1

Evidence Analysts Jobs (NOW HIRING)

Property/Evidence Technician

Salinas, CA Β· On-site

$4.4K - $5.6K/mo

Forwards or hand delivers evidence to various laboratories or experts for appropriate analysis. Maintains chain of custody records of evidential property and testifies in court. Coordinates and ...

The successful candidate will ensure devices are accurately photographed, logged, inventoried, processed, and prepared for forensic analysis while maintaining the integrity of all evidence. The ...

The successful candidate will ensure devices are accurately photographed, logged, inventoried, processed, and prepared for forensic analysis while maintaining the integrity of all evidence. The ...

The successful candidate will ensure devices are accurately photographed, logged, inventoried, processed, and prepared for forensic analysis while maintaining the integrity of all evidence. The ...

The Real World Evidence Manager is a highly technical, hands‑on research role that serves as an ... This role combines independent analytical execution with strong methodological rigor, carrying ...

The Real World Evidence Manager is a highly technical, hands-on research role that serves as an ... This role combines independent analytical execution with strong methodological rigor, carrying ...

Others step directly into full independent case analysis, building written strategy roadmaps and evaluating medical evidence for veterans from their first week. The best-qualified candidates bring ...

Showing results 41-60

Evidence Analysts information

See salary details

$32K

$84.2K

$133.5K

How much do evidence analysts jobs pay per year?

As of Sep 14, 2026, the average yearly pay for evidence analysts in the United States is $84,207.00, according to ZipRecruiter salary data. Most workers in this role earn between $65,000.00 and $98,500.00 per year, depending on experience, location, and employer.

What are popular job titles related to Evidence Analysts jobs?

For Evidence Analysts jobs, the most frequently searched job titles are:

Memory Forensics Analyst - DT #11 - Remote

Philadelphia, PA β€’ Remote

Full-time

Posted 2 days ago

New


Job description

Memory Forensics Analyst

Location: Remote
Duration: 1–2 Weeks with potential extension

Position Overview

We are seeking an experienced Memory Forensics Analyst to investigate volatile memory and identify evidence of sophisticated cyberattacks, malware activity, and advanced persistence mechanisms.

The role will focus on RAM acquisition and analysis, malicious process identification, code injection detection, memory-resident malware, credential artifacts, and correlation of memory findings with endpoint and network evidence. The ideal candidate will have strong expertise in Windows and Linux memory structures, malware analysis, and incident response.

Key Responsibilities
  • Acquire and analyze RAM and volatile memory images from compromised systems.
  • Identify suspicious or malicious:
    • Processes
    • Threads
    • DLLs and loaded modules
    • Injected code
    • Network connections
    • Memory-resident artifacts
  • Investigate fileless malware and other memory-resident threats.
  • Identify advanced persistence mechanisms and indicators of compromise.
  • Analyze Windows memory structures and Linux memory artifacts.
  • Investigate credential-related artifacts and suspicious authentication activity within memory.
  • Correlate memory-forensic findings with endpoint and network evidence.
  • Perform malware analysis and support reverse-engineering activities when required.
  • Develop detailed incident timelines based on volatile-memory evidence and other investigative data.
  • Support incident response and threat-hunting activities.
  • Document forensic methodology, evidence, findings, and conclusions.
  • Prepare technical forensic reports and communicate findings to security and incident response teams.
Key Technical Skills Memory Forensics
  • Volatility
  • Rekall
  • Windows memory structures
  • Linux memory analysis
  • RAM acquisition and analysis
  • Process and thread analysis
  • DLL/module analysis
  • Code injection detection
  • Network connection analysis
  • Credential artifact analysis
Malware & Threat Analysis
  • Malware analysis
  • Fileless malware investigation
  • Reverse engineering
  • Persistence mechanism analysis
  • Indicators of Compromise (IOCs)
  • Advanced attack investigation
Scripting & Automation
  • Python
  • PowerShell
Incident Response
  • Incident response
  • Endpoint investigation
  • Network evidence correlation
  • Timeline development
  • Digital evidence analysis and documentation
Required Qualifications
  • Proven experience in memory forensics, digital forensics, malware analysis, or incident response.
  • Strong hands-on experience analyzing RAM and volatile memory images.
  • Proficiency with Volatility and/or Rekall.
  • Strong understanding of Windows memory structures and processes.
  • Experience with Linux memory analysis.
  • Ability to identify malicious processes, injected code, DLLs, network connections, and other suspicious memory artifacts.
  • Experience investigating fileless malware and advanced persistence techniques.
  • Understanding of malware analysis and reverse-engineering methodologies.
  • Strong Python and/or PowerShell scripting skills.
  • Experience correlating memory evidence with endpoint and network telemetry.
  • Strong analytical, investigative, and technical documentation skills.
  • Ability to work independently in a remote environment.