1

Computer Forensics Analyst Jobs (NOW HIRING)

$150 - $200/hr

The Role The analyst conducts digital forensic examinations across Windows, Linux, and macOS environments, performs disk duplication and mobile device acquisition, and carries out malware analysis.

Digital Forensic Analyst

Chantilly, VA · On-site

$200 - $250/hr

Conduct computer forensics and security vulnerability analysis using commercial-off-the-shelf (COTS) and/or customer-provided tools; * Evaluate cloud services, web applications, and COTS software and ...

Showing results 41-60

Computer Forensics Analyst information

See salary details

$65K

$101.7K

$156K

How much do computer forensics analyst jobs pay per year?

As of Sep 8, 2026, the average yearly pay for computer forensics analyst in the United States is $101,672.00, according to ZipRecruiter salary data. Most workers in this role earn between $75,000.00 and $122,000.00 per year, depending on experience, location, and employer.

What does a computer forensics analyst do?

A Computer Forensics Analyst is a cybersecurity professional who investigates digital devices and networks to uncover evidence of crimes or security breaches. They collect, analyze, and preserve data from computers, mobile devices, and other digital storage media, ensuring that the evidence remains admissible in court. These analysts often work with law enforcement agencies, legal teams, or private companies to identify how cybercrimes occurred and to help prevent future incidents.

What does a computer forensics analyst do?

As a computer forensics analyst, your duties focus on investigating electronic data and digital devices for law enforcement purposes. Your responsibilities include obtaining, accessing, and analyzing data from hard drives, emails, smartphones, and tablets. In this career, you may investigate cyber crimes (which take place on the internet) or gather digital evidence for other types of criminal investigations. In addition to collecting information, you retrieve data that someone destroyed, deleted, or obscured to hide evidence of a crime. Computer forensic analysts work for law enforcement agencies, private contractors, lawyers, or corporations. Some computer experts work on a freelance basis.

What are the key skills and qualifications needed to thrive as a computer forensics analyst, and why are they important?

To thrive as a Computer Forensics Analyst, you need a solid understanding of cybersecurity principles, computer systems, and digital evidence handling, often supported by a degree in computer science, cybersecurity, or a related field. Proficiency in forensic tools like EnCase, FTK, and familiarity with operating systems, as well as certifications such as GIAC Certified Forensic Analyst (GCFA) or Certified Computer Examiner (CCE), are typically required. Attention to detail, analytical thinking, and strong written communication skills help analysts effectively investigate incidents and present findings. These competencies are crucial for accurately uncovering digital evidence, supporting legal processes, and maintaining the integrity of investigations.

What are some common challenges faced by computer forensics analysts during investigations?

Computer Forensics Analysts often encounter challenges such as dealing with encrypted or deleted data, rapidly evolving technology, and maintaining the integrity of digital evidence. They must also ensure that their investigative methods comply with legal and regulatory standards to ensure evidence is admissible in court. Additionally, analysts frequently work under tight deadlines and may need to collaborate closely with law enforcement, legal teams, and IT departments to piece together complex digital trails.

What is the difference between Computer Forensics Analyst vs Digital Forensics Specialist?

AspectComputer Forensics AnalystDigital Forensics Specialist
CertificationsEnCE, GCFAEnCE, GCFA
Work EnvironmentLaw enforcement, corporate security, consulting firmsLaw enforcement, government agencies, private sector
Industry UsageCommonly used in investigations and legal casesUsed in incident response and cybersecurity investigations

Both roles involve analyzing digital evidence, often requiring similar certifications like EnCE and GCFA. The main difference lies in their focus: Computer Forensics Analysts typically work on legal cases and investigations, while Digital Forensics Specialists often focus on incident response and cybersecurity threats. Both roles are vital in digital security and forensics fields, with overlapping skills and work environments.

What cities are hiring for Computer Forensics Analyst jobs?

Cities with the most Computer Forensics Analyst job openings:

What are the most commonly searched types of Computer Forensics Analyst jobs?

The most popular types of Computer Forensics Analyst jobs are:

Who are the top companies hiring for Computer Forensics Analyst jobs?

The top employers for Computer Forensics Analyst jobs are:

What states have the most Computer Forensics Analyst jobs?

States with the most job openings for Computer Forensics Analyst jobs include:

What are popular job titles related to Computer Forensics Analyst jobs?

For Computer Forensics Analyst jobs, the most frequently searched job titles are:

Infographic showing various Computer Forensics Analyst job openings in the United States as of September 2026, with employment types broken down into 1% Internship, 1% As Needed, 82% Full Time, 13% Part Time, 2% Contract, and 1% Nights. Highlights an 81% Physical, 1% Hybrid, and 18% Remote job distribution, with an average salary of $101,672 per year, or $48.9 per hour.

Digital Forensics Analyst

Indianapolis, IN • On-site, Remote

Rolls-Royce
Aerospace Product and Parts Manufacturing • 10K+ employees

Full-time

Medical, Dental, Vision, Life, Retirement, PTO

Posted 4 days ago


Rolls-Royce rating

9.0

Company rating: 9.0 out of 10

Based on 14 frontline employees who took The Breakroom Quiz

29th of 499 rated machine equipment manufacturers


Job description


Job Description

Job Title: Digital Forensics Analyst

Working Pattern: Fulltime - hybrid

Working location: Indianapolis, IN

Relocation assistance will be provided if applicable

Why Rolls-Royce?

At Rolls-Royce we are proud to be a business that has truly helped to shape the modern world and are committed to always being a force for progress; powering, protecting and connecting people everywhere.

By joining Rolls-Royce, you'll have the opportunity to create world-class power and propulsion solutions, pushing your problem-solving and ingenuity, to deliver real impact that puts safety first.

You'll be given responsibility and the opportunity to grow in our high-performance culture. This is Infinite Potential. And it's your chance to really shine and contribute to one of the world's most recognized brands and a beacon for engineering excellence.

Position Summary:

We are seeking a highly motivated DFIR Specialist to join our Purple Team. This role bridges offensive and defensive security operations by combining incident response, threat hunting, digital forensics, adversary emulation, and detection engineering.
The ideal candidate enjoys investigating real-world attacks, understanding adversary behavior, improving detection capabilities, and working collaboratively with red and blue teams to strengthen security posture.

What you will be doing:

Incident Response
  • Lead or support investigations involving malware, ransomware, insider threats, and advanced persistent threats.
  • Perform endpoint, memory, disk, and cloud forensics.
  • Conduct triage activities during security incidents.
  • Coordinate containment, eradication, and recovery efforts.
  • Develop incident response playbooks and procedures.
  • Produce executive and technical incident reports.
Threat Hunting
  • Conduct proactive hunts across endpoints, identity, cloud, and network telemetry.
  • Develop hypotheses based on emerging adversary techniques.
  • Analyze attack patterns using frameworks such as MITRE ATT&CK.
  • Identify gaps in visibility and logging.
Purple Team Operations
  • Collaborate with red team operators to emulate adversary tactics.
  • Validate detections against simulated attacks.
  • Assist in planning and executing purple team exercises.
  • Measure and improve detection coverage.
  • Map detections and hunting content to ATT&CK techniques.
Detection Engineering
  • Develop and tune detections within SIEM and EDR platforms.
  • Reduce false positives while improving fidelity.
  • Create custom analytics, dashboards, and monitoring content.
  • Automate repetitive investigation tasks through scripting.
Forensics
  • Acquire and analyze forensic artifacts from:
    • Windows systems
    • Linux systems
    • Cloud environments
    • Containers
    • Identity providers
  • Perform timeline reconstruction.
  • Analyze persistence mechanisms.

Basic Qualifications:

  • Associate's degree in Cybersecurity, Computer Science, Information Technology, Mathematics and 2 + years of relevant experience OR;
  • Bachelor's degree in Cybersecurity, Computer Science, Information Technology, Mathematics and 2 + years of relevant experience OR;
  • Master's degree in Cybersecurity, Computer Science, Information Technology, Mathematics OR;
  • PhD in Cybersecurity, Computer Science, Information Technology, Mathematics OR;
  • In lieu of a degree must have 6+ years' experience in Cyber Security or Information Technology
  • Must be a US Citizen

Preferred Qualifications:

  • 3+ years focused on incident response, threat hunting, or DFIR.
  • 6+ years' experience in Cyber Security or Information Technology
  • Experience with various memory acquisition techniques/tools:
    • FTK Imager
    • Volatility 3
    • Velociraptor for remote memory dumps
  • Experience with enterprise SIEM platforms such as:
    • Microsoft Sentinel
    • Splunk Enterprise Security
    • Elastic Security
  • Experience with EDR technologies including:
    • Microsoft Defender XDR
    • CrowdStrike Falcon
    • SentinelOne Singularity
  • Familiarity with:
    • Windows Event Logs
    • Sysmon
    • KQL
    • Sigma rules
    • YARA
    • PowerShell
    • Python
    • Memory analysis
    • Malware triage
  • Understanding of:
    • Attack chains
    • Identity-based attacks
    • Cloud attack techniques
    • Detection engineering principles
  • Experience with adversary emulation frameworks.
  • Familiarity with:
    • Caldera
    • Prelude Operator
    • Velociraptor
    • TheHive
  • Cloud security investigation experience in:
    • Microsoft Azure
    • Amazon AWS
    • Google Cloud

Certifications:

  • GIAC certifications such as GCFA, GCIH, GCFE, etc.
  • Microsoft certifications such as SC-200, SC-400, AZ-500
  • CISSP, CCSP

Our vision is to ensure that the quality and dynamism that shaped our history continues into our future. It's a bold pursuit, and we never stop striving to go further, faster, and better. We lead progress, creating the technologies that move us forward. If you're driven to grow, to learn, and to make a lasting difference, this is where you belong.

Rolls-Royce is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to any protected characteristics. We are committed to providing a respectful and non-discriminatory workplace where individuality is valued and everyone can thrive.

Infinite Potential

#CLOLI

#CLOPROF


Job Category
Information Technology

Job Posting Date
04 Sept 2026; 00:09
Pay Range

Pay ranges for remote employees are based on the state where the employee resides and may vary from the posted range.


$98,566-$160,169-Annually


Location:

Indianapolis, IN


Benefits

Rolls-Royce provides a comprehensive and competitive Total Rewards package that includes base pay and a discretionary bonus plan. Eligible employees may have the opportunity to enroll in other benefits, including health, dental, vision, disability, life and accidental death & dismemberment insurance; a flexible spending account; a health savings account; a 401(k) retirement savings plan with a company match; Employee Assistance Program; Paid Time Off; certain paid holidays; paid parental and family care leave; tuition reimbursement; and a long-term incentive plan. The options available to an employee may vary depending on eligibility factors such as date of hire, employment type, and the applicability of collective bargaining agreements.


What Rolls-Royce employees say

Pay

Benefits

Hours and flexibility

Workplace

Get the full story on Breakroom


Rolls-Royce logo

About Rolls-Royce

Sourced by ZipRecruiter

Industry

Aerospace product and parts manufacturing and engine, turbine, and power transmission equipment manufacturing

Company size

10,000+ Employees

Headquarters location

London, ENG, GB