1

Cyber Investigation Jobs in Texas (NOW HIRING)

Cyber Defense Operator (CDO)

San Antonio, TX ยท On-site

$75K - $95K/yr

Cyber Defense Operator (CDO ) - TS/SCI Level Clearance Required - Located in San Antonio, Texas The ... Provide AF Office of Special Investigations (OSI) DCO technical support to law enforcement and ...

Cyber Defense Operator (CDO)

TX ยท On-site

$75K - $95K/yr

Cyber Defense Operator (CDO ) - TS/SCI Level Clearance Required - Located in San Antonio, Texas The ... Provide AF Office of Special Investigations (OSI) DCO technical support to law enforcement and ...

Cyber Threat Intelligence Analyst Duration: 12 months Location: Austin, TX (Onsite-Candidates must ... Create Security Incidents and route them to appropriate teams for investigation and resolution.

We are seeking a Cyber Threat Emulation & Analyst at Lackland AFB in San Antonio, TX. What You'll ... investigations and remediation. * Experience with PowerShell, BASH or Python scripting/programming ...

We are seeking a Cyber Threat Emulation & Analyst at Lackland AFB in San Antonio, TX. What You'll ... investigations and remediation. * Experience with PowerShell, BASH or Python scripting/programming ...

next page

Showing results 1-20

Cyber Investigation information

See Texas salary details

$63.8K

$120.1K

$150.9K

How much do cyber investigation jobs pay per year?

As of Sep 6, 2026, the average yearly pay for cyber investigation in Texas is $120,073.00, according to ZipRecruiter salary data. Most workers in this role earn between $105,300.00 and $136,500.00 per year, depending on experience, location, and employer.

What is cyber investigation?

Cyber investigation is the process of identifying, analyzing, and resolving cybercrimes, security breaches, or incidents that involve digital devices and networks. Professionals in this field use specialized tools and techniques to collect digital evidence, track unauthorized activities, and attribute cyberattacks to their sources. They often work with law enforcement, private organizations, or government agencies to uncover cyber threats and support legal proceedings. The role requires knowledge of computer systems, networks, forensic analysis, and current cyber threats.

What are the key skills and qualifications needed to thrive as a cyber investigator, and why are they important?

To thrive as a Cyber Investigator, you need a solid understanding of digital forensics, cybersecurity principles, and investigative techniques, often supported by a degree in computer science or a related field. Familiarity with forensic tools such as EnCase, FTK, and SIEM systems, as well as relevant certifications like CISSP or GCFA, is typically required. Strong analytical thinking, attention to detail, and effective communication skills help you interpret complex data and present findings clearly. These skills are essential for uncovering digital evidence, ensuring legal compliance, and successfully resolving cybercrime cases.

What are some common challenges faced by professionals in cyber investigation roles, and how can they be addressed?

Cyber investigators often encounter challenges such as rapidly evolving cyber threats, handling large volumes of digital evidence, and maintaining data integrity throughout the investigation process. Staying updated with the latest cybercrime tactics and using advanced forensic tools can help address these challenges. Effective communication and collaboration with other departments, such as IT and legal teams, are also crucial for a successful investigation. Continuous training and certification in digital forensics and cybersecurity best practices can further enhance effectiveness in this role.

What is the difference between Cyber Investigation vs Cyber Security Analyst?

AspectCyber InvestigationCyber Security Analyst
Required CredentialsCertifications like GCFA, GCIH, CISSP often preferredCertifications like Security+, CISSP, CEH common
Work EnvironmentInvestigative settings, law enforcement agencies, cybersecurity firmsCorporate IT departments, security teams, consulting firms
Employer & Industry UsageUsed in law enforcement, cybersecurity incident responseUsed in private sector, government agencies, and enterprises

While both roles focus on cybersecurity, Cyber Investigation primarily involves analyzing cybercrimes, conducting forensic analysis, and working with law enforcement. Cyber Security Analysts focus on protecting systems proactively, monitoring networks, and preventing attacks. Both roles require technical skills and certifications but differ in their primary objectives and work environments.

How do you become a cyber investigation?

To become a cyber investigator, individuals typically pursue a degree in cybersecurity, computer science, or a related field, and gain experience with digital forensics, network security, and investigative tools. Certifications such as Certified Cyber Forensics Professional (CCFP) or GIAC certifications can enhance job prospects, and strong analytical skills are essential for success in this role.

What does a cyber investigation do?

A cyber investigation involves analyzing digital evidence to identify, prevent, and respond to cyber threats, cybercrimes, or security breaches. Cyber investigators use tools like forensic software and network analysis techniques to uncover malicious activity and support legal or security measures.

What job categories do people searching Cyber Investigation jobs in Texas look for?

The top searched job categories for Cyber Investigation jobs in Texas are:

What cities in Texas are hiring for Cyber Investigation jobs?

Cities in Texas with the most Cyber Investigation job openings:

Infographic showing various Cyber Investigation job openings in Texas as of August 2026, with employment types broken down into 1% As Needed, 85% Full Time, 12% Part Time, and 2% Contract. Highlights an 88% Physical, 3% Hybrid, and 9% Remote job distribution, with an average salary of $120,073 per year, or $57.7 per hour.

Cyber Defense Operator (CDO)

IPSecure, Inc.

San Antonio, TX โ€ข On-site

$75K - $95K/yr

Full-time

Medical, Dental, Vision, Retirement, PTO

Re-posted 27 days ago


Job description

Cyber Defense Operator (CDO) - TS/SCI Level Clearance Required - Located in San Antonio, Texas
Job Description
The ability of the Cyber Defense Operator (CDO) is to complete its mission dependent upon accurate, timely and thorough event analysis in order to identify intruder or potential intruder activities utilizing host and network monitoring and system logs. The CDO shall correlate information gathered to provide effective methods to protect Air Force (AF) systems. Upon identification of suspicious activity on AF networks, open network intrusion investigation(s) to validate the unauthorized activity and determine the type and extent of activity.
Responsibilities
  • When CAT events are escalated to incident response, complete incident response process, including: preparation, identification and scoping, containment, eradication and remediation, recovery, and lessons learned.
  • Upon identification of suspicious activity on AF networks, open network intrusion investigation(s) to validate the unauthorized activity and determine the type and extent of activity.
  • Provide AF Office of Special Investigations (OSI) DCO technical support to law enforcement and counterโ€intelligence agencies and activities if required.
  • Participate and contribute to lessons learned meetings and briefings.
  • Support planned and sameโ€day Incident Response deployments.
  • Comply with 3rd party MOU/MOA monitoring and reporting requirements. Analyze host DCO events to determine the necessity for higher level analysis and conduct an initial assessment of type and extent of intruder activities.
  • Conduct cyber investigations in order to determine the initial vector and overall timeline of intrusion, accurately identify the threat, determine the full scope of impact, and develop containment and remediation actions for approval.
  • Author and review incident report forms (IRF) for security incidents within JEMS. Ensure the document is accurate and provides the correct amount of technical detail needed. (CDRL A008)
  • Provide AF Office of Special Investigations (OSI) DCO technical support to law enforcement and counterโ€intelligence agencies and activities if required.
  • Generate end of mission reports (MISREPS) and provide passโ€on information for knowledge transfer to subsequent /crews of analysts on duty regarding the latest suspicious traffic seen from a given port, Internet Protocol (IP), etc. with no more than a 5% error rate.
  • Generate end of mission reports (MISREPS) and provide passโ€on information for knowledge transfer to subsequent /crews of analysts on duty regarding the latest suspicious traffic seen from a given port, Internet Protocol (IP), etc.
  • Provide computer securityโ€related support to AF field units as directed by CCC, in countering vulnerabilities, minimizing risk, and improving the security posture of AF computers networks and systems within the scope of AFIN SOC operational requirements and mission execution.
  • Participate in planning, briefing, and debriefing tasks as directed by CDO Mission Lead or Crew Commander.
  • Provide feedback on detection mechanisms that are both true and false positive events to ESM and Content Development as applicable.
  • Design incident response plans (IRP) as directed by the Crew Commander. Ensure CDOs are briefed on objectives, ROEs, plans, contingencies, and applicable TTPs.
  • Accomplish assigned weapon system access, ORM, Go/No Go, reports, TTP updates, and TAR submissions.
Basic Qualifications
  • Active TS/SCI Level Clearance.
  • Active IAT Level II Cert (ex: CompTIA Security+)
  • Ability to gain the CSSP Incident Responder Certification (GCFA) Certification requirement within 120-days of hire date.
Preferred Qualifications
  • 3+ years of relevant technical, cyber security, and business work experience
Benefits
Medical, Dental, Vision, Unlimited Vacation, Sick Leave, Paid Federal Holidays, Education and Certification Reimbursement Program, 401(k) retirement plan with safe harbor employer match after 3 months, Prepaid legal plan and ID protection plan available, Accident Insurance, Critical Illness Insurance, and Hospital Indemnity Insurance available.
EEOC Statement
IPSecure does not discriminate based on race, color, religion, sex, sexual orientation, gender identity, national origin, disability or status as a protected veteran.