Digital Forensics Jobs

Current DFIR openings worldwide, updated daily. Links to original listings.

North America

United States

Digital Forensics Consultant

ENDUIR Cyber

United States

Junior · Full-time · $75,000.00/yr - $120,000.00/yr

Join a cybersecurity consulting firm as a forensics practitioner supporting breach investigations and incident response engagements. Collect and analyse digital evidence, reconstruct incident timelines, and produce clear findings reports for technical, executive, and legal audiences.

View Job

Manager, Digital Forensics & Incident Response (DFIR)

Stealth Talent Solutions

United States

Remote · Manager · Full-time

Lead complex cyber investigations and forensic engagements across ransomware, data breaches, and insider threats. Manage client communications, mentor IR practitioners, and conduct hands-on Windows forensic analysis from triage through recovery.

View Job

Senior Analyst – Forensics & Response

TikTok USDS Joint Venture

Washington, DC

Onsite · Senior · Full-time

Lead complex digital forensic investigations and incident response across enterprise endpoints, mobile devices, servers, and cloud infrastructure. Responsibilities include evidence acquisition, artifact analysis, forensic reporting, and legal/compliance support within an insider threat detection team.

View Job

Cybersecurity Operations Analyst

SITEC Consulting, LLC.

Springfield, VA

Onsite · Senior · Full-time

Senior Tier 3 incident responder supporting complex cybersecurity incidents in a mission-focused environment, performing host, memory and network forensic analysis, malware investigation, threat attribution, and coordinating with law enforcement and counterintelligence stakeholders.

View Job

Senior Incident Responder / Threat Hunter

ShorePoint, LLC

Albuquerque, NM

Onsite · Senior · Full-time

Lead structured threat hunts, complex incident response actions and digital forensic investigations across enterprise environments, integrating cyber threat intelligence to detect, analyse and mitigate malicious activity for high-profile public and private sector clients.

View Job

View all 282 United States jobs →

Canada

Senior Incident Response Security Consultant, Mandiant, Google Cloud

Google

Alberta

Remote · Senior · Full-time

Join a world-renowned incident response team investigating complex, high-profile breaches. Responsibilities include forensic analysis, threat hunting, malware triage, containment, and crisis management for clients across sectors, with up to 30% travel.

View Job

Consultant principal en sécurité en matière d’intervention en cas d’incident, Mandiant, Google Cloud

Google

British Columbia

Remote · Senior · Full-time

Senior IR consultant role with Mandiant's Google Cloud practice, handling complex security incident investigations, containment and recovery, with a focus on forensic analysis, threat hunting and malware triage for high-profile clients across Canada.

View Job

Digital Forensic Investigator

Grande Prairie Police Service

Grande Prairie, Alberta

Onsite · Mid · Full-time

Join a municipal police service to collect, preserve, examine and analyse digital evidence across computers, mobile devices, networks and cloud systems, supporting criminal investigations and providing expert witness testimony in court.

View Job

Consultant principal en sécurité en matière d’intervention en cas d’incident, Mandiant, Google Cloud

Google

New Brunswick

Remote · Senior · Full-time

Senior IR consultant role with Mandiant delivering end-to-end incident response, forensic analysis, malware triage and crisis management for complex, high-profile security incidents across cloud and on-premises environments.

View Job

Senior Incident Response Consultant 2

Sophos

Canada

Senior · Full-time

Lead complex incident response engagements for global clients, conducting forensic investigations, root cause analysis, threat neutralisation, and producing executive reports mapped to the MITRE ATT&CK framework. Coordinate with legal counsel and cyber insurers.

View Job

Sr. Cyber Consultant, DFIR

LevelBlue

Canada

Senior · Full-time

Join a global DFIR team leading cybersecurity incident investigations, conducting digital forensic examinations across endpoints, networks and cloud platforms, and delivering clear, narrative-driven reports to technical and non-technical stakeholders.

View Job

View all 48 Canada jobs →

UK & Europe

United Kingdom

Digital Forensics Analyst

Computer Forensics Lab

London, England

Onsite · Junior · Full-time

A full-time, on-site London role conducting forensic analysis of mobile phones, computers and digital media. Responsibilities include evidence handling, malware analysis, data recovery and report writing, supporting legal and investigative clients.

View Job

Digital Forensic Technician

Insolvency Service

Stratford, England

Onsite · Mid · Part-time, Full-time · £33,000 - £34,252 a year

A government forensic computing unit seeks a technician to acquire and examine digital evidence for civil and criminal insolvency investigations, supporting field operations at business premises, search warrants and courts.

View Job

Incident Response Lead (DFIR)

LT Harper Recruitment Group

England

Hybrid · Lead/Principal · Full-time · £90,000.00/yr - £110,000.00/yr

Lead a cyber response team handling nationally significant incidents across government, CNI and enterprise. Combines hands-on digital forensics with operational leadership, covering the full incident lifecycle from triage and containment to recovery and client capability uplift.

View Job

NMC Cyber Incident Responder (Digital Forensics)

Police Digital Service

Wigan, England

Hybrid · Senior · Full-time

Lead and support cyber security incident investigations across UK policing, conducting forensic examinations of endpoints, memory and cloud environments, analysing digital evidence, and advising senior stakeholders on containment, remediation and response.

View Job

Incident Response Specialist

Marcus Donald People

England

Hybrid · Mid · Contract

Join a banking-sector cyber security team as a contract incident response specialist, investigating security breaches, conducting digital forensics, and strengthening enterprise defences. Wednesday–Saturday schedule; predominantly remote with monthly London office visits.

View Job

Digital Forensic Technician

The Insolvency Service

London, England

Onsite · Junior · Full-time

A government forensic computing unit seeks a technician to acquire and analyse digital evidence, support search warrants and investigations, maintain laboratory systems, and produce evidential reports and statements.

View Job

View all 79 United Kingdom jobs →

Ireland

Manager, Incident Response

Arctic Wolf

Ireland

Remote · Manager · Full-time

Lead and develop a team of incident response professionals, overseeing complex DFIR investigations including ransomware, BEC and large-scale recovery efforts, while driving operational excellence, quality standards and team capability growth.

View Job

Professional Services Principal Consultant – Incident Response, French-Speaking (Remote)

CrowdStrike

Dublin

Remote · Lead/Principal · Full-time

French-speaking principal consultant leading incident response investigations and host/network forensic analysis across Windows, Mac and Linux. Engages Fortune 100 clients, produces reports for legal counsel, and contributes to cloud IR and threat hunting activities.

View Job

Senior Cyber Incident Response Analyst

Integrity360

Dublin, County Dublin

Onsite · Senior · Full-time

Senior analyst role delivering incident response, digital forensics, malware reverse engineering, host/network intrusion analysis and cyber threat intelligence services to mid-market and enterprise clients across multiple sectors from a Dublin-based SOC.

View Job

Forensic Technology Senior Consultant (eDiscovery)

Deloitte

Dublin, County Dublin

Hybrid · Senior · Full-time · €55,000 a year

Lead complex eDiscovery and forensic technology engagements across litigation, regulatory, and investigation matters. Manage EDRM workflows, conduct forensic collections, administer RelativityOne, and coach junior staff within a professional services environment.

View Job

Associate, eDiscovery/Digital Forensics

Interpath Advisory

Dublin, County Dublin

Mid · Full-time

Join a data and technology investigations team delivering forensic collections, eDiscovery platform management, litigation support, and regulatory response across complex cross-border matters, working with legal counsel and corporate clients globally.

View Job

Germany

Senior Consultant IT Forensik Incident Response

HiSolutions AG

Germany

Hybrid · Senior · Full-time

Senior consulting role combining digital forensics and incident response, investigating cyberattacks, securing court-admissible digital evidence, analysing attack vectors, and supporting affected organisations through crisis containment and recovery — both remotely and on-site.

View Job

(Senior) Manager – Digital Forensics / Cyber Forensics in Köln

Deloitte

Cologne, North Rhine-Westphalia

Hybrid · Manager · Full-time

Lead digital and cyber forensics investigations into cybercrime and economic crime, managing incident response projects, developing forensic service offerings, and supporting business development across Germany.

View Job

IT-Experte / Informatiker / IT-Forensiker beim Landesamt zur Bekämpfung der Finanzkriminalität Nordrhein-Westfalen (LBF NRW)

Ministerium der Finanzen des Landes Nordrhein-Westfalen

Düsseldorf

Hybrid · Mid · Vollzeit, Teilzeit möglich

Join a state financial crime agency as a digital forensics specialist, securing and examining digital evidence from devices and cloud systems during search operations, supporting investigators across ten regional offices in North Rhine-Westphalia.

View Job

Wissenschaftliche Mitarbeiterin / wissenschaftlicher Mitarbeiter der forensischen Informations- und Kommunikationstechnik

Bundeskriminalamt

Wiesbaden, Hesse

Onsite · Mid · Full-time

Research scientist role at Germany's federal criminal police office, developing and validating new forensic methods for vehicle infotainment systems, including security feature bypass, reverse engineering, and publication of findings.

View Job

Cyber Security Analyst – Level 3

Finanz Informatik Technologie Service

Stuttgart, Baden-Württemberg

Senior · Full-time

Senior SOC analyst role leading complex incident response and digital forensics investigations, conducting memory forensics and timeline analysis, performing malware analysis, driving detection engineering, and mentoring junior analysts within a financial-sector security operations centre.

View Job

Managing Consultant Incident Management / DFIR

HiS­o­lu­ti­ons AG

Bonn

Hybrid · Lead/Principal · Vollzeit

Lead incident response and DFIR engagements for clients, managing containment and forensic analysis both remotely and on-site. Mentor consultants, deliver resilience workshops, and help organisations recover from cyber incidents.

View Job

View all 81 Germany jobs →

Netherlands

digitaal specialist – Districtsrecherche West

Politie Nederland

Maarssen, Utrecht

Onsite · Mid · Full-time

Digital forensics specialist role within a district criminal investigation unit, analysing digital devices, securing evidence, supporting investigations into cybercrime and digital aspects of traditional crime, and advising colleagues on digital methods.

View Job

Principal Consultant – DFIR

Fox-IT

Rijswijk, South Holland

Onsite · Lead/Principal · Full-time

Lead digital forensics and incident response engagements for enterprise clients, conducting advanced host, network, memory and cloud forensic investigations, managing a technical team, and communicating findings to executive stakeholders.

View Job

Consultant

FORCYD

Amsterdam, North Holland

Hybrid · Junior · Full-time

Entry-level consulting role combining digital forensics, cyber incident investigation, and legal data analysis. Involves evidence acquisition, large-scale data analytics, and fraud or regulatory investigations, supported by a structured two-year development programme.

View Job

Forensisch IT rechercheur FIOD

Belastingdienst

Amsterdam, North Holland

Onsite · Mid · Full-time · €3,496.00/mo - €6,275.00/mo

Forensic IT investigator role within the Dutch tax authority's financial crime unit, examining digital evidence across networks, cloud environments and financial systems to support criminal investigations into fraud, money laundering and fiscal offences.

View Job

junior digitaal rechercheur – Dienst Infrastructuur

Politie Nederland

Driebergen, Utrecht

Onsite · Junior · Full-time

Junior digital investigator role within a law enforcement digital specialist team, conducting forensic examination of devices, data analysis, cryptocurrency investigations, and dark web research to combat organised and infrastructure-related crime.

View Job

digitaal rechercheur serious organised crime

Politie Nederland

Amsterdam, North Holland

Onsite · Mid · Full-time

Digital investigator role within a national serious organised crime unit, recovering and analysing digital evidence from smartphones, computers and online sources to support complex criminal investigations and identify suspects.

View Job

View all 26 Netherlands jobs →

Middle East

United Arab Emirates

Senior Consultant – Incident Response

CPX

Abu Dhabi, Abu Dhabi Emirate

Onsite · Senior · Full-time

Senior DFIR consultant role leading incident response engagements and digital forensic investigations across Windows, Mac, Linux and mobile platforms, supporting SOC activities, threat hunting, and producing detailed technical reports for clients.

View Job

Senior Manager – Incident Response

CPX

Abu Dhabi, Abu Dhabi Emirate

Onsite · Manager · Full-time

Lead a dedicated DFIR team embedded with a single VIP client, overseeing incident response engagements, forensic investigations across host, network and mobile platforms, threat hunting, and team development in a high-stakes cyber defence environment.

View Job

Incident Response Security Consultant, Mandiant

Google

Dubai

Hybrid · Mid · Full-time

Lead complex, client-facing incident response engagements involving host, network, and cloud forensics, malware triage, and threat hunting. Communicate findings to technical and executive audiences, mentor junior staff, and enhance investigation processes.

View Job

Incident Response Security Consultant, Mandiant

Google

United Arab Emirates

Hybrid · Mid · Full-time

Lead client-facing incident response engagements for a global cyber defence leader, conducting host and network forensics, malware triage, threat hunting, and delivering findings to technical and executive audiences across the UAE.

View Job

Incident Response Lead (DFIR), UAE

DeepSource Technologies

Dubai

Onsite · Lead/Principal · Full-time

Leads cybersecurity incident response and digital forensic investigations in enterprise environments, performing triage, containment, root cause analysis, and malware analysis while developing IR playbooks and coordinating cross-functional security teams.

View Job

Lead Consultant – Incident Response

CPX

Abu Dhabi, Abu Dhabi Emirate

Lead/Principal · Full-time

Lead incident response engagements and threat hunting activities, performing host and network forensics across Windows, Mac, and Linux platforms. Produce technical reports, mentor teams, and support customers in improving defensive security posture.

View Job

View all 12 United Arab Emirates jobs →

Israel

DFIR Analyst

SentinelOne

Israel

Mid · Full-time

Join a global 24x7 DFIR team delivering expert breach response for enterprises facing active cyber threats. Conduct forensic analysis, threat hunting, and evidence acquisition across endpoint, network, cloud, and SaaS environments spanning ransomware, BEC, APT, and identity compromise incidents.

View Job

DFIR Specialist

OP Innovate Ltd

ראשון לציון, מחוז המרכז

Senior

Lead high-severity digital forensics and incident response investigations, conducting deep-dive disk, memory and network forensics, managing end-to-end IR engagements, and producing detailed technical reports for clients across multiple sectors.

View Job

Cyber Security Specialist

comblack

West Jerusalem, Jerusalem District

Onsite · Mid · Full-time

Seeking an experienced cyber security specialist to conduct in-depth incident investigations, perform digital forensics and malware analysis, carry out proactive threat hunting, and develop research-supporting tools in a Jerusalem-based enterprise environment.

View Job

Cyber Researcher (37442)

מרטנס | Mertens – מקבוצת מלם תים

Center District

Onsite · Mid · Full-time

A cyber research role focused on CTI and threat hunting, requiring forensic investigations, malware analysis, APT research, and the development of detection capabilities using Python, AI, and ML across cloud, Windows, and Linux environments.

View Job

Head of Incident Response & DFIR | Founding Leadership Role

Up Security (Formerly Wake-up Cyber)

Israel

Lead/Principal · Full-time

A founding leadership opportunity to build and lead a new incident response and digital forensics practice, managing complex cyber incidents end-to-end, defining methodology and tooling, and growing a team from scratch.

View Job

Senior Incident Response Security Consultant, Mandiant, Google Cloud (Hebrew)

Google

Israel

Remote · Senior · Full-time

Lead client-facing incident response engagements for Mandiant, conducting host and network forensics, malware triage, threat hunting, and log analysis. Communicate findings to technical and executive audiences; mentor junior consultants. Hebrew fluency required.

View Job

View all 24 Israel jobs →

Asia-Pacific

India

Cyber Forensics Analyst

OrionSecure

Delhi

Onsite · Junior

Conduct forensic examinations of digital and multimedia evidence in support of criminal and administrative investigations, applying scientific methodologies, industry-standard tools, and quality assurance practices to analyse and report findings.

View Job

Cyber Defense – Cyber Triage and Forensic Analyst

EY

Thiruvananthapuram, Kerala

Hybrid · Senior

Senior analyst role focused on cyber triage, digital forensics, and incident response within a global information security team. Responsibilities include threat hunting, forensic investigations, SIEM/EDR analysis, mentoring junior analysts, and improving security processes.

View Job

Digital Forensic Lead

SISA

Bengaluru, Karnataka

Lead/Principal · Full-time

Lead digital forensic investigations across the full evidence lifecycle — from collection and preservation through in-depth analysis, malware triage, and expert reporting — supporting clients, legal teams, and court proceedings.

View Job

Information & Cybersec Lead

HCLTech

Gautam Budh Nagar, Uttar Pradesh

Onsite · Senior

A forensic investigator role focusing on cyber incident investigations, digital evidence collection and analysis, and forensic reporting. Requires expertise in tools such as EnCase, FTK, and KAPE, alongside strong knowledge of cybersecurity and incident response practices.

View Job

DFIR Analyst

Innefu Labs

Delhi

Mid · Full-time

Hands-on DFIR analyst role investigating security incidents across Windows, Linux, and macOS environments, performing endpoint forensics, log analysis, memory forensics, IOC correlation, and supporting containment and remediation activities with 2–3 years' experience.

View Job

DFIR Lead

UST

Trivandrum, Kerala

Lead/Principal · Full-time

Lead high-impact digital forensics investigations and incident response efforts, acting as the top escalation point. Conduct deep-dive analysis across file systems, memory, and networks while managing client communications and driving DFIR service growth.

View Job

View all 46 India jobs →

Singapore

Digital Forensics Specialist

ISRM

Singapore

Remote · Mid · Part-time

A flexible, remote, project-based role conducting forensic examinations of digital devices, systems and networks to support investigations into security incidents, fraud and compliance matters across the APAC region.

View Job

DFIR Analyst | Cyber Security Investigations | Cloud

Randstad Singapore

Singapore

Onsite · Mid · Full-time

A mid-level DFIR specialist role based in Singapore, conducting forensic investigations across endpoints, servers, mobile devices and cloud environments, alongside incident containment, log correlation and post-incident reporting.

View Job

Senior Consultant, Incident Response and Threat Hunting

Ensign InfoSecurity

Singapore

Senior · Full-time

Lead complex incident response, threat hunting, and digital forensic engagements across enterprise, cloud, mobile, and AI environments. Mentor junior staff, advise clients, and develop service offerings and cyber resilience initiatives.

View Job

Cyber Threat Intelligence & Incident Response

Better Chance

Singapore

Senior · Full-time

A senior hands-on role leading end-to-end incident response, threat hunting, and threat intelligence operations across enterprise and cloud environments, with responsibility for detection engineering, malware analysis, and security control improvement.

View Job

Senior Incident Responder

Dragos, Inc.

Singapore

Hybrid · Senior · Full-time

Lead complex incident response engagements across APAC's OT/ICS environments, investigating high-impact incidents, conducting forensic analysis, driving containment and recovery, and communicating findings to technical and executive stakeholders.

View Job

Digital Forensics Examiner, Integrated Forensic Service

HTX (Home Team Science & Technology Agency)

Singapore

Onsite · Junior · Full-time

Join a government science and technology agency supporting criminal investigations through forensic examination of digital devices, analysis of large datasets across multiple platforms, and development of operational forensic capabilities to enhance public safety.

View Job

View all 37 Singapore jobs →

Australia

Senior Digital Forensics and eDiscovery Analyst

NSW Department of Customer Service

Sydney, New South Wales

Hybrid · Senior · Full-time · A$133,348.00/yr - A$146,945.00/yr

A senior analyst role within a government cyber security function, conducting hands-on digital forensic examinations, eDiscovery, and insider risk investigations across endpoint, enterprise, and cloud environments in Sydney CBD.

View Job

Incident Response Sr. Consultant

CrowdStrike

Rockhampton

Senior · Full-time

Senior IR consultant role delivering reactive and proactive cybersecurity engagements across Asia Pacific and Japan. Responsibilities include leading incident response investigations, host and network forensics, threat remediation, and presenting findings to technical and executive stakeholders.

View Job

Senior Incident Responder

Sourceo

Sydney NSW

Hybrid · Senior · Full-time

Lead complex cyber security incident investigations as incident commander, directing containment and recovery across multi-team environments. Conduct advanced digital forensics across host, memory, network, identity and cloud platforms within a major telecommunications organisation.

View Job

Mobile Device Forensic Examiner

RIVICA Investigations & Covert Solutions Pty Ltd

Melbourne, Victoria

Onsite · Mid · Contract

Experienced mobile device forensic examiner sought on an independent subcontract basis in Melbourne to conduct forensic acquisition, extraction and analysis of iOS and Android devices, produce court-defensible reports and maintain full chain of custody.

View Job

Security Forensics Engineer

Pepperstone

Melbourne, Victoria

Mid · Full-time

A specialist role combining cyber investigations, digital forensics and incident response within a global fintech. Responsibilities span evidence preservation, root cause analysis, malware analysis, threat hunting and forensic process improvement across cloud and endpoint environments.

View Job

Cyber Investigations Manager

Downer

Sydney, New South Wales

Onsite · Manager · Full-time

Leads complex cyber investigations and digital forensic activities across a large enterprise, managing evidence handling, forensic analysis, incident scoping, and stakeholder reporting while developing team capability and maturing cyber defence processes.

View Job

View all 32 Australia jobs →

New Zealand

DFIR Analyst

SentinelOne

Auckland

Mid · Full-time

Conduct EDR-driven incident response and forensic investigations across endpoint, network, cloud, and SaaS environments. Acquire and preserve evidence, support malware analysis, produce investigative reports, and contribute to a rotating on-call schedule for major incidents.

View Job

Digital Forensic Technician

New Zealand Police

Wellington City, Wellington

Onsite · Junior · Permanent, Full-time

Join New Zealand's largest digital forensics team within the High-Tech Crime Group, supporting criminal investigations through digital evidence acquisition, analysis, and reporting, with a structured career pathway from Technician to Analyst.

View Job

Principal DFIR Analyst

New Zealand - All Locations Work from where you are

New Zealand

Hybrid · Lead/Principal · Permanent, Full-time

Senior technical lead for national healthcare cyber security, conducting complex digital forensic investigations and incident response, shaping DFIR strategy, leading threat hunting, and mentoring analysts within a national SOC environment.

View Job

Primary or Senior Electronic Forensic Investigator-Club Funded Role

New Zealand Government

Auckland City, Auckland

Onsite · Mid · Fixed term contract

Government forensics role supporting multiple agencies including the Serious Fraud Office. Responsibilities include digital evidence acquisition, analysis and reporting across mobile, desktop and cloud platforms, with expert witness testimony in District and High Court.

View Job

Africa

South Africa

Digital Forensic Investigator

Network Contracting Solutions -a division of ADvTECH Resourcing

Johannesburg

Onsite · Senior · Contract · ZAR 330.00/hr - ZAR 336.00/hr

A five-month contract role conducting complex digital forensic investigations across endpoints, mobile devices, cloud platforms and network infrastructure, producing evidential reports and presenting findings in disciplinary, civil and criminal proceedings.

View Job

Security Operations Centre Analyst

FNB South Africa

Randburg, Gauteng

Onsite · Senior · Full-time

Senior SOC analyst role combining end-to-end incident response and digital forensics with threat hunting, detection engineering, and mentoring. Requires deep expertise in log analysis, endpoint/network forensics, SIEM/EDR platforms, and malware triage.

View Job

Investigator, Digital Forensics

Gijima Staffing Solutions - HCM

Knysna, Western Cape

Onsite · Mid · Full-time

Conduct complex digital forensic investigations across endpoints, mobile devices, cloud platforms and network infrastructure. Analyse digital evidence, prepare forensic reports and provide expert testimony in disciplinary, regulatory and criminal proceedings.

View Job

Digital Forensic Specialist

Grant Thornton

Midrand, Gauteng

Senior · Permanent

Senior digital forensics specialist role conducting complex investigations into fraud, misconduct, and data breaches. Responsibilities include evidence acquisition, artifact analysis, forensic reporting, cyber investigation support, and mentoring junior practitioners.

View Job

Digital Forensic Investigator

Grant Thornton

Midrand, Gauteng

Onsite · Mid · Permanent

Collect, preserve, analyse and report on digital evidence to support fraud, misconduct and cyber investigations. Conduct forensic imaging, email and file system analysis, and compile defensible reports for legal and regulatory proceedings.

View Job

Digital Forensic First Responder (Entry-Level)

SGS

Centurion, Gauteng

Onsite · Junior · Full-time

Entry-level digital forensics role supporting real-world cyber investigations, fraud cases, and digital crime scenes. Responsibilities include evidence collection, basic forensic analysis, IOC identification, and documentation, with full training on industry-standard tools provided.

View Job

View all 8 South Africa jobs →