eDiscovery Forensic Analyst
Fully Remote Remote Worker
Description

 

The eDiscovery Forensic Analyst will provide day-to-day support for OCC electronic discovery and forensic collection activities, with an emphasis on defensible identification, preservation, collection, processing, and transfer of electronically stored information. The resource will support Microsoft Purview and RelativityOne workflows, litigation holds, data transmittals and extractions, Microsoft Teams/PST processing, and related forensic data-management activities. This role is fully remote.

Key Responsibilities:

  • Process data transmittal, collection, and extraction requests for transfer into RelativityOne.
  • Support Microsoft Purview eDiscovery activities, including collections, litigation holds, review sets, exports, and custodian management.
  • Process Microsoft Teams data from PST and HTML exports using Message Crawler and convert/load data into Relativity as RSMF.
  • Support Relativity/RelativityOne workspace setup, search, review, production, and QC activities, particularly for chat and short-message data.
  • Maintain defensible forensic handling practices, including hash verification, chain of custody, validation, and documentation.
  • Troubleshoot incomplete, mixed, or otherwise imperfect source data while maintaining defensibility.
  • Support organization, integrity verification, and management of forensic image repositories using tools such as Magnet Axiom.
  • Support process improvement and automation activities using Microsoft Graph and PowerShell where applicable.
  • Maintain clear documentation and communicate regularly with program and client stakeholders.
Requirements
  • Hands-on Microsoft Purview eDiscovery experience.
  • Hands-on Relativity or RelativityOne experience.
  • Experience with electronic data collection, preservation, processing, and litigation holds.
  • Understanding of defensible eDiscovery and forensic handling practices, including hashing and chain of custody.
  • Experience processing PST, HTML, collaboration-platform, or other structured/unstructured data.
  • Ability to independently troubleshoot collection and processing issues.
  • Strong written/verbal communication and ability to operate independently in a remote environment.
  • Experience supporting a government, legal, regulated, or similarly controlled environment.
  • Ability to obtain and maintain a Public Trust Security Clearance.
  • U.S. Citizen.

Preferred Qualifications:

  • Message Crawler and RSMF processing experience.
  • Microsoft Teams collection/processing experience.
  • Microsoft Graph and PowerShell experience.
  • Magnet Axiom experience.
  • Cellebrite, GrayKey, mobile-device, cloud, iCloud, or social-media forensic experience.
  • Experience handling large forensic data repositories.

 
The salary for this position ranges from $60,000 to $70,000 annually. The exact salary offered will depend on your qualifications, experience, and alignment with the responsibilities of the role. In addition to the base salary, we offer a comprehensive total compensation package that includes health, dental, and vision insurance, a 401(k) plan with company match, paid time off, and opportunities for bonuses based on individual and company performance. We believe in rewarding our employees holistically, beyond just their paycheck, to ensure long-term satisfaction and well-being.