← All jobs

Digital Forensics Jobs: Canada

48 current openings, updated daily. Links to original listings.

Reset

Senior Incident Response Security Consultant, Mandiant, Google Cloud

Google

Alberta

Remote · Senior · Full-time

Join a world-renowned incident response team investigating complex, high-profile breaches. Responsibilities include forensic analysis, threat hunting, malware triage, containment, and crisis management for clients across sectors, with up to 30% travel.

View Job

Consultant principal en sécurité en matière d’intervention en cas d’incident, Mandiant, Google Cloud

Google

British Columbia

Remote · Senior · Full-time

Senior IR consultant role with Mandiant's Google Cloud practice, handling complex security incident investigations, containment and recovery, with a focus on forensic analysis, threat hunting and malware triage for high-profile clients across Canada.

View Job

Digital Forensic Investigator

Grande Prairie Police Service

Grande Prairie, Alberta

Onsite · Mid · Full-time

Join a municipal police service to collect, preserve, examine and analyse digital evidence across computers, mobile devices, networks and cloud systems, supporting criminal investigations and providing expert witness testimony in court.

View Job

Consultant principal en sécurité en matière d’intervention en cas d’incident, Mandiant, Google Cloud

Google

New Brunswick

Remote · Senior · Full-time

Senior IR consultant role with Mandiant delivering end-to-end incident response, forensic analysis, malware triage and crisis management for complex, high-profile security incidents across cloud and on-premises environments.

View Job

Senior Incident Response Consultant 2

Sophos

Canada

Senior · Full-time

Lead complex incident response engagements for global clients, conducting forensic investigations, root cause analysis, threat neutralisation, and producing executive reports mapped to the MITRE ATT&CK framework. Coordinate with legal counsel and cyber insurers.

View Job

Sr. Cyber Consultant, DFIR

LevelBlue

Canada

Senior · Full-time

Join a global DFIR team leading cybersecurity incident investigations, conducting digital forensic examinations across endpoints, networks and cloud platforms, and delivering clear, narrative-driven reports to technical and non-technical stakeholders.

View Job

Incident Response Commander/Forensic Analyst

IstroSec

Urban agglomeration of Montreal, Quebec

Hybrid · Senior · Full-time

A hybrid IR Commander and Forensic Analyst contractor role covering live incident triage, endpoint and memory forensics, threat hunting, attack kill-chain reconstruction, client coordination, and post-incident reporting for client organisations.

View Job

Senior Incident Response Security Consultant, Mandiant, Google Cloud

Google

New Brunswick

Remote · Senior · Full-time

Join Mandiant's incident response team to investigate and contain complex cyber incidents. Work involves forensic analysis, threat hunting, malware triage, and advising clients through high-profile breaches across cloud and on-premises environments.

View Job

Senior Digital Forensics Examiner – ITS5

Minnesota Direct Care and Treatment

St.-Paul, New Brunswick

Hybrid · Senior · Full-time

Senior examiner role within a government digital forensics laboratory, handling complex internal and security investigations from evidence acquisition through to reporting, while mentoring junior staff and developing lab procedures and processes.

View Job

Stream 1 – Digital Evidence Specialist / Stream 2 – Digital Evidence Specialist Supervisor

Government of Canada

Montréal, QC

Onsite · Mid · Full-time · $85,854–$125,914 a year

Join the RCMP's Digital Forensics Services unit in Montréal as a Digital Evidence Specialist or Supervisor. Examine and analyse digital evidence in support of criminal investigations, with opportunities at both specialist and supervisory levels.

View Job

Incident Response Security Consultant, Mandiant (English)

Google

Québec, Quebec

Remote · Mid · Full-time

Join Mandiant's incident response team to investigate and contain complex security incidents. Responsibilities include host and network forensics, malware triage, threat hunting, and communicating findings to technical and executive stakeholders across Canada.

View Job

Senior Forward Deployed Detection and Response Consultant, Cyber Defence, National Security, Mandiant

Google

Ottawa, Ontario

Onsite · Senior · Full-time

Embed with Canada's national security and defence clients to lead incident response, forensic analysis, threat hunting, and malware triage, while designing agentic AI solutions to enhance detection and remediation capabilities at scale.

View Job

Forensisch IT Rechercheur

Nederlandse Voedsel en Warenautoriteit - NVWA

Newfoundland and Labrador

Mid · Full-time

Digital forensics investigator role within a criminal investigation team, responsible for securing digital evidence from diverse devices and networks, advising investigators, coordinating digital operations during searches, and producing court-admissible forensic reports.

View Job

Consultant en sécurité en matière de réponse aux incidents, Mandiant (anglais)

Google

Québec, Quebec

Remote · Mid · Full-time

Mandiant IR consultant role requiring end-to-end incident investigation, containment and remediation. Responsibilities include forensic analysis (disk, memory, network, cloud), malware triage, threat hunting and crisis management for complex, high-profile client engagements.

View Job

Incident Response Security Consultant, Mandiant (English)

Google

British Columbia

Remote · Mid · Full-time

Join Mandiant's incident response team to investigate complex security breaches, conduct host and network forensics, malware triage, and threat hunting, helping clients detect, contain, and remediate cyber incidents at scale.

View Job

Enquêteur

Autorité des marchés financiers (Québec)

Montreal, Quebec

Hybrid · Mid · Full-time

Digital forensics investigator role within a financial regulatory authority, responsible for collecting, preserving and analysing digital evidence, conducting computer searches, supporting OSINT and eDiscovery activities, and testifying in legal proceedings.

View Job

Incident Response Senior Consultant

Jobgether

Canada

Senior · Full-time

Senior IR consultant role leading complex cybersecurity investigations across host, network, and cloud environments. Responsibilities include forensic analysis, threat hunting, malware investigation, remediation planning, and communicating findings to executive and legal stakeholders.

View Job

Incident Response Senior Consultant (Remote, CAN)

CrowdStrike

Toronto

Remote · Senior · Full-time

Lead incident response engagements and intrusion investigations for global organisations, conducting host and network forensics across Windows, Mac and Linux, performing malware analysis, and delivering findings to senior stakeholders.

View Job

Consulting Associate/Recovery Services (Forensic Services practice)

Charles River Associates

Toronto, Ontario

Mid · Internship

Hands-on forensic analyst and incident responder executing digital forensic collections, ransomware recovery, BEC investigations, and identity remediation across Windows, Linux, cloud, and virtualised enterprise environments for a global consulting firm.

View Job

Associate/Cybersecurity & Incident Response (Forensic Services practice)

Charles River Associates

Toronto, Ontario

Mid · Internship

Join a forensic services consulting practice supporting fraud, breach and misconduct investigations. Conduct digital forensic analysis, incident response, malware analysis and threat hunting, and assist in drafting expert forensic reports and testimony for clients and counsel.

View Job

Consulting Director, DFIR, Reactive Services (Unit 42)

Palo Alto Networks

Toronto, Ontario

Remote · Lead/Principal · Full-time

Senior consulting director leading technical breach response teams and delivering expert DFIR guidance to clients across industries. Requires 10+ years hands-on experience with forensic tools, threat landscape knowledge, and strong client relationship management.

View Job

Security Specialist – Incident Commander (DFIR)

Ubisoft

Montréal, QC

Onsite · Senior · Full-time

Lead response to high-severity cybersecurity incidents across global infrastructure, conducting digital forensic investigations, threat hunting, and coordinating cross-functional teams. Improve IR processes, mentor SOC staff, and deliver post-incident reporting to technical and executive stakeholders.

View Job

Senior Specialist, Incident Response | Spécialiste principal, Réponse aux incidents

SITA Switzerland Sarl

Montréal, QC

Senior · Full-time

Senior DFIR specialist role conducting forensic investigations across endpoints, servers, cloud and SaaS environments, managing incident response lifecycles, analysing malware and ransomware artefacts, and enhancing forensic readiness within a global aviation IT security team.

View Job

Senior DFIR Specialist

Malleum

Remote

Remote · Senior · Full-time

Lead and deliver digital forensics and incident response engagements across endpoint, network, cloud, and hybrid environments. Investigate ransomware, intrusions, and insider threats while helping shape a growing DFIR practice and mentoring junior practitioners.

View Job

Incident Response Analyst, Digital Forensics & Incident Response

ISA Cybersecurity

Toronto, ON

Hybrid · Mid · Full-time · $75,000–$105,000 a year

Hands-on DFIR analyst role supporting incident response engagements across endpoint, network, and cloud environments. Responsibilities include forensic acquisition, evidence analysis, timeline reconstruction, report writing, and playbook development under an Incident Commander.

View Job

Cybersecurity Incident Response Commander

ISA Cybersecurity

Toronto, ON

Hybrid · Lead/Principal · Full-time · $135,000–$180,000 a year

Serves as Incident Commander for all IR retainer and emergency engagements, leading digital forensic investigations across endpoint, network, mobile and cloud sources, developing DFIR playbooks, and presenting evidence reports to legal and client stakeholders.

View Job

Incident Response Security Consultant, Mandiant (English)

Google

Nova Scotia

Remote · Mid · Full-time · $134,000–$137,000 a year

Provide incident response and forensic consulting to clients navigating complex breaches. Conduct host and network forensics, malware triage, threat hunting, and support investigation, containment, and remediation across diverse environments.

View Job

Security Specialist – Incident Commander (DFIR)

Ubisoft

Montreal, Quebec

Senior · Full-time

Lead response to high-severity cybersecurity incidents across global gaming infrastructure, conducting digital forensic investigations, threat hunting, and coordinating across security, legal, and production teams using tools like Velociraptor, Splunk, and CrowdStrike.

View Job

Lead Service Manager – Incident Response Analyst

OpenText

Waterloo, Ontario

Hybrid · Lead/Principal · Full-time

Senior IR practitioner leading incident response retainer engagements across a managed security client base. Responsibilities include forensic investigations, containment, root cause analysis, evidence handling, and mentoring SOC analysts across cloud and on-prem environments.

View Job

Incident Response Security Consultant, Mandiant (English)

Google

Alberta

Remote · Mid · Full-time

Join Mandiant's incident response team to investigate and contain cyber incidents, conduct host and network forensics, perform malware triage, threat hunting, and communicate findings to clients across complex, high-profile engagements.

View Job

Digital Forensic Analyst II

District of Saanich

Victoria, British Columbia

Onsite · Mid · Full-time

Join a municipal police department as a digital forensic specialist responsible for collecting, preserving and analysing digital evidence, forensic video analysis, facial comparison, court testimony, and supporting complex criminal investigations.

View Job

Spécialiste de la sécurité – Responsable de la gestion des incidents de cybersécurité (analyse forensique)

Ubisoft

Montreal, Quebec

Senior · Full-time

Leads cybersecurity incident response and digital forensic investigations across a global gaming infrastructure, conducting memory, disk and network forensics using tools such as Velociraptor and Autopsy, while coordinating multi-team response and threat hunting.

View Job

Incident Response Lead

CyberClan

Canada

Lead/Principal · Full-time

Lead end-to-end incident response operations within a global CERT/DFIR team, managing detection, containment, forensic analysis, and remediation. Oversee IR planning, mentor staff, drive tooling development, and coordinate cross-functional teams during security incidents.

View Job

(2027 Bachelor’s/Master’s graduates) Cyber & Forensic Technology Consulting Analyst/Associate

Charles River Associates

Toronto, Ontario

Junior · Internship

Entry-level consulting role supporting digital forensic investigations, incident response, and cyber due diligence. Responsibilities include evidence collection, forensic analysis of devices and networks, malware analysis, report drafting, and tool development for litigation and security matters.

View Job

Senior Digital Forensic Investigator

eSentire

Canada

Hybrid · Senior · Full-time · CA$120,000.00/yr - CA$160,000.00/yr

Lead complex cyber investigations spanning data breaches, ransomware and espionage cases. Conduct digital forensics and incident response engagements, mentor junior staff, and deliver court-ready investigative conclusions across cloud and on-premise environments.

View Job

Senior DFIR Specialist

Malleum

Ottawa, Ontario

Hybrid · Senior · Full-time

Lead and deliver hands-on digital forensics and incident response engagements across enterprise and cloud environments, investigating ransomware, intrusions, and insider threats while shaping the firm's DFIR methodology, tooling, and delivery standards.

View Job

Incident Response Lead

CGI

Toronto, Ontario

Hybrid · Lead/Principal · Full-time · $105,000–$155,000 a year

Senior role leading technical cybersecurity incident response within a 24/7 global SOC. Responsibilities include digital forensic investigations, malware analysis, containment and recovery, playbook development, and mentoring junior analysts across enterprise and cloud environments.

View Job

Chef de file de la réponse aux incidents

CGI

Toronto, ON

Hybrid · Lead/Principal · Permanent, Full-time · $105,000–$155,000 a year

Lead technical cybersecurity incident response within a global SOC, conducting advanced forensic investigations across endpoints, networks and cloud environments, developing IR playbooks, mentoring staff and managing high-impact incidents 24/7.

View Job

Senior Consultant, Digital Forensics

MNP

Calgary, AB

Hybrid · Senior · Permanent

Senior consultant role delivering digital forensic investigations, fraud inquiries, and litigation support. Responsibilities include forensic imaging, artifact analysis, eDiscovery, and leading engagement teams on complex regulatory and civil matters across Canada.

View Job

Director, Global Head – Digital Forensic Services

Scotiabank

Toronto, Ontario

Lead/Principal · Full-time

Lead a global digital forensics and eDiscovery team across multiple regions, overseeing forensic examinations, evidence management, cyber-enabled crime investigations, litigation support, and expert witness testimony for a major financial institution.

View Job

Forensic Analyst

Fortinet

Vancouver, BC

Onsite · Mid · Full-time · $80,000–$100,000 a year

Join a forensics team conducting in-depth digital forensics investigations on Windows, Linux, and macOS systems, performing malware analysis, reverse engineering, threat intelligence research, and communicating findings to internal and external stakeholders.

View Job

Senior Investigator – Digital Forensics & Incident Response

Accenture

Toronto, Ontario

Senior · Full-time · $75,400–$125,400 a year

Senior DFIR investigator role delivering complex forensic analysis, memory forensics, malware triage, threat hunting and incident response across cloud, OT and enterprise environments, mentoring junior investigators and authoring client reports.

View Job

Principal Consultant, DFIR, Reactive Services (Unit 42)

Palo Alto Networks

Calgary, Alberta

Remote · Lead/Principal · Full-time

Lead complex incident response and digital forensics engagements for enterprise clients, performing host-based analysis, breach investigations, and log examination using industry-standard tools, while mentoring junior staff and advising on remediation.

View Job

Associate Principal/Cybersecurity & Incident Response (Forensic Services practice)

Charles River Associates

Toronto, Ontario

Lead/Principal · Internship

Senior forensic consulting role leading cyber intrusion investigations, incident response, malware analysis, and digital forensics engagements for corporate clients, while driving business development and managing a cross-functional forensic investigations team.

View Job

Principal Consultant, DFIR, Reactive Services (Unit 42)

Palo Alto Networks

Toronto, Ontario

Remote · Lead/Principal · Full-time

Lead incident response engagements and forensic investigations across Windows, Linux, and macOS environments. Analyse logs, investigate data breaches using tools like EnCase and FTK, mentor junior staff, and deliver remediation recommendations to clients.

View Job

Senior Associate/Cybersecurity & Incident Response (Forensic Services practice)

Charles River Associates

Toronto, Ontario

Senior · Internship

Senior forensic consultant role conducting cyber intrusion investigations, incident response, malware analysis, and digital forensics for corporate clients. Involves team leadership, business development, and cybersecurity framework assessments within a global consulting firm.

View Job

Consulting Associate/Cybersecurity & Incident Response (Forensic Services practice)

Charles River Associates

Toronto, Ontario

Mid · Internship

Join a forensic services practice conducting cybercrime investigations, digital forensics, incident response, malware analysis, and threat intelligence. Support clients and counsel through data breaches, fraud matters, and expert reporting, requiring 3–5 years' experience.

View Job

Manager, Cyber Defence

KPMG Canada

Toronto, Ontario

Manager · Full-time

Manager-level role leading incident response and digital forensics engagements for clients, performing evidence collection, malware analysis, log analysis, and IOC identification, while advising on remediation and contributing to practice development.

View Job