Cyber Digital Forensics Analyst
Orange County, CA
Category: Security
Industry: Government
Reference ID: JN -062026-107543
Date Posted: 06/21/2026
Shortcut: http://careers.eliassen.com/BYgN6H
Description:
On-site in Orange County, CA
Our client seeks a Cyber Digital Forensics Analyst to support a 24x7x365 Security Operations Center. The analyst will conduct digital media forensics, contribute to incident response, maintain and enhance the SOC forensics program, and produce clear technical reporting. The role includes shift rotations, weekend coverage, and some holidays. The initial period of performance is roughly six months with training on a day shift. Candidates must meet background clearance requirements and hold a relevant forensics certification.
This is a contract to hire opportunity. Applicants must be willing and able to work on a w2 basis and convert to FTE following contract duration. For our w2 consultants, we offer a great benefits package that includes Medical, Dental, and Vision benefits, 401k with company matching, and life insurance.
Rate: $29.00 to $34.00/hr. w2
Responsibilities:
- Serve as the primary liaison for forensic analysis of digital media to identify, reverse engineer, and de-obfuscate content related to security incidents.
- Maintain and enhance the SOC Digital Forensics Program, including process improvements and team upskilling via drafted technical reports.
- Support SOC operations for security incidents across hosts, networks, identities, and cloud environments.
- Develop and report cyber threat intelligence derived from forensic investigations.
- Identify, develop, and implement automation tasks for the SOC Forensics Program.
- Research, evaluate, and recommend security tools, techniques, and technologies aligned with security strategy.
- Use COTS/GOTS and custom tools and procedures to scan, identify, contain, mitigate, and remediate vulnerabilities and intrusions.
- Analyze and validate security requirements and recommend additional safeguards.
- Provide occasional briefings to senior staff on forensic findings.
Experience Requirements:
- Programming experience with Python, C++, or JavaScript.
- Evidence acquisition and Chain of Custody processes.
- Host, cloud, identity, and network forensics experience.
- Packet capture, volatile memory, and suspicious script analysis experience.
- Familiarity with physical device imaging software and digital forensics tools.
- Knowledge of IDS/IPS, firewalls, and anti-malware technologies.
- Incident response experience.
- Experience analyzing security alerts in Microsoft Sentinel SIEM or similar tools.
- Malware analysis technical report writing.
- Adherence to SOC standard operating procedures.
- Ability to work shifts including weekends and some holidays in a 24x7x365 environment; shift rotation expected with reasonable notice.
- Strong interpersonal skills and ability to handle multiple tasks.
Education Requirements:
- Bachelor’s degree in a related field preferred. A Bachelor’s degree with 0 years of related experience required; 2 years of related experience highly preferred. Additional experience may substitute for education.
- Certification required: MCFE, EnCE, DFE, GCFA, or similar industry-related certification(s).
- Clearances required: County Live Scan, Child Support Services (CSS) Background Clearance, and County Probation (PROB) Background.
Skills, experience, and other compensable factors will be considered when determining pay rate. The pay range provided in this posting reflects a W2 hourly rate; other employment options may be available that may result in pay outside of the provided range.
W2 employees of Eliassen Group who are regularly scheduled to work 30 or more hours per week are eligible for the following benefits: medical (choice of 3 plans), dental, vision, pre-tax accounts, other voluntary benefits including life and disability insurance, 401(k) with match, and sick time if required by law in the worked-in state/locality.
If anyone reaches out to you about an open position connected with Eliassen Group, please ensure that you are working directly with us by confirming the following:
· When you work with Eliassen Group, all email communication will come from an Eliassen.com address, never Gmail, Yahoo, etc.
· Eliassen Group will never ask you for personal information (home address, bank account, or check routing number) until you have worked with someone clearly associated with Eliassen Group.
If you have any indication of fraudulent activity, please contact fraud@eliassen.com.
-
Tier 2 Senior Cyber Security Analyst
Tustin, CA
Description: Santa Ana, CA | Onsite at OC Data Center Our client seeks a Tier 2 Senior Cyber Security Analyst to support a 24x7x365 Security Operations Center. The analyst will create, tune, monitor, and investigate SIEM alerts and support incident res...
Date Posted: 06/19/2026 Recommended
-
Sr. Solutions Architect III - Cyber
Washington, DC
Description: On-site in Washington, DC Our client seeks a Sr. Solutions Architect III - Cyber to design, implement, and manage scalable cybersecurity solutions across multiple domains. You will lead the implementation of a Security Operations Center an...
Date Posted: 06/17/2026 Recommended
-
Automation / SOAR Engineer
Washington, DC
Description: Hybrid 2 Days Onsite/3 Days Remote in Washington, DC Our client seeks an Automation / SOAR Engineer to design, develop, and implement automation solutions within a federal cybersecurity operations environment. The role focuses on building ...
Date Posted: 06/02/2026 Recommended
-
Lead Cybersecurity Engineer
Washington, DC
Description: Hybrid 2 Days Onsite/3 Days Remote in Washington, DC Our client seeks a Lead Cybersecurity Engineer to design and implement enterprise security solutions across a hybrid federal environment. The role will lead engineering initiatives spann...
Date Posted: 06/04/2026 Recommended
-
SIEM Engineer
Washington, DC
Description:Hybrid 2 Days Onsite/3 Days Remote in Washington, DC Our client seeks a SIEM Engineer to support enterprise security monitoring, detection engineering, and log management within a federal SOC environment. The role administers SIEM platforms...
Date Posted: 06/02/2026 Recommended
-
Cybersecurity Architect
Orange, CA
Description:On-site in Orange, CA Our client seeks a Cybersecurity Architect to support the Orange County Sheriff’s Department. This role provides technical leadership for enterprise security architecture, safeguarding assets, systems, and data against...
Date Posted: 06/22/2026 Recommended
-
SOC/NOC Operations Manager
Washington, DC
Description: Hybrid 2 Days Onsite/3 Days Remote in Washington, DC Our client seeks a SOC/NOC Operations Manager to lead 24x7 cybersecurity and network operations within a complex federal enterprise environment. The manager will oversee security and net...
Date Posted: 06/02/2026 Recommended
-
Senior Software Engineer in Test
Durham, NC
Description: Hybrid 2 weeks per month in either Durham, NC or Location to be confirmed Our client seeks a Senior Software Engineer in Test to design, develop, and maintain automated test suites for digital healthcare products. The role focuses on UI an...
Date Posted: 06/22/2026 Recommended
-
NOC Analyst
Washington, DC
Description: Hybrid 2 Days Onsite/3 Days Remote in Washington, DC Our client seeks a NOC Analyst to support enterprise network and infrastructure monitoring within a 24x7 federal operations environment. The role encompasses real-time monitoring, event ...
Date Posted: 06/02/2026 Recommended
-
Lead Software Engineer BaaS Team
Anywhere
Description: Remote Our client seeks a Lead Software Engineer for the BaaS team to support partner onboarding and platform enhancements. The role focuses on building scalable, secure, and high-performance systems that enable embedded financial services...
Date Posted: 06/11/2026 Recommended
-
Insider Threat Analyst Lead
Washington, DC
Description: Hybrid in Washington, DC Our client seeks an Insider Threat Analyst Lead to support a federal cybersecurity program focused on identifying, analyzing, and mitigating insider threats. The lead will direct insider threat analysis efforts, le...
Date Posted: 06/03/2026 Recommended
-
Senior Software Engineer
Westlake, TX
Description: On-site in Westlake, TX Our client seeks a Senior Software Engineer to lead initiatives for Security Master and Pricing applications. The role will interface with end users and product owners, support distributed systems, and improve busin...
Date Posted: 06/24/2026 Recommended
-
Cloud Solution Architect
Merrimack, NC
Description:On-site in Merrimack, NC Our client seeks a Cloud Solution Architect to drive end-to-end solution architecture within Institutional Wealth Management Services. The architect will partner with product sponsors, agile squads, and peer archite...
Date Posted: 05/26/2026 Recommended
-
Senior Organizational Change Manager
Anywhere
Description: Remote Our client is seeking a Organizational Change Manager to support enterprise programs by driving streamlined and sustainable change across the organization. This role partners closely with business, technology, and program teams to m...
Date Posted: 06/07/2026 Recommended
-
Security Engineer - Software 3
Tysons Corner, VA
Description: Hybrid 3 days onsite / 2 days remote in either Tysons Corner, VA or Rockville, MD Our client seeks a senior application security engineer to plan, coordinate, and implement application security practices across the software development lif...
Date Posted: 06/15/2026 Recommended
-
Senior Full Stack Engineer
Westlake, TX
Description: Hybrid Every other week onsite/5 days in Westlake, TX We are seeking a Senior Full Stack Engineer to help build next-generation digital platforms that empower customers to achieve their philanthropic goals. This role is ideal for a collabo...
Date Posted: 06/16/2026 Recommended
-
Senior Software Engineer in Test (SDET)
Westlake, TX
Description: Hybrid 50% onsite in Westlake, TX Our client is hiring a Senior Software Engineer in Test (SDET) to build robust automation frameworks and drive end-to-end testing across UI and API layers for digital healthcare solutions. You will use Pla...
Date Posted: 06/10/2026 Recommended
-
Senior Full Stack Engineer
Westlake, TX
Description: On-site Every Other Week onsite / 5 days in Westlake, TX Our client seeks a Senior Full Stack Engineer to build omni-channel user experiences and platform capabilities that support a broad digital presence for millions of customers. You wi...
Date Posted: 06/15/2026 Recommended
-
Salesforce CRM Developer
Westlake, TX
Description: On-site in Westlake, TX Our client seeks a Salesforce CRM developer to partner with Sales and Service teams and translate business vision into secure, reliable solutions on the Salesforce platform. The role supports the Platform squad with...
Date Posted: 06/03/2026 Recommended
-
Reporting & Metrics Analyst
Washington, DC
Description: Hybrid 2 Days Onsite/3 Days Remote in Washington, DC Our client seeks a Reporting & Metrics Analyst to support operational, cybersecurity, and compliance reporting within a federal SOC/NOC environment. The role will develop dashboards, tra...
Date Posted: 06/02/2026 Recommended
-
Salesforce Architect / Senior Developer
Washington, DC
Description: Hybrid Primary place of performance is HYBRID. The role involves travel to the client site in Washington, DC. At a minimum, 1-2 days per week, onsite is required. On-site attendance may also be required during system rollout activities. in...
Date Posted: 05/31/2026 Recommended
-
Backup Program Manager
Washington, DC
Description: Hybrid 2 Days Onsite/3 Days Remote in Washington, DC Our client seeks a Backup Program Manager to support day-to-day program execution for a large federal cybersecurity and operations program. The role will assist the Program Manager with ...
Date Posted: 06/02/2026 Recommended
-
AWS Cloud Architect
Anywhere
Description: Remote Our client seeks a cloud architect to design, implement, and govern secure AWS environments across development, testing, and production. The role covers enterprise architecture, AI implementation support, infrastructure as code, Dev...
Date Posted: 05/31/2026 Recommended
-
Senior AWS Cloud Developer
Westlake, TX
Description: On-site in Westlake, TX Our client seeks a Senior AWS Cloud Developer to build scalable backend services for digital financial experiences. The team modernizes mainframe capabilities and delivers reusable Java applications that power custo...
Date Posted: 06/24/2026 Recommended
-
SOC Analyst
Washington, DC
Description: Hybrid 2 Days Onsite/3 Days Remote in Washington, DC Our client seeks a SOC Analyst to support continuous monitoring, detection, analysis, and response to cybersecurity events across hybrid cloud and on-premises environments. The analyst w...
Date Posted: 06/02/2026 Recommended
-
Mid Systems Engineer, PAM (CyberArk)
Washington, DC
Description: On-site in Washington, DC Step into the role of a Senior-Level CyberArk Engineer supporting our client at the Department of Transportation. You will contribute to deploying and maintaining a Privileged Access Management solution across dev...
Date Posted: 06/16/2026 Recommended
-
Sr. Software Engineer II
Washington dc, DC
Description:On-site in Washington, DC Our client seeks a Sr. Software Engineer II to design and manage enterprise endpoint security solutions across DoD and IC environments. The role requires deep expertise with Trellix and Windows/Linux systems, leade...
Date Posted: 06/01/2026 Recommended
-
Information Security Engineer
Anywhere
Description: Remote Our client seeks an Information Security Engineer to support Enterprise Vulnerability Management Application Security operations. The role focuses on vulnerability intake, triage, and validation, including managing submissions from ...
Date Posted: 06/22/2026 Recommended
-
Associate Network Security Engineer
Fenton Cary, NC
Description: Associate Network Security Engineer Cary, NC • Hybrid Our client is seeking an Associate Cybersecurity Engineer for a 12‑month contract, with potential for permanent conversion, to support the Information Security organization. This role f...
Date Posted: 05/31/2026 Recommended
-
Cybersecurity Firewall Analyst
Charlotte, NC
Description: Hybrid 3 on in Charlotte, NC Our client seeks a Cybersecurity Firewall Analyst to support next-generation firewall administration, operations, and policy governance across enterprise and regulated environments. The role includes incident r...
Date Posted: 06/20/2026 Recommended
Eliassen Group is an Equal Opportunity/Affirmative Action Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, pregnancy, sexual orientation, gender identity, national origin, age, protected veteran status, or disability status. Eliassen Group’s Affirmative Action Plan (AAP) is available for inspection by any employee or applicant for employment upon request, during normal business hours of Monday through Friday, 8:30am to 5:30pm EST. Interested persons should contact Phaedra Wells at pwells@eliassen.com for assistance. It is unlawful in Massachusetts and Maryland to require or administer a lie detector test as a condition of employment or continued employment. An employer who violates this law shall be subject to criminal penalties and civil liability.
Applicants with disabilities that believe they require an accommodation or assistance with a position, please email our HR team at hradmin@eliassen.com. This email inbox is designed exclusively to assist job seekers whose disability prevents them from being able to apply online. Emails sent for other purposes will not receive a response.
Please be advised that a number of fraudulent job postings have been released under the Eliassen Group brand.
Unfortunately, fraudulent job postings can happen. If anyone reaches out to you about an open position connected with Eliassen Group, never provide personal or financial information to anyone who is not clearly associated with Eliassen Group
If anyone seemingly from Eliassen Group has ever requested this personal information in the past or does so in the future, please contact fraud@eliassen.com.
Please ensure that you are working directly with us by confirming the following:
- When you work with Eliassen Group, all email communication will come from an Eliassen.com address, never Gmail, Yahoo, etc.
- Eliassen Group will never ask you for personal information (home address, bank account, or check routing number) until you have worked with someone clearly associated with Eliassen Group, as indicated above