1

Forensic Cyber Security Jobs in California (NOW HIRING)

Associate's degree and 4+ years of incident response or digital forensics experience or Bachelor's Degree in Information Security, Computer Science, Digital Forensics, Cyber Security or related field

Forensic Computer Analyst SR

Richmond, CA · On-site

$133K/yr

... cybersecurity investigations to determine the cause and extent of a breach. REQUIREMENTS 1. ... Employees in the Forensic Computer Analyst or Forensic Computer Analyst Sr position prior to June ...

Job Summary The Cybersecurity Engineer is responsible for securing, monitoring, and maintaining ... Experience with malware analysis, digital forensics, and intrusion detection. * Experience using ...

... forensic investigations, containment, eradication, and recovery efforts, while preparing after ... and IT staff in cybersecurity best practices. • Perform related duties as required.

Provide consultation and conduct internal investigations that may require forensic analysis under the direction of the Cyber Security Manager and/or Technology management * Respond to audit findings ...

Cybersecurity Counsel

Mountain View, CA

$130K - $177K/yr

... forensic investigations, and reporting programs for complying with federal, state, and international laws and regulations. * Experience with supply chain cybersecurity risk management, including ...

Provide consultation and conduct internal investigations that may require forensic analysis under the direction of the Cyber Security Manager and/or Technology management * Respond to audit findings ...

Provide consultation and conduct internal investigations that may require forensic analysis under the direction of the Cyber Security Manager and/or Technology management * Respond to audit findings ...

Provide consultation and conduct internal investigations that may require forensic analysis under the direction of the Cyber Security Manager and/or Technology management * Respond to audit findings ...

Provide consultation and conduct internal investigations that may require forensic analysis under the direction of the Cyber Security Manager and/or Technology management * Respond to audit findings ...

Provide consultation and conduct internal investigations that may require forensic analysis under the direction of the Cyber Security Manager and/or Technology management * Respond to audit findings ...

Provide consultation and conduct internal investigations that may require forensic analysis under the direction of the Cyber Security Manager and/or Technology management * Respond to audit findings ...

next page

Showing results 1-20

Forensic Cyber Security information

See California salary details

$56.3K

$131.2K

$183.6K

How much do forensic cyber security jobs pay per year?

As of Aug 28, 2026, the average yearly pay for forensic cyber security in California is $131,221.00, according to ZipRecruiter salary data. Most workers in this role earn between $109,500.00 and $148,000.00 per year, depending on experience, location, and employer.

What is a forensic cyber security?

A Forensic Cyber Security job involves investigating cybercrimes, analyzing digital evidence, and identifying security breaches. Professionals in this field work to trace cyberattacks, recover lost data, and help law enforcement or organizations strengthen their security measures. They utilize specialized tools to examine compromised systems, detect vulnerabilities, and create reports detailing their findings. Often, forensic cyber security specialists testify in legal cases to explain technical evidence. The role requires expertise in digital forensics, ethical hacking, and incident response.

What skills and qualifications are needed for forensic cyber security?

To thrive as a Forensic Cyber Security professional, you need a solid grounding in digital forensics, cyber threat analysis, and IT security protocols, often backed by a degree in computer science or a related field. Experience with forensic tools such as EnCase, FTK, or X-Ways, and certifications like CISSP, GCFA, or CCFP are highly valued in the industry. Strong analytical thinking, meticulous attention to detail, and effective written and verbal communication skills are crucial for success. These skills and qualities ensure accurate investigation of cyber incidents, preservation of digital evidence, and clear reporting for legal and organizational decision-making.

What are typical challenges faced by forensic cyber security professionals?

Forensic Cyber Security professionals often face the challenge of working with incomplete or damaged digital evidence, requiring strong problem-solving skills and creative thinking to reconstruct events. They may work under tight deadlines during active security incidents, collaborating with IT, legal, and law enforcement teams to piece together digital footprints. Additionally, staying current with constantly evolving cyber threats and new malware techniques is crucial for accurate investigations. These challenges make the role both demanding and rewarding, offering continuous learning and professional growth opportunities.

Is forensic cyber security a good career?

Forensic cyber security is a specialized field focused on investigating cybercrimes and analyzing digital evidence. It offers strong job growth, high demand for skilled professionals, and opportunities to work with advanced tools like encryption and forensic software. Certification and technical skills are important for success in this career.

What are popular job titles related to Forensic Cyber Security jobs in California?

For Forensic Cyber Security jobs in California, the most frequently searched job titles are:

What job categories do people searching Forensic Cyber Security jobs in California look for?

The top searched job categories for Forensic Cyber Security jobs in California are:

What cities in California are hiring for Forensic Cyber Security jobs?

Cities in California with the most Forensic Cyber Security job openings:

Infographic showing various Forensic Cyber Security job openings in California as of August 2026, with employment types broken down into 89% Full Time, 9% Part Time, and 2% Contract. Highlights an 92% Physical, 3% Hybrid, and 5% Remote job distribution, with an average salary of $131,221 per year, or $63.1 per hour.

Forensic Analyst

Northridge, CA • On-site

Full-time

Medical, Dental, Life, Retirement

Posted 11 days ago


Job description

ROLES & RESPONSIBILITIES
  • Performs digital forensic analysis on Windows, Apple Mac, and Linux based operating systems, in addition to the analysis of networking appliances including but not to, VPN and firewall appliances
  • Documents forensic findings in accordance with the standards set forth within the Arete Forensic Tracker and develop a master timeline and visual attack map of the events
  • Identifies additional sources (systems, logs, etc.) to collect based on the analysis and identifies gaps based on the lifecycle of attack
  • Works with the Security Operations Center (SOC) to leverage data from monitoring and alerts provided by installed applications and deployed EDR solutions to identify Indicators of Compromise (IOCs), Tactics, Techniques and Procedures (TTPs) for variants related to case
  • Delivers Forensics findings and updates to the team in a clear, concise manner through a narrative story outlining the timeline of events. Modifies delivery in-line with the call's audience and technical capabilities
  • Tracks findings and capture data points related to investigations to enhance and inform our threat intelligence
  • Raises technical constraints and issues within the Forensics team to identify detail of the incident and escalate to Forensic leadership
  • Maintains updated case analyst notes, the Forensic tracker, timeline and attack map for collaboration within the team in our centralized case location
  • Drafts detailed updates regarding investigative findings and conclusions drawn from analysis regarding the timing and mechanism of the initial intrusion, adversary actions, timeline of activity/lateral movement, and indicators of data access and/or exfiltration
  • Identifies, documents, and shares information such as critical IOCs or adversary TTP's as they uncovered with the Incident Response, Threat Intel, and Security Operations teams
  • Communicates identified IOCs to the Tiger Team in furtherance of the investigation, path to restoration/response, and for bolstering of Client's security posture
  • Employs the usage of incident-mapping frameworks such as MITRE's ATT&CK and Lockheed Martin's Cyber Kill Chain to help contextualize identified adversary actions/IOCs
  • Produces written incident, investigative updates and reports at the explicit direction of counsel partners
  • Communicates within the DFIR team and provide routine status updates within our case management platform
  • Works with cross-functional teams and collaborate to leverage threat intel TTPS/IOC's, information from our SOC/Threat Hunting team, and updates from our Negotiations teams to leverage the intelligence as part of the incident
  • Drafts reports and appendices based on the findings using the standard report templates
  • Accurately track and record time for forensic analysis
  • May perform other duties as assigned by management

SKILLS AND KNOWLEDGE
  • Deep understanding of Forensic artifacts, including (but not limited to) the analysis of operating system artifacts and the recovery of deleted items from multiple operating systems including Windows, Linux, Mac and RAM/memory forensics
  • Experience analyzing network and operating system log files including Windows Event logs, Unified Audit Logs, Firewall logs, VPN logs, etc.
  • Working knowledge of:
  • Windows disk and memory forensics
  • Network Security Monitoring (NSM), network traffic analysis, and log analysis
  • Unix or Linux disk and memory forensic
  • Experience and understanding of enterprise security controls
  • Experienced with EnCase, Axiom, FTK, X-Ways, SIFT, Splunk, Redline, Volatility, WireShark, TCP Dump, and other open-source forensic tools
  • Experience delivering technical findings to a non-technical audience, preferred
  • Provide findings in a confident, factual manner, preferred
  • Knowledge and experience in handling PII, PHI, sensitive, confidential and proprietary datasets, preferred
  • Experience with Cyber insurance investigations, preferred

JOB REQUIREMENTS
  • Associate's degree and 4+ years of incident response or digital forensics experience or Bachelor's Degree in Information Security, Computer Science, Digital Forensics, Cyber Security or related field
  • Possess One or more of the following Certifications
  • Security +, Network+, SANS GCED, GCIH, GCFE, GCFA, CEH, CHFI.

DISCLAIMER
The above statements are intended to describe the general nature and level of work being performed. They are not intended to be an exhaustive list of all responsibilities, duties and skills required personnel so classified.
WORK ENVIRONMENT
While performing the responsibilities of this position, the work environment characteristics listed below are representative of the environment the employee will encounter: Usual office working conditions. Reasonable accommodation may be made to enable people with disabilities to perform the essential functions of this job.
PHYSICAL DEMANDS
  • No physical exertion required
  • Travel within or outside of the state
  • Light work: Exerting up to 20 pounds of force occasionally, and/or up to 10 pounds of force as frequently as needed to move objects

TERMS OF EMPLOYMENT
Salary and benefits shall be paid consistent with Arete salary and benefit policy.
FLSA OVERTIME CATEGORY
Job is exempt from the overtime provisions of the Fair Labor Standards Act.
DECLARATION
The Arete Incident Response Human Resources Department retains the sole right and discretion to make changes to this job description.
EQUAL EMPLOYMENT OPPORTUNITY
We're proud to be an equal opportunity employer- and celebrate our employees' differences, regardless of race, color, religion, sex, sexual orientation, gender identity, national origin, age, disability, or Veteran status. Different makes us better.
Arete Incident Response is an outstanding (and growing) company with a very dedicated, fun team. We offer competitive salaries, fully paid benefits including Medical/Dental, Life/Disability Insurance, 401(k) and the opportunity to work with some of the latest and greatest in the fast-growing cyber security industry.
When you join Arete...
You'll be doing work that matters alongside other talented people, transforming the way people, businesses, and things connect with each other. Of course, we will offer you great pay and benefits, but we're about more than that. Arete is a place where you can craft your own path to greatness. Whether you think in code, words, pictures or numbers, find your future at Arete, where experience matters.
Equal Employment Opportunity
We're proud to be an equal opportunity employer- and celebrate our employees' differences, regardless of race, color, religion, sex, sexual orientation, gender identity, national origin, age, disability, or Veteran status. Different makes us better.