1

Network Forensics Jobs in Illinois (NOW HIRING)

Experience with Anti-Virus, HIPS/HBSS, IDS/IPS, Full Packet Capture, and Network Forensics tools. * Experience or knowledge in monitoring, defending, or administering cloud networks (e.g., AWS, Azure ...

Senior Consultant, Fraud & Forensic

Chicago, IL

$96K - $130K/yr

  • Medical

  • Dental

  • Vision

  • Retirement

  • PTO

We want to help you achieve growth by giving you access to a network of smart and supportive people ... Financial modeling and analysis for litigation matters and forensic accounting engagements.

Managing Director, Valuations

Chicago, IL · On-site

  • Medical

  • Dental

  • Vision

  • Retirement

  • PTO

... networking events, and professional organizations. * Foster a commercial mindset across the Valuation and Forensics teams by coaching professionals to identify client needs, surface cross-practice ...

Senior Incident Handler

Chicago, IL · On-site

$18.25 - $22.25/hr

Analyze logs,network, and forensic data to expose attacker tradecraft (lateral movement, persistence, exfiltration) and hunt down what others miss-leveraging EDR/XDR, SIEM, and cloud telemetry. * AI ...

Demonstrated experience performing remote and/or on-site data collections from endpoints, mobile devices, enterprise systems, or network-based repositories using forensic collection tools and cloud ...

Security Analyst

Peoria, IL · On-site

$38.80 - $45.59/hr

  • Medical

  • Dental

  • Vision

  • Life

  • Retirement

  • PTO

T. related field or five years commensurate work experience in Information Security and/or Network ... cyber forensic investigations. • Penetration testing experience. • Forensic investigation ...

Security Analyst

Peoria, IL · On-site

$38.80 - $45.59/hr

  • Medical

  • Dental

  • Vision

  • Life

  • Retirement

  • PTO

Understanding of networking protocols (TCP/IP, DNS, HTTP, VPN).Experience with a vulnerability ... Forensic investigation experience. Summary Pay Range The anticipated starting pay range for this ...

Direct forensic investigations of security incidents, including analysis of cloud audit logs (e.g., Microsoft 365 Unified Audit Log), endpoint and network telemetry, and identity activity, to ...

Showing results 21-40

Network Forensics information

See Illinois salary details

$21.3K

$103.3K

$157.5K

How much do network forensics jobs pay per year?

As of Aug 18, 2026, the average yearly pay for network forensics in Illinois is $103,269.00, according to ZipRecruiter salary data. Most workers in this role earn between $78,000.00 and $124,000.00 per year, depending on experience, location, and employer.

What is network forensics?

A Network Forensics job involves analyzing network traffic to detect, investigate, and mitigate cybersecurity incidents. Professionals in this role collect and examine digital evidence to identify security breaches, malicious activities, or policy violations. They use specialized tools to track intrusions, reconstruct cyberattacks, and support legal proceedings if necessary. This role is crucial for maintaining network security, preventing data breaches, and ensuring compliance with cybersecurity regulations.

What are the typical day-to-day responsibilities for someone working in network forensics?

Network Forensics professionals spend their days analyzing network traffic, identifying security breaches or anomalous activities, and reconstructing the timeline of events using specialized forensic tools. They often collaborate with IT security teams, law enforcement, or legal departments to gather, preserve, and report on digital evidence. Preparing detailed documentation and presenting findings clearly to both technical and non-technical audiences is also a vital part of the job. This role can involve responding to incidents in real time as well as conducting thorough post-incident investigations, making adaptability and a meticulous approach important for success.

What are the key skills and qualifications needed to thrive in network forensics?

To thrive in Network Forensics, you need strong analytical abilities, in-depth knowledge of networking protocols, cybersecurity concepts, and a degree in computer science or a related field. Familiarity with tools such as Wireshark, EnCase, FTK, and certifications like GCFA or CFCE is highly valuable. Attention to detail, critical thinking, and effective communication skills are essential soft qualities for this role. These skills enable professionals to accurately investigate network incidents, interpret digital evidence, and collaborate efficiently with technical and non-technical stakeholders.

What does network forensics do?

Network forensics involves analyzing network traffic and data to detect, investigate, and respond to security incidents or cyber threats. Professionals in this field use tools like packet analyzers and intrusion detection systems to identify malicious activity and gather evidence for legal or security purposes.

What are the most commonly searched types of Network Forensics jobs in Illinois?

The most popular types of Network Forensics jobs in Illinois are:

What job categories do people searching Network Forensics jobs in Illinois look for?

The top searched job categories for Network Forensics jobs in Illinois are:

Infographic showing various Network Forensics job openings in Illinois as of August 2026, with employment types broken down into 1% As Needed, 84% Full Time, 10% Part Time, and 5% Contract. Highlights an 92% Physical, 3% Hybrid, and 5% Remote job distribution, with an average salary of $103,269 per year, or $49.6 per hour.

Full-time

Re-posted 25 days ago


Job description

Company Description

At Philadelphia Company, we believe that technology should support and enhance your organization's success, not constrain it. With our wide range of best-in-class services, we provide customized solutions that fit your unique IT needs. We're committed to excelling at our job so you can focus on doing yours.

Job Description

Summary

We are seeking an IT Security Analyst Tier 2 for the Security Operations Center (SOC) to conduct investigations of and responses to, incidents that occur on the organization's network. This is an internal customer facing position and will require interaction with staff members. The candidate will support "The Clients" overall corporate information security mission as well as any additional SOC functions including but not limited to: Digital Forensics; Malware Analysis; Cyber Threat Intelligence; Vulnerability Assessment/Management; and Internal Stakeholder Relationship Management. The ideal candidate should work well in team dynamics; be passionate about continual self-improvement through the continual acquisition of technical skills relating to their roles and responsibilities; be self-motivated and driven to thrive in new and changing environments.


Responsibilities

    Support proactive detection and analysis of security incidents.
    Periodic assessment on incident trending to guide the strategy.
    Network Forensic skills such as proficiency in packet-level analysis to identify threats within the network
    Monitor networks for security events and alerts clients to potential (or active) threats, intrusions, and compromises
    Identified information security related events/incidence and document through to resolution.
    Analyze data provided from other departments/ Business Unit customers to evaluate the severity/magnitudes of events to determine if an incident occurred and formulate an appropriate and calibrated response in the event of a confirmed incident.
    Responsible for understanding the global threat landscape and tracking changes in this area, as well as understanding the direct or indirect impact to the enterprise.
    Conducts research and aligns response to emerging threats, including understanding the level of impact and exposure to customers (internal and external), proactively communicating to internal business units on a regular basis updates on emerging threats, and ensuring the organization has thorough detection capabilities in place for aforementioned threats.
    Review third party intelligence reports to compare "The Clients" network security conditions against known/suspected threats. Craft communications and develop proactive measures to assist in defending the corporate network.
    Perform analysis as needed to support routine business functions in support of project/task activities.
    Perform triage of service requests from internal teams; act as a subject matter expert for advanced technology, architecture and threat-related questions from internal staff.
    Have a passion for and a willingness to provide verbal and written security related advice, mentoring and education to other staff
    Provide and document daily reporting metrics and may be required to present those in a verbal manor to the team and or management.
    Provide after-hours On-Call Support for cyber security events.

Qualifications

THE FOLLOWING REQUIREMENTS MUST BE MET TO BE CONSIDERED FOR THIS POSITION:


    Bachelor's degree in computer science or other relevant field and 2-5 years' experience in Information Technology, Networking, or equivalent combination of education and experience. Incident Response and intrusion detection (ID) experience.
    Moderate knowledge of TCP/IP networking, switches, routers, firewalls, VPNs, and encryption.
    Ability to work closely with members of different teams and organizations and manage the analytic process.
    Strong ability to communicate: write clearly and speak authoritatively to different kinds of audiences (business leaders and technical peers)- can present complex concepts at high level, while retaining meaning and highlighting features of interest.
    Experience with 3 or more of the following security areas: malware reverse engineering, threat detection development, digital forensics, penetration testing, network perimeter defense, vulnerability assessment.
    The ability to cultivate technical development of junior analysts.
    Educate Response Analysts on potential threats. Also work closely with Specialist teams (Hunt and Forensics)
    Ability to tune existing alerting mechanisms to ensure high fidelity incident correlation
    Active tracking of the cyber threat landscape and extrapolation of risk based on internal exposure
    Collaborate with other teams in the Information Technology department on security risks. incidents and response.
    Possess an understanding of cyber adversary motivations in the domains of cybercrime, cyberespionage, and hacktivism.
    Strong understanding of security operations concepts: perimeter defense, data loss protection, insider threat, kill chain analysis, risk assessment, and security metrics
    Moderate knowledge of Malicious code mechanisms of operation and associated indicators of compromise
    Basic knowledge of audit requirements (PCI, SOX, etc.)
    Ability to execute on strategic requirements to mitigate risk within a global security architecture
    Capacity to coordinate international cross-functional teams to fulfill long-term objectives in a timely and effective manner


THE FOLLOWING IS DESIRED, BUT NOT REQUIRED TO BE CONSIDERED FOR THIS POSITION:

    Ability to perform end user education on a case by case basis.
    Experience with a diversity of hardware/software/Operating Systems (Windows, Linux, server focused Operating Systems).
    Ability to use one or more scripting languages (Python, Perl, JavaScript, Bash, etc.)
    Exposure to object oriented development, with C++, Java, or Python Experience with Splunk as well as experience with Enterprise Security
    Certified Incident Handler (GCIH)
    Certified Intrusion Analyst (GIAC) with one or more of the following:
o    Certified Ethical hacker (CEH)
o    Certified Information Systems Security Professional (CISSP)
Networking Certifications (CCNA, etc

Additional Information

All your information will be kept confidential according to EEO guidelines.