Preferred : • Relevant security certifications (e.g., GCIH, GCFA, GCIA, CISSP, GDSA) are a plus. Company : Scale's mission is to develop reliable AI systems for the world's most important decisions.
Preferred : • Relevant security certifications (e.g., GCIH, GCFA, GCIA, CISSP, GDSA) are a plus. Company : Scale's mission is to develop reliable AI systems for the world's most important decisions.
Senior IT Security Engineer - Full Time, Days (Remote) 11492
Bellflower, CA · On-site +1
$145K/yr
MS-500, SC-200, SC-300, GCIH, GCFA, GDAT, CISSP, or equivalent * Healthcare vertical experience (hospitals, health systems, or covered entities under HIPAA) * Experience with BloodHound CE, Impacket ...
Senior IT Security Engineer - Full Time, Days (Remote) 11492
Bellflower, CA · On-site +1
$145K/yr
MS-500, SC-200, SC-300, GCIH, GCFA, GDAT, CISSP, or equivalent * Healthcare vertical experience (hospitals, health systems, or covered entities under HIPAA) * Experience with BloodHound CE, Impacket ...
Staff Security Engineer
Los Angeles, CA · On-site
Certifications CISSP (Highly Preferred), CISM, CCSP, or specialized GIAC (GCIH/GCFA). Experience & Qualifications * 8-12+ Years in Information Security, with a significant background (3+ years) in ...
Staff Security Engineer
Los Angeles, CA · On-site
Certifications CISSP (Highly Preferred), CISM, CCSP, or specialized GIAC (GCIH/GCFA). Experience & Qualifications * 8-12+ Years in Information Security, with a significant background (3+ years) in ...
Security Engineer
Burbank, CA · On-site
$70 - $80/hr
GIAC Certified Forensic Analyst (GCFA) * GIAC Reverse Engineering Malware (GREM) * GIAC Network Forensics Analyst (GNFA) * Offensive Security certifications (OSCP, OSCE, or similar) * Other relevant ...
Security Engineer
Burbank, CA · On-site
$70 - $80/hr
GIAC Certified Forensic Analyst (GCFA) * GIAC Reverse Engineering Malware (GREM) * GIAC Network Forensics Analyst (GNFA) * Offensive Security certifications (OSCP, OSCE, or similar) * Other relevant ...
Staff Security Engineer
Los Angeles, CA · On-site
Certifications CISSP (Highly Preferred), CISM, CCSP, or specialized GIAC (GCIH/GCFA). Experience & Qualifications * 8-12+ Years in Information Security, with a significant background (3+ years) in ...
Staff Security Engineer
Los Angeles, CA · On-site
Certifications CISSP (Highly Preferred), CISM, CCSP, or specialized GIAC (GCIH/GCFA). Experience & Qualifications * 8-12+ Years in Information Security, with a significant background (3+ years) in ...
Staff Security Engineer
Los Angeles, CA · On-site +1
Certifications CISSP (Highly Preferred), CISM, CCSP, or specialized GIAC (GCIH/GCFA). Experience & Qualifications * 8-12+ Years in Information Security, with a significant background (3+ years) in ...
Staff Security Engineer
Los Angeles, CA · On-site +1
Certifications CISSP (Highly Preferred), CISM, CCSP, or specialized GIAC (GCIH/GCFA). Experience & Qualifications * 8-12+ Years in Information Security, with a significant background (3+ years) in ...
Certifications CISSP (Highly Preferred), CISM, CCSP, or specialized GIAC (GCIH/GCFA).Experience & Qualifications * 8-12+ Years in Information Security, with a significant background (3+ years) in ...
Certifications CISSP (Highly Preferred), CISM, CCSP, or specialized GIAC (GCIH/GCFA).Experience & Qualifications * 8-12+ Years in Information Security, with a significant background (3+ years) in ...
CEH, CFR, CCNA Cyber Ops, CHFI, CySA+, GCFA, GCIH, SCYBER, or PenTest+ • Knowledge of Incident Response Handling Procedures (NIST SP 800-61) • Familiarity with cyber adversary tactics and ...
CEH, CFR, CCNA Cyber Ops, CHFI, CySA+, GCFA, GCIH, SCYBER, or PenTest+ • Knowledge of Incident Response Handling Procedures (NIST SP 800-61) • Familiarity with cyber adversary tactics and ...
GCIH (GIAC Certified Incident Handler), GCFA (GIAC Certified Forensic Analyst), GCFE (GIAC Certified Forensic Examiner), GCIA (GIAC Certified Intrusion Analyst), or CISM (Certified Information ...
GCIH (GIAC Certified Incident Handler), GCFA (GIAC Certified Forensic Analyst), GCFE (GIAC Certified Forensic Examiner), GCIA (GIAC Certified Intrusion Analyst), or CISM (Certified Information ...
Senior Information Security Engineer - DOWIN Ops
Seaside, CA · On-site
$117K - $159K/yr
CEH, CFR, CCNA Cyber Ops, CHFI, CySA+, GCFA, GCIH, SCYBER, or PenTest+ * 7+ years in Information Technology or Information Security with 5+ years performing Cybersecurity Operations and Incident ...
Senior Information Security Engineer - DOWIN Ops
Seaside, CA · On-site
$117K - $159K/yr
CEH, CFR, CCNA Cyber Ops, CHFI, CySA+, GCFA, GCIH, SCYBER, or PenTest+ * 7+ years in Information Technology or Information Security with 5+ years performing Cybersecurity Operations and Incident ...
GCTI, GCIH, GCFA, GCIA, CySA+, CEH, Network+, CISSP, or comparable cyber or intelligence certifications Clearance: Applicants selected will be subject to a security investigation and may need to meet ...
GCTI, GCIH, GCFA, GCIA, CySA+, CEH, Network+, CISSP, or comparable cyber or intelligence certifications Clearance: Applicants selected will be subject to a security investigation and may need to meet ...
... GCFA, CCO, CCPA, CCME, etc.) • General knowledge of litigation support applications (e.g. Relativity, Concordance, Nuix, LAW PreDiscovery, etc.) • Experience working with structured data exported ...
... GCFA, CCO, CCPA, CCME, etc.) • General knowledge of litigation support applications (e.g. Relativity, Concordance, Nuix, LAW PreDiscovery, etc.) • Experience working with structured data exported ...
Managing Director, Digital Investigations & Cyber Risk
Los Angeles, CA · On-site
$250K - $300K/yr
One or more digital forensics and incident response certifications, such as GCIH, GCFE, GCFA, CFCE, CCME or equivalent government forensic certifications. ENVIRONMENT DETAILS * Some travel is ...
Managing Director, Digital Investigations & Cyber Risk
Los Angeles, CA · On-site
$250K - $300K/yr
One or more digital forensics and incident response certifications, such as GCIH, GCFE, GCFA, CFCE, CCME or equivalent government forensic certifications. ENVIRONMENT DETAILS * Some travel is ...
One or more digital forensics and incident response certifications, such as GCIH, GCFE, GCFA, CFCE, CCME or equivalent government forensic certifications. ENVIRONMENT DETAILS * Some travel is ...
Quick apply
One or more digital forensics and incident response certifications, such as GCIH, GCFE, GCFA, CFCE, CCME or equivalent government forensic certifications. ENVIRONMENT DETAILS * Some travel is ...
GCIH (GIAC Certified Incident Handler), GCFA (GIAC Certified Forensic Analyst), GCFE (GIAC Certified Forensic Examiner), GCIA (GIAC Certified Intrusion Analyst), or CISM (Certified Information ...
GCIH (GIAC Certified Incident Handler), GCFA (GIAC Certified Forensic Analyst), GCFE (GIAC Certified Forensic Examiner), GCIA (GIAC Certified Intrusion Analyst), or CISM (Certified Information ...
Senior Security Engineer
San Francisco, CA · On-site
$190K - $225K/yr
CISSP, CCSP, GCIH, GCFA, or equivalent certifications. The salary range provided by our client is $ 190-225K. Once elected and an offer is extended, direct negotiations will be made The base salary ...
Senior Security Engineer
San Francisco, CA · On-site
$190K - $225K/yr
CISSP, CCSP, GCIH, GCFA, or equivalent certifications. The salary range provided by our client is $ 190-225K. Once elected and an offer is extended, direct negotiations will be made The base salary ...
GIAC certifications (GCIA, GCIH, GCFA, GNFA, GCFE) or CISSP. Security Clearance: * Interim or Active Top Secret Security Clearance Education: * Bachelor's degree in Project Management, Business ...
GIAC certifications (GCIA, GCIH, GCFA, GNFA, GCFE) or CISSP. Security Clearance: * Interim or Active Top Secret Security Clearance Education: * Bachelor's degree in Project Management, Business ...
Lead Cyber Mission Threat Analyst - Clearance Required with Security Clearance
Port Hueneme, CA · On-site
GIAC certifications (GCIA, GCIH, GCFA, GNFA, GCFE) or CISSP. Security Clearance: * Interim or Active Top Secret Security Clearance Education: * Bachelor's degree in Project Management, Business ...
Lead Cyber Mission Threat Analyst - Clearance Required with Security Clearance
Port Hueneme, CA · On-site
GIAC certifications (GCIA, GCIH, GCFA, GNFA, GCFE) or CISSP. Security Clearance: * Interim or Active Top Secret Security Clearance Education: * Bachelor's degree in Project Management, Business ...
One or more digital forensics and incident response certifications, such as GCIH, GCFE, GCFA, CFCE, CCME or equivalent government forensic certifications. ENVIRONMENT DETAILS * Some travel is ...
Quick apply
One or more digital forensics and incident response certifications, such as GCIH, GCFE, GCFA, CFCE, CCME or equivalent government forensic certifications. ENVIRONMENT DETAILS * Some travel is ...
Lead Cyber Mission Threat Analyst - Clearance Required
Port Hueneme, CA · On-site
$180 - $218/hr
GIAC certifications (GCIA, GCIH, GCFA, GNFA, GCFE) or CISSP. Security Clearance * Interim or Active Top Secret Security Clearance Education * Bachelor's degree in Project Management, Business ...
Lead Cyber Mission Threat Analyst - Clearance Required
Port Hueneme, CA · On-site
$180 - $218/hr
GIAC certifications (GCIA, GCIH, GCFA, GNFA, GCFE) or CISSP. Security Clearance * Interim or Active Top Secret Security Clearance Education * Bachelor's degree in Project Management, Business ...
Gcfa information
See California salary details
$17.32 - $21.20
4% of jobs
$21.20 - $25.08
5% of jobs
$25.08 - $28.96
9% of jobs
$28.96 - $32.85
1% of jobs
$35.48 is the 25th percentile. Wages below this are outliers.
$32.85 - $36.73
7% of jobs
$36.73 - $40.61
15% of jobs
$40.61 - $44.49
4% of jobs
The median wage is $46 / hr.
$44.49 - $48.37
9% of jobs
$48.37 - $52.26
11% of jobs
$53.78 is the 75th percentile. Wages above this are outliers.
$52.26 - $56.14
22% of jobs
$56.14 - $60.02
12% of jobs
$17
$43
$60
How much do gcfa jobs pay per hour?
What is a GCFA?
A GCFA (GIAC Certified Forensic Analyst) is a cybersecurity professional specializing in digital forensics and incident response. They analyze cyberattacks, investigate data breaches, and recover compromised systems. GCFA-certified professionals work in law enforcement, government agencies, and private organizations to detect threats and secure networks. Their role involves collecting and preserving digital evidence while following industry best practices.
What are the key skills and qualifications needed to thrive as a GCFA, and why are they important?
To thrive as a GCFA (GIAC Certified Forensic Analyst), you need a solid background in computer forensics, incident response, and digital investigations, usually supported by relevant IT or cybersecurity qualifications. Proficiency with forensic analysis tools such as EnCase, FTK, and other evidence collection software, as well as the GCFA certification itself, is essential. Strong analytical thinking, attention to detail, and effective written and verbal communication are important soft skills for this position. These competencies ensure accurate, thorough investigations, strong courtroom testimony, and collaboration with technical and non-technical stakeholders.
What are some common challenges faced by GCFA professionals in their daily work?
GCFA professionals often encounter challenges such as rapidly evolving cyber threats, the need to preserve and analyze large volumes of digital evidence, and ensuring findings stand up to legal scrutiny. Balancing quick response times with thorough, precise forensic analysis can be demanding, particularly when working on multiple incidents or under time-sensitive conditions. Additionally, staying current with new forensic tools and techniques requires ongoing professional development. Working in this field may involve collaboration with legal teams, law enforcement, and other IT security personnel to effectively resolve incidents and mitigate future risks.

Full-time
Re-posted 25 days ago
Scale AI rating
8.5
Based on 9 frontline employees who took The Breakroom Quiz
78th of 242 rated software companies
Job description
Scale AI is seeking a Senior Security Engineer specializing in Detection and Incident Response to join their Security Engineering team. This role involves building systems for detecting, containing, and preventing security incidents while also conducting investigations and improving engineering processes related to security operations.
Responsibilities:
• Engineer, test, and deploy detection logic across cloud and enterprise environments, treating detections as software with version control, peer review, and measurable performance.
• Build and maintain incident response automation, runbooks, and tooling that reduce containment timelines without sacrificing developer velocity.
• Mature telemetry pipelines through improved schema design, normalization, enrichment, and quality checks that reduce false positives and increase signal fidelity.
• Perform digital incident investigations to identify and contain potential security breaches.
• Conduct digital forensics and malware analysis to understand attack vectors and adversary methodologies.
• Integrate alerting with messaging and ticketing systems to enable fast, traceable response workflows.
• Partner cross-functionally with IT, security, and engineering teams to harden identity and access patterns, close logging and forensics gaps, and implement maintainable guardrails that scale with the organization.
• Utilize threat intelligence platforms to improve hunting, detection, and response workflows.
• Clearly explain the significance and impact of incidents, providing actionable recommendations to both technical and non-technical stakeholders.
Qualifications:
Required:
• 5+ years of experience in Detection Engineering, Incident Response, or Security Operations, with a strong emphasis on building and shipping security tooling and automation.
• Proficiency in at least one programming language (e.g., Python, Go) and comfort writing production-grade code — not just scripts.
• Hands-on experience designing or improving detection pipelines, SIEM content, and alerting workflows in cloud-native environments.
• Practical experience with SIEM, EDR, and SOAR tools, with a preference for candidates who have built integrations or extended these platforms programmatically.
• Strong understanding of modern cyber threats, common attack techniques, and adversary TTPs.
• Familiarity with digital forensics tools and malware analysis techniques.
• Experience with cloud-native environments (e.g., AWS, GCP, Azure) and the security telemetry those environments generate.
• Exposure to threat intelligence platforms and integrating intel into detection and investigation workflows.
• Strong communication skills, with the ability to translate complex security findings into clear business impact.
Preferred:
• Relevant security certifications (e.g., GCIH, GCFA, GCIA, CISSP, GDSA) are a plus.
Company:
Scale’s mission is to develop reliable AI systems for the world’s most important decisions. Founded in 2016, the company is headquartered in San Francisco, USA, with a team of 501-1000 employees. The company is currently Late Stage.
About Scale AI
Sourced by ZipRecruiter
Industry
Software development
Company size
201 - 500 Employees
Headquarters location
San Francisco, CA, US
Year founded
2016