forensics or similar tool. 
    • Using regular expression patterns in order to conduct bit-by-bit live searches on media. 
    • Understanding Basic Unix commands for study of CACHE Flow Logs & of hexadecimal code, file structures to include file headers and footers. 
    • Using Web filtering, Spam Filtering, and Message Capturing Technologies. 
    • Conducting cell phone exploitation and extracting pertinent data using cell phone analysis tools such as Device Seizure, Neutrino, BitPim, .XRY/.XACT and other open source tools. 
    • Using Hyper Terminal to communicate with cell phones using AT commands. 
    • Using cell phone analysis tools such as Device Seizure, BitPim, .XRY/.XACT.   


    • TS/SCI 


    If you would like to learn more about Fulcrum please take a few minutes to peruse our website http://www.fulcrumco.com/


    Physical Demands - The physical demands described here are representative of those that may need to be met by an employee to successfully perform the essential functions of this job. Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions. 

    While performing the duties of this Job, the employee is regularly required to sit and talk or hear. The employee is frequently required to walk; use hands to finger, handle, or feel and reach with hands and arms. The employee is occasionally required to stand; climb or balance and stoop, kneel, crouch, or crawl. The employee must occasionally lift and/or move up to 20 pounds.  


    EOE- Fulcrum is an equal opportunity employer and gives consideration for employment to qualified applicants without regard to race, color, religion, sex, national origin, disability or protected veteran status. EOE of Minorities/Females/Veterans/Disability 

    “CJ”  *MON* 


    Sorry the Share function is not working properly at this moment. Please refresh the page and try again later.
    Share on your newsfeed