A selection of the latest DFIR job vacancies (got a job you want to feature in the next round-up? Submit the details here):
No jobs match the selected filters.
United States
Computer Specialist Network and Digital Forensics Examiner
Longeviti, LLC
San Diego, CA
Support NCIS as a Digital Forensic Examiner conducting complex forensic examinations of computers, mobile devices and networks for criminal investigations, performing log analysis, testifying as an expert witness, and training government staff. TS/SCI clearance required.
View JobDigital Forensic Analyst (TS/SCI) – Senior & Mid
Vexterra Group
Bethesda, MD
Conduct full-scope digital forensic examinations of high-priority media, including registry analysis, steganography detection, metadata extraction, network forensics, and tool development. Produce technical exploitation reports and support intelligence community partners globally.
View JobJunior Digital Forensic Analyst
Peraton
Arlington, VA
Support a government forensics lab conducting examinations of digital evidence from mobile devices, computers and cloud sources. Produce court-admissible reports, provide expert witness testimony, and assist during search warrant executions for criminal and cyber investigations.
View JobDigital Forensic Examiner II
City of New York
Bronx, NY
Bronx DA’s Digital Forensics Lab seeks an examiner to forensically analyse mobile devices, computers and storage media, conduct data recovery, write reports, testify in court and support search warrant executions.
View JobDigital Forensic Examiners 23-E-25
City of Santa Fe Springs
Chicago, IL
Conduct forensic examinations of digital evidence for criminal investigations in lab and on-scene environments, supporting Illinois Attorney General investigators, attorneys, and law enforcement agencies. Expert witness qualification required within one year.
View JobDigital Forensics Examiner
Loehrs Forensics
Phoenix, AZ
Full-time hybrid examiner role conducting forensic acquisitions, artifact and timeline analysis, data recovery, and defensible report writing across civil and criminal matters, with potential expert testimony and periodic US travel.
View JobDigital Forensic Examiner I
State of Vermont
Waterbury, VT
Join a law enforcement Technology Investigation Unit performing digital forensic analysis on cell phones, computers and mobile devices. Responsibilities include CDR and geolocation analysis, mobile acquisitions, evidence handling, forensic reporting and expert court testimony.
View JobDigital Forensics Analyst
Peraton
Herndon, VA
Seeking an experienced Digital Forensics Analyst to lead forensic investigations across endpoints, networks, and cloud environments for the Army National Guard, producing defensible reports and supporting law enforcement and counterintelligence partners.
View JobForensic Analyst
MGT
West Olive, MI
Seeking an experienced Digital Forensic Analyst to conduct complex forensic examinations of computers, mobile devices and cloud environments, support criminal investigations, prepare forensic reports, provide expert testimony and assist with forensic lab operations.
View JobUK & Ireland
Senior Digital Forensics Consultant
S-RM
London, England
Lead complex forensic investigations across Windows, macOS, mobile and cloud platforms for corporate and private clients. Responsibilities include expert witness testimony, court-compliant reporting, evidence preservation, mentoring junior staff and driving internal capability development.
View JobSenior Digital Forensic Analyst
Oscar
Stratford-Upon-Avon, England
Senior analyst role in an established UK forensics lab, conducting mobile and computer examinations for law enforcement and legal clients, producing court-admissible reports, peer reviewing junior analysts, and managing an independent caseload to ISO 17025 standards.
View JobSenior Digital Forensic Operations Officer
National Crime Agency (NCA)
Tamworth, England
Lead scene-based digital forensic practitioners and deliver forensic services supporting serious and organised crime investigations. Provide tactical and strategic advice on evidence identification, capture and preservation across electronic devices nationally.
View JobForensic Computer Analyst
Police Scotland
Edinburgh, Scotland
Join Police Scotland’s Cyber and Fraud Unit as a Forensic Computer Analyst, conducting forensic examination of digital devices, preparing court reports, attending crime scenes, and supporting criminal investigations across Scotland.
View JobSenior Director | Digital Forensics & Investigations
FTI Consulting
London, England
Senior Director role leading complex digital forensic investigations, expert witness engagements, mobile and cloud forensics, and regulatory matters for law firms, corporations and governments across EMEA and globally.
View JobSenior Digital Forensics Analyst
Reed Talent Solutions
Stratford-Upon-Avon, England
Senior forensic analyst role conducting complex mobile and computer examinations, producing expert reports, peer-reviewing casework, and supporting lab quality management. Requires ACPO/ISO17025 knowledge, police vetting eligibility, and mentoring experience.
View JobDigital Forensic Manager
APT Search
London Area
Lead end-to-end digital forensic investigations independently, conducting remote and onsite collections, analysing data from mobile and desktop sources, and preparing clear forensic reports for legal and non-technical audiences. Tools include Cellebrite, EnCase, FTK and Magnet AXIOM.
View JobDigital Forensics Investigator
City of London Police
City Of London, England
Join a police Digital Forensic Unit conducting laboratory-based examination of digital devices, imaging and extraction of evidence, producing evidential statements, attending court, and supporting investigations across all crime types under ISO 17025 accreditation.
View JobDigital Forensic Analyst
South Yorkshire Police
Sheffield, England
Join a police Digital Forensic Unit securing and analysing evidence from mobile phones and computers, presenting findings to courts, maintaining ISO17025 accreditation, and mentoring junior staff in a permanent Sheffield-based role.
View JobSenior Cyber Incident Response Analyst
Integrity360
Dublin, County Dublin, Ireland
Senior analyst role within a European cybersecurity firm’s IR practice, covering incident response, host and network intrusion analysis, malware reverse engineering, digital forensics, threat intelligence, and proactive compromise assessments for enterprise clients.
View JobAssociate, eDiscovery / Digital Forensics
Interpath Advisory
Dublin, County Dublin, Ireland
Join a global Data & Technology practice delivering eDiscovery, digital forensic collections, and litigation support across complex disputes and investigations. Manage ESI using RelativityOne and Nuix, maintain chain of custody, and support legal and regulatory matters.
View JobCyber Incident Response & Digital Forensics (DFIR), Vice President
The Bank of New York Mellon Corporation
Dublin, County Dublin, Ireland
Senior DFIR professional needed to support a 24×7 cyber operations centre in Dublin, conducting memory, disk and image forensics, incident triage and response, and leveraging tools including Splunk, CrowdStrike, Microsoft Defender and Axiom Forensics.
View JobAustralia & New Zealand
Manager, Forensic Technology
BDO
Sydney, New South Wales, Australia
Lead and deliver digital forensic and eDiscovery engagements for a national forensic services team, managing evidence collection and analysis across cloud, mobile and desktop sources, preparing expert reports, and supervising junior staff.
View JobSenior DFIR Analyst
Gridware
Sydney, New South Wales, Australia
Lead and support investigations into ransomware, BEC, and web application breaches. Responsibilities include evidence collection, host and network forensics, malware analysis, cloud log review, and threat hunting using industry-standard DFIR tooling.
View JobeDiscovery & Cyber Forensic Manager Brisbane
Wotton Kearney
Brisbane, Queensland, Australia
Senior leadership role managing a national eDiscovery and cyber forensic practice within an insurance law firm. Responsibilities include strategic oversight, client advisory, Relativity platform management, data breach response, team leadership and revenue growth.
View JobManager, Forensic Technology
BDO
Sydney NSW, Australia
Lead and manage digital forensic and eDiscovery engagements for a national forensic services team. Responsibilities include evidence collection, analysis, expert report writing, litigation support, cyber IR forensics, and supervising junior staff.
View JobSenior Cyber Incident Response Analyst
Department of Government Services
Melbourne VIC, Australia
Lead and coordinate cyber security incident response for Victorian public sector entities, managing a small IR team, advising stakeholders on risk mitigation, and supporting digital forensics, threat intelligence and emergency management functions.
View JobDigital Forensic Investigator (DFIR Specialist)
Cybernetic Global Intelligence
Brisbane QLD, Australia
Lead end-to-end digital forensic investigations across endpoints, cloud, and network environments. Analyse breaches, reconstruct attack timelines, produce court-admissible reports, and support incident containment for enterprise and government clients.
View JobLead Incident Responder – DFIR Specialist
CyberCX
Christchurch, Canterbury, New Zealand
Lead DFIR specialist role responding to enterprise cyber breaches, collecting and analysing digital evidence, managing client engagements, mentoring investigators, and delivering high-quality forensic reports across Australia and New Zealand.
View JobCanada
Incident Response Specialist – Cyber Security (L2) | EDR & Forensics
BeachHead
Toronto, Ontario
Level 2 Incident Response Specialist supporting a major financial client, investigating breach-class cyber incidents using EDR tools and forensic analysis, producing reports, tuning security tools, and contributing to IR process improvement.
View JobDigital Forensics Specialist
Treasury Board Secretariat
Ontario
Lead and conduct digital forensic investigations into security incidents, fraud, and IT asset misuse. Acquire and analyse evidence from computers, mobile devices, networks, and cloud environments, advising stakeholders and collaborating with law enforcement on sensitive cases.
View JobIncident response specialist
Dexian
Toronto, Ontario
Seeking an Incident Response Specialist with 3–4 years’ SOC/IR experience to investigate cybersecurity incidents, conduct digital forensics and live response analysis, develop incident timelines, and improve security processes on a 12-month contract.
View JobDirector, Global Head – Digital Forensic Services
Scotiabank
Toronto, Ontario
Senior leadership role overseeing global digital forensic services and eDiscovery operations across multiple countries, directing forensic examinations, cyber-fraud investigations, evidence management, litigation support, and cyber-enabled crime prevention strategies within a major financial institution.
View JobManager, Cyber Defence
KPMG Canada
Toronto, Ontario
Manager-level cyber consulting role focused on incident response and digital forensics engagements. Responsibilities include forensic evidence collection, malware analysis, log analysis, IOC identification, EDR tooling, client reporting, and contributing to practice development.
View JobIncident Response Specialist
TekStaff IT Solutions
Toronto, Ontario
12-month hybrid contract (Toronto) within a bank’s security operations centre. Role covers breach-class incident response, digital forensics, EDR tooling, live host analysis, timeline development and IR reporting on a compressed 4-day, 10-hour shift schedule.
View JobSenior Consultant, Digital Forensics
MNP
Calgary, AB
Senior consultant role delivering digital forensic investigations, fraud inquiries, and litigation support. Responsibilities include forensic imaging, artifact analysis, eDiscovery, and leading engagement teams on complex regulatory and civil matters across Canada.
View JobSenior Investigator – Digital Forensics & Incident Response
Accenture
Toronto, ON
Senior DFIR investigator role leading complex forensic investigations across cloud, OT and enterprise environments. Responsibilities include memory forensics, malware triage, threat hunting, IOC development, client reporting, and mentoring junior investigators.
View JobContract Advance Digital Forensics Trainers
Teel Technologies Canada
Canada
Contract trainers sought to deliver advanced digital forensics courses globally to law enforcement, military and government audiences. Topics include chip-off, JTAG, ISP, eMMC/UFS acquisition, artifact recovery and evidence handling. Minimum five years’ DF experience required.
View JobSingapore
Cyber Response, Senior Associate / Assistant Manager
KPMG Singapore
Singapore
Join a cyber response team investigating ransomware, BEC and network intrusions. Tasks include computer imaging, log analysis, artefact examination, malware analysis and client reporting, with responsibility for supervising junior colleagues.
View JobDigital Forensics Incident Responder
IMDA
Singapore
Investigate cybersecurity incidents using digital forensics, malware and log analysis. Provide technical guidance on threat assessments, maintain IR playbooks, and prepare incident reports. Requires 5+ years’ DFIR experience and relevant GIAC certifications.
View JobDigital Forensics Incident Responder (Cyber Security)
SCIENTE
Singapore
Join a cyber forensics team to investigate security incidents and perform digital forensic analysis using tools such as Magnet AXIOM, EnCase and FTK. Role covers malware analysis, threat assessment, log analysis and incident reporting.
View JobSenior Forensics Investigator – Global Security Organization
TikTok
Singapore
Lead end-to-end digital forensic investigations across endpoints, mobile, cloud and network environments. Analyse multi-source telemetry, preserve evidence, produce defensible findings, mentor junior analysts and drive proactive threat hunting.
View JobSenior Cyber Incident Response & Digital Forensics Specialist
Robert Walters
Singapore
Lead complex cyber investigations and digital forensic analysis across enterprise environments, providing technical guidance on incident response, malware analysis, threat assessment, and forensic evidence handling to support national-level cyber resilience initiatives.
View JobSenior Incident Responder, Singapore
Blackpanda
Singapore
Lead end-to-end incident response engagements across BEC, ransomware, data breach and digital forensics cases in Asia. Scope incidents, conduct forensic analysis across Windows, Linux, macOS and cloud, mentor junior responders, and advise clients on remediation.
View JobSenior Manager / Manager (Surveillance & Enforcement) – Digital Forensics
Ministry of Health (Singapore)
Singapore
Join a government enforcement division conducting digital forensics investigations, including device acquisition, evidence recovery, forensic examination, court-ready reporting, expert testimony, and forensic laboratory management to support prosecutions.
View JobRisk Consulting, Forensic Technology, Manager / Associate Director
KPMG
Singapore
Lead digital forensics and eDiscovery engagements for a Big Four forensic technology team, conducting forensic imaging, host analysis, cryptocurrency investigations, and electronic discovery while managing client relationships and junior staff.
View JobIncident Response Consultant, Cyber Security
Singapore
Join Mandiant (Google Cloud) in Singapore as an IR consultant, conducting host and network forensics, malware triage, threat hunting, and log analysis to help clients investigate, contain, and remediate complex security incidents.
View JobNetherlands
Digital Forensics & Incident Response Specialist
Bureau Veritas Cybersecurity
Amsterdam
Join a DFIR team responding to cybersecurity incidents across IT and OT environments, including critical infrastructure. Conduct forensic analyses, triage incidents, advise clients on resilience, and collaborate with crisis management and security specialists.
View JobCyber Incident Responder
Deloitte
Amsterdam
Respond to ransomware, breaches and insider threats by conducting technical investigations, analysing logs and digital artifacts, advising on containment and eradication, and performing compromise assessments and threat hunts for clients.
View JobSenior Cyber Incident Responder
Deloitte
Amsterdam
Lead technical investigations into ransomware, breaches and insider threats; perform forensic analysis of logs, Windows/Linux artifacts and EDR data; advise on containment and eradication; conduct compromise assessments and threat hunts for clients.
View JobDigital Forensic and Incident Response Specialist
Bureau Veritas
Nederland
Join a DFIR team responding to cybersecurity incidents across IT and OT environments. Perform forensic analysis, investigate breaches, coordinate crisis response, and advise clients on cyber resilience in the Netherlands.
View JobExecutive Principal Consultant
NCC Group
Rijswijk
Senior DFIR consultant role managing client engagements across incident response and digital forensics. Responsibilities include technical investigations, malware triage, host/network/cloud forensics, team leadership, mentoring, and executive-level reporting in a 24/7 environment.
View JobPrincipal Consultant – DFIR
NCC Group
Rijswijk
Lead DFIR consultant role involving incident response, digital forensics (host, memory, network, cloud), malware triage, and client-facing investigations. Includes line management, mentoring, and cross-service collaboration in a 24×7 environment.
View JobDutch Digital Forensics and Incident Response (DFIR) Consultant
Cypfer
Utrecht Binnenstad
Bilingual Dutch/English DFIR consultant responding to ransomware and cyber-attacks, performing forensic acquisition, Windows triage, IOC analysis, log review, and timeline correlation for insurance, legal, and enterprise clients across Europe.
View JobGerman Digital Forensics and Incident Response (DFIR) Consultant
Cypfer
Utrecht
Bilingual English/German DFIR consultant role involving forensic acquisition, artifact analysis, IOC identification, log review, and incident response for ransomware and cyber-breach events. Requires up to 50% travel and on-call availability.
View JobGerman Senior Digital Forensics and Incident Response (DFIR) Consultant
Cypfer
Utrecht
Senior bilingual (English/German) DFIR consultant leading complex incident response investigations and forensic analyses across Windows, Unix/Linux and network environments, supporting insurance partners and legal counsel, with up to 50% client-site travel.
View JobGermany
Senior Digital Forensics and Incident Response Consultant
NTT DATA Europe & Latam
Berlin
Join a global DFIR team supporting clients through security incidents. Conduct host and network forensic analysis, malware reverse engineering, root cause investigations, and develop IR plans, playbooks and training programmes.
View JobManager Digital Forensics & Incident Response (DFIR)
EY
Berlin
Lead digital forensic investigations and incident response engagements covering endpoint, network, and cloud environments. Analyse cyberattacks, reconstruct attack chains, conduct live-response measures, and develop DFIR methodologies and threat-hunting approaches for national and international clients.
View JobDigital Forensic & Incident Response Consultant
Zync.
Germany
Lead digital forensic investigations and incident response activities for enterprise clients, performing evidence collection, malware and log analysis, forensic tooling, playbook development, and post-incident reviews across European markets.
View JobIT-Forensiker*in (gn*) Incident Response
Certified Security Operations Center GmbH
Bornheim, North Rhine-Westphalia
Conduct digital forensic investigations of clients, servers and mobile devices; lead incident response engagements; analyse attack traces and malware; support threat hunting; and develop DFIR toolchains within a SOC environment.
View JobSenior Consultant Cyber – Digital Forensic Incident Response
Deloitte GmbH
Frankfurt am Main
Senior DFIR consultant role supporting clients with digital forensic analysis, evidence preservation, cybercrime investigation, and incident response. Requires hands-on forensic expertise, knowledge of ISO 27001/DORA/NIS2, and strong German and English communication skills.
View JobDigital Forensic Analyst
ZEISS Group
Oberkochen
Conduct digital forensic investigations of information security incidents, collect and preserve evidence, perform threat hunting, support the CSIRT with expert analysis, produce forensic reports, and train SOC analysts on forensic best practices.
View JobSenior Digital Forensics and Incident Response Consultant
NTT Ltd
Erfurt
Senior DFIR consultant role conducting forensic analysis at host and network level, malware reverse engineering, incident response, root cause analysis, and producing technical and management-level IR reports for enterprise clients.
View Job(Senior) Cyber Security Expert DFIR
TÜV Informationstechnik GmbH
Essen
Join a cyber security reaction team handling DFIR cases for national and international clients. Responsibilities include forensic analysis, incident response, penetration testing, adversary operations, and producing court-admissible expert reports.
View JobIT-Forensiker
Response informations design
Ingolstadt
Full-time digital forensics examiner role supporting courts, prosecutors, businesses and private clients. Responsibilities include creating impartial expert reports, analysing digital media, applying cryptography knowledge and presenting complex technical findings in legally defensible form.
View JobUnited Arab Emirates
Incident Response And Forensic Investigation Specialist
Help AG
Dubai
Senior DFIR specialist role leading on-site and remote incident response engagements, performing forensic analysis of disk/RAM/logs, reverse engineering malware, developing detection content, and mentoring analysts within a managed security services team.
View JobSOC L3 – Senior Digital Forensics (DFIR) Specialist
Etisalat Services Holding
Dubai
Lead end-to-end incident response and deep-dive digital forensics across host, network, mobile, and cloud environments. Conduct threat hunting, build SIEM detection rules, and deliver high-quality forensic reports to stakeholders. Requires 6+ years DFIR experience.
View JobDFIR Analyst
CyberGate Defense
Abu Dhabi, Abu Dhabi Emirate
Seeking an experienced DFIR Analyst to lead incident response investigations, conduct digital forensic examinations across endpoints, networks and cloud environments, develop playbooks, and mentor junior team members. Requires 3–5 years DFIR experience.
View JobSOC Analyst – Multiple Specializations
D24 Fintech
Dubai
Seeking three SOC Analysts specialising in Crypto Incident Response, Digital Forensics & Incident Response, or Endpoint & Network Security Operations. Roles involve threat investigation, forensic analysis, malware review, and 24×7 security monitoring within fintech environments.
View JobDigital Forensics Trainer Part-Time
Spoton Training Institute
Dubai
Part-time/freelance trainer delivering hands-on digital forensics and cybercrime investigation training in Dubai, covering forensic tools, mobile and network forensics, malware analysis, evidence handling, and incident response for diverse learner groups.
View JobDigital Forensics and Incident Response Consultant
DTS Solution
Dubai
DFIR consultant role supporting cyber breach investigations, forensic and malware analysis, threat hunting, and incident response retainer programs. Requires 6+ years’ experience, expert knowledge of tools like FTK, EnCase, and IDA Pro, with court testimony duties.
View JobIsrael
DFIR Expert (Lead)
UST
Tel Aviv-Yafo, Tel Aviv District
Lead DFIR investigations across file systems, memory, and networks; manage incident response lifecycle including containment and recovery; develop automation tools; deliver RCA reports; and serve as the highest technical escalation point for client breaches.
View JobDFIR Specialist
Elbit Systems Israel
Haifa District
Join a defence organisation’s cybersecurity team investigating security incidents, performing memory and host-based forensic analysis, threat hunting, and developing incident response playbooks and remediation strategies in complex enterprise environments.
View JobDigital Forensics and Incident Response Analyst-2584
Shabak – Israeli Security Agency – Career
Center District
Investigate security incidents and perform forensic analysis across endpoints, servers, networks and cloud environments (AWS, Azure, GCP). Determine compromise points, assess incident scope, and support containment and remediation using tools including Volatility, FTK and Autopsy.
View JobDFIR
Cye
Herzliya, Tel Aviv District
Join a DFIR team responding to client cyber incidents, performing digital forensics across cloud, Windows and Linux environments, threat hunting, TTP analysis, and working alongside red team and CTI specialists globally.
View JobThreat Detection Engineer – Mobile
Dataflow Forensics
Herzliya, Tel Aviv District
Design and develop mobile malware and compromise detection solutions for iOS and Android, conduct forensic analysis, deliver professional services and training, and support pre/post-sales technical engagements with customers.
View JobSecurity Researcher
Cellebrite
Petah Tikva, Center District
Join an elite forensic research team performing deep reverse engineering of mobile applications, decoding binary formats and encrypted databases, and translating findings into production C# code deployed in global digital investigations.
View JobIndia
Consultant – Forensics – National – ASU
EY
Gurugram, Haryana
DFIR Analyst role within a forensic investigations and compliance practice, responsible for incident triage, digital evidence acquisition and analysis, malware triage, threat intelligence enrichment, and detailed incident reporting using tools such as FTK, EnCase and SIEM platforms.
View JobDigital Forensics Intern / Trainee
CyberTimes
Noida, Uttar Pradesh
Three-month digital forensics internship in Noida open to recent graduates and final-year students, involving forensic tools, computer systems and networking, with potential conversion to a full-time Digital Forensics Analyst role.
View JobAssistant Manager — Cyber D&R / Incident Response
CyberTimes
Gurgaon, Haryana
Lead incident detection, investigation and response for clients using MITRE ATT&CK and Cyber Kill Chain frameworks. Responsibilities include digital forensics (disk, memory, mobile, cloud), evidence handling, threat hunting, playbook development and IR simulations.
View JobSouth Africa
Senior Cyber Incident Response Analyst
Integrity360
Cape Town, Western Cape
Senior analyst role performing cyber incident response, host and network intrusion analysis, malware reverse engineering, digital forensics, and threat intelligence for mid-market and enterprise clients across multiple sectors.
View JobForensic Investigator (Desktop)
Momentum
City of Cape Town, Western Cape
Conducts complex desktop forensic investigations into fraud, waste, and abuse within the medical aid industry. Responsibilities include data analysis, investigative interviews, case report compilation, and testifying in criminal and regulatory proceedings.
View Job





