Summary
Charles River Associates is a leading global consulting firm that provides economic, financial, technical, and business management expertise. They are seeking a Cyber & Forensic Technology Consulting Analyst/Associate to assist with security and privacy investigations, conduct forensic analysis, and communicate findings with clients and team members.
Responsibilities
- Assist with security and privacy investigations in response to data security matters, which may include ongoing breaches and fraud
- Engage in problem solving and forensic analysis of digital information using standard computer forensic and evidence handling techniques and tools
- Apply investigative techniques, scientific reasoning, and digital forensic techniques against various systems to answer questions
- Identify, research, and organize information to determine what a hacker did to a compromised system, whether data was stolen from a company asset, or what data to assess and provide in a litigation
- Defensibly collect digital evidence and complete chain-of-custody documentation
- Leverage your programming, model building, and database administration skills (including using Python, T-SQL, VBA, Excel, C#, and/or other programming languages and tools)
- Communicate with team members, clients, and other professionals to share investigative and analytical findings, and assist with the drafting of written reports to summarize procedures performed and findings
- Work closely with business stakeholders and experts to develop new and innovative tools to support the evolving forensic landscape
- Stay current with developments in digital forensics, software tools, e-discovery, and incident response
Skills
- Bachelor's or Master's degree candidates graduating December 2026/Summer 2027 with an academic focus in Cybersecurity, Computer Science and Engineering, Digital Forensics, Management Information Systems, Security Information Systems, or related field
- Strong understanding of computer operating systems, software, and hardware
- Ability to conduct detailed forensic investigations and analyses of computers, networks, mobile devices, and removable media
- Experience with conducting digital forensic analyses using commercial and open-source forensic tools, including file system forensics, memory analysis, and network analysis
- Experience with conducting static/dynamic malware analyses in a lab environment and threat hunting in a live environment
- Strong understanding of proper evidence handling procedures and chain-of-custody
- Experience with drafting technical and investigative reports and communicating technical findings
- High-level familiarity with legal concepts related to intellectual property
- Experience with utilizing automation tools and scripts to expedite analyses
- Understanding of incident handling procedures, including preparation, identification, containment, eradication, and recovery-to-protect enterprise environments
- Understanding of common attack techniques used by an adversary on a victim network and how to leverage those techniques to stop further adversary activity
- Effective written and oral communication skills
- Demonstrated high level of initiative and leadership
- Demonstrated attention to detail and commitment to producing accurate, high-quality work
- Strong teamwork and collaboration capabilities
- Excellent time management and task prioritization skills
- Clear and demonstrated interest in consulting through coursework, work experience, activities, or attendance at CRA recruiting events
- Individuals with digital forensics/incident response training and/or certifications, including SANS GIAC (GCIA, GCFA, GCFE, GNFA, GCCC, and/or GREM), IACIS (CFCE or CIFR), and/or Guidance Software (EnCE) are preferred but not required
Qualifications
Must Haves
- Bachelor's or Master's degree candidates graduating December 2026/Summer 2027 with an academic focus in Cybersecurity, Computer Science and Engineering, Digital Forensics, Management Information Systems, Security Information Systems, or related field
- Strong understanding of computer operating systems, software, and hardware
- Ability to conduct detailed forensic investigations and analyses of computers, networks, mobile devices, and removable media
- Experience with conducting digital forensic analyses using commercial and open-source forensic tools, including file system forensics, memory analysis, and network analysis
- Experience with conducting static/dynamic malware analyses in a lab environment and threat hunting in a live environment
- Strong understanding of proper evidence handling procedures and chain-of-custody
- Experience with drafting technical and investigative reports and communicating technical findings
- High-level familiarity with legal concepts related to intellectual property
- Experience with utilizing automation tools and scripts to expedite analyses
- Understanding of incident handling procedures, including preparation, identification, containment, eradication, and recovery-to-protect enterprise environments
- Understanding of common attack techniques used by an adversary on a victim network and how to leverage those techniques to stop further adversary activity
- Effective written and oral communication skills
- Demonstrated high level of initiative and leadership
- Demonstrated attention to detail and commitment to producing accurate, high-quality work
- Strong teamwork and collaboration capabilities
- Excellent time management and task prioritization skills
- Clear and demonstrated interest in consulting through coursework, work experience, activities, or attendance at CRA recruiting events
Nice to Haves
- Individuals with digital forensics/incident response training and/or certifications, including SANS GIAC (GCIA, GCFA, GCFE, GNFA, GCCC, and/or GREM), IACIS (CFCE or CIFR), and/or Guidance Software (EnCE) are preferred but not required
Benefits
- In-house immigration support for foreign nationals and international business travelers.
- Medical, dental, and vision insurance
- 401(k) retirement plan with employer match
- Life and disability insurance
- Paid time off (vacation, sick leave, holidays)
- Paid parental leave
- Wellness programs and employee assistance resources
- Commuter benefits
- CRAs robust skills development programs, including a commitment to offering 100 hours of training annually through formal and informal programs
- In-house immigration support for foreign nationals and international business travelers