1

Ddos Jobs in California (NOW HIRING)

Manage Cloudflare services for edge security, DNS, WAF, DDoS protection, and Zero Trust network access. * Architect and harden network security controls across AWS and GCP, including VPC design ...

Exposure to modern data center fabrics, automation, DDoS defense, and multi-cloud networking * Collaborative environment with infrastructure and engineering teams focused on reliability and ...

Develop intelligent detection and auto-scaling countermeasures for DDoS threats * Debug and resolve production issues across services and multiple layers of the stack, reducing mean time to ...

Network Support Engineer

San Jose, CA · On-site

$115K - $120K/yr

Resolve application layer security issues related to WAF, SSLi and perform traffic analysis to detect DDoS attacks. * Use tools such as tcpdump, Wireshark to conduct packet‑level analysis to debug ...

Troubleshoot application layer security issues related to WAF, SSLi and perform traffic analysis to detect DDoS attacks * Use tools like tcpdump and wireshark to conduct packet level analysis to ...

Network Support Engineer

San Jose, CA · On-site

$115K - $120K/yr

Troubleshoot application layer security issues related to WAF, SSLi and perform traffic analysis to detect DDoS attacks * Use tools like tcpdump and wireshark to conduct packet level analysis to ...

next page

Showing results 1-20

Ddos information

See California salary details

$64.6K

$133.7K

$161.6K

How much do ddos jobs pay per year?

As of Sep 11, 2026, the average yearly pay for ddos in California is $133,726.00, according to ZipRecruiter salary data. Most workers in this role earn between $127,299.00 and $149,332.00 per year, depending on experience, location, and employer.

What is a DDoS?

A DDoS job typically involves defending networks and systems against Distributed Denial-of-Service (DDoS) attacks. Professionals in this role analyze traffic, implement mitigation strategies, and use tools like firewalls and intrusion detection systems to protect against malicious traffic spikes. They may work in cybersecurity teams or with specialized DDoS protection services. Strong networking knowledge and experience with security protocols are often required for this role.

What are common challenges faced by professionals working in DDoS mitigation roles?

Professionals working in DDoS mitigation roles often face challenges such as quickly identifying attack patterns, distinguishing between legitimate traffic spikes and malicious activity, and coordinating rapid response across multiple teams. The work environment is typically fast-paced and may require participation in on-call rotations to address threats at any time. Collaboration with network engineers, security analysts, and external vendors is crucial to ensure a comprehensive defense strategy and minimize service disruptions.

What are the key skills and qualifications needed to thrive as a DDoS mitigation specialist, and why are they important?

To thrive as a DDoS Mitigation Specialist, you need a solid background in network security, incident response, and in-depth knowledge of internet protocols, typically supported by a degree in computer science or cybersecurity. Familiarity with DDoS mitigation tools (such as Cloudflare, Arbor Networks, or Akamai), intrusion detection systems, and relevant certifications like CEH or CISSP is essential. Strong analytical thinking, problem-solving abilities, and effective communication are crucial soft skills for quickly diagnosing attacks and coordinating with teams. These skills and qualifications are vital for minimizing service disruptions, protecting organizational assets, and ensuring business continuity during cyberattacks.

What is the difference between Ddos vs Network Security Analyst?

AspectDdosNetwork Security Analyst
Primary RoleMitigating and defending against Distributed Denial of Service (DDoS) attacksMonitoring, analyzing, and securing network infrastructure against various threats
Required SkillsNetwork protocols, attack mitigation, security toolsNetwork analysis, security protocols, incident response
CertificationsCompTIA Security+, CEH, CISSP (preferred)CompTIA Security+, CISSP, Cisco CCNA Security
Work EnvironmentSecurity operations centers, network teamsIT departments, security teams, network operations

While both Ddos specialists and Network Security Analysts work within cybersecurity, Ddos focuses specifically on defending against DDoS attacks, whereas Network Security Analysts handle broader network security threats and monitoring. Both roles often collaborate to ensure comprehensive network protection.

What cities in California are hiring for Ddos jobs?

Cities in California with the most Ddos job openings:

Infographic showing various Ddos job openings in California as of September 2026, with employment types broken down into 94% Full Time, and 6% Contract. Highlights an 74% Physical, 10% Hybrid, and 16% Remote job distribution, with an average salary of $133,726 per year, or $64.3 per hour.

Principal Researcher, Botnet & DDoS Threats

San Jose, CA • On-site

A10 Networks, Inc.
Software Development • 501 - 1,000 employees

$200K - $215K/yr

Other

Re-posted 7 days ago


Job description

Principal Researcher, Botnet & DDoS Threats

The DDoS threat landscape has crossed a threshold. Botnets like Aisuru and Kimwolf—comprising millions of compromised Android TV and IoT devices and capable of attacks exceeding 24Tbps and 9billion packets per second—are no longer edge cases. They are the baseline. Defeating these threats requires more than external observation. It requires deep visibility into how they are built, how they execute on the wire, and what that means for the systems designed to stop them.

Responsibilities
  • Reverse engineer IoT botnet malware families (Mirai lineage, Go‑based L7 flooders, multi‑architecture binaries) to understand attack behavior at the implementation and network level.
  • Reconstruct command structures, decode obfuscation, recover control flows from stripped binaries, and build precise models of how attacks manifest on the wire.
  • Perform dynamic malware analysis in sandboxed and purpose‑built lab environments to validate static analysis and observe runtime behavior.
  • Design and contribute to novel detection and mitigation approaches based on malware internals and traffic behavior.
  • Collaborate with AI/ML teams to integrate automated analysis into research workflows, actively shaping how automation is applied to real malware analysis problems.
  • Partner with product engineering to translate research into shipped detection capabilities.
  • Lead external‑facing research: threat reports, technical blogs, and conference presentations.
  • Engage with customers in post‑incident analysis, architectural guidance, and strategic threat briefings—clearly explaining both attacker behavior and defensive actions.
  • Work alongside senior researchers focused on IoT botnets and large‑scale DDoS systems, contributing to and benefiting from a deeply technical peer environment.
Qualifications
  • Strong foundation in binary reverse engineering using tools such as Ghidra or IDA, including static analysis across multiple architectures and experience with stripped binaries and compiler‑generated code; comfortable working close to raw assembly and control flow.
  • Hands‑on experience with dynamic malware analysis in sandbox or isolated lab environments, using runtime observation to validate and extend static findings.
  • Working proficiency in Python and Go.
  • Strong understanding of network protocols at the implementation level, including the ability to interpret PCAPs and reconstruct protocol behavior.
  • Familiarity with DDoS botnet architectures (e.g., Mirai lineage or equivalent), ideally with direct analysis of binaries rather than secondary reporting.
  • Experience tracking variant evolution across malware families is a strong plus.
  • Ability to communicate complex technical findings clearly across engineering, product, and customer audiences.
  • Nice to have: experience with high‑performance packet processing or mitigation systems at the network and transport layers.
  • Nice to have: experience analyzing Go binaries in depth.
  • Nice to have: exposure to malware source code.
  • Nice to have: experience applying ML‑assisted or vector‑based approaches to malware classification, clustering, or lineage attribution.
Tools & Environment
  • Ghidra (headless + GUI), Capstone, GoReSym
  • Python3, Go, Scapy, tshark
  • Any.run, Joe Sandbox, Cuckoo (or equivalent)
  • Custom detonation lab infrastructure, honeypot infrastructure
  • MalwareBazaar, VirusTotal
  • macOS or Linux AI
Compensation

Targeted compensation guideline: $200,000–$215,000. Compensation will vary based on number of factors, including market demand for specific skills, role type, job level, and individual qualifications. Final salary offers are determined by considerations including, but not limited to, subject matter expertise, demonstrated skill level, relevant experience, geographic location, education, certifications, and training.

Equal Opportunity Employment

A10 Networks is an equal opportunity employer and a VEVRAA federal subcontractor. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability status, protected veteran status, or any other characteristic protected by law. A10 also complies with all applicable state and local laws governing nondiscrimination in employment.

#J-18808-Ljbffr