> Markdown version of [/jobs/ext/2872621-network-forensics-analyst-dt-7-remote](https://www.wearedevelopers.com/jobs/ext/2872621-network-forensics-analyst-dt-7-remote). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Network Forensics Analyst - DT #7 - Remote - **Company:** Compu-Vision - IT - **Location:** Philadelphia, PA, United States (Remote available) - **Contract:** Temporary to permanent - **Skills:** Proxy Servers, Network Analysis, Computer Networks, Dynamic Host Configuration Protocol, Domain Name System (DNS), Networking Hardware, IP Addressing, Intrusion Detection and Prevention, Intrusion Detection Systems, Virtual Private Networks (VPN), Network Security, Log Analysis, Network Connections, Network Forensics, Routing, Packet Analyzer, Network Protocols, Remote Access Technology, Security Information and Event Management, TCP/IP, Tcpdump, Wireshark, Firewalls (Computer Science), Splunk - **Published:** September 13, 2026 - **Apply:** https://www.careerjet.com/jobad/use3f45f7240bb01d97110a38f2d06d333 ## About the Role * Proven experience in network forensics, network security analysis, or incident response. * Strong hands-on experience analyzing packet captures and network traffic. * Experience investigating suspicious communications and network-based attacks. * Strong understanding of TCP/IP, DNS, DHCP, and common network protocols. * Experience analyzing firewall, proxy, DNS, VPN, IDS/IPS, and network-device logs. * Ability to identify malicious IPs, domains, protocols, and network behaviors. * Experience investigating lateral movement, C2 communications, and data exfiltration. * Proficiency with tools such as Wireshark, Zeek, tcpdump, or NetworkMiner. * Experience using SIEM platforms such as Splunk for security investigations. * Strong analytical, investigative, and technical documentation skills. * Ability to work independently in a remote environment. ## Description We are seeking an experienced Network Forensics Analyst to investigate cybersecurity incidents through the analysis of network traffic, communications, and related security telemetry. The role will focus on identifying malicious network activity, investigating attacker behavior, reconstructing attack timelines, and supporting incident response efforts. The ideal candidate will have strong hands-on experience with packet analysis, network security monitoring, firewall and IDS/IPS technologies, and network forensic investigation., * Analyze packet captures and network traffic associated with cybersecurity incidents. * Investigate suspicious network connections and anomalous communications. * Identify and analyze: * Lateral movement * Command-and-control (C2) traffic * Data exfiltration * Malicious protocols and network behavior * Analyze logs from: * Firewalls * Proxy servers * DNS infrastructure * VPN systems * IDS/IPS platforms * Network devices * Identify malicious or suspicious IP addresses, domains, protocols, and communication patterns. * Correlate network traffic with other security telemetry to reconstruct attack activity. * Develop detailed attack timelines and investigative findings. * Support incident response and threat investigation activities. * Document forensic evidence, analysis methodology, findings, and conclusions. * Prepare clear and defensible network forensic reports. * Communicate technical findings to security and incident response teams. Key Technical Skills Network Analysis & Forensics * Wireshark * Zeek * tcpdump * NetworkMiner * Packet capture and deep packet analysis * Network traffic reconstruction * Network behavioral analysis Security Monitoring * Splunk * Firewall technologies * IDS/IPS * VPN technologies * DNS/DHCP * Network security monitoring Networking * TCP/IP * Network protocols * Routing and network communications * Network security architecture * Malicious traffic identification Incident Response * Network-based incident investigation * Attack timeline development * Threat detection and analysis * Incident response methodologies * Evidence collection and documentation ## Related Videos - [Cyber Sleuth: Finding Hidden Connections in Cyber Data](https://www.wearedevelopers.com/videos/893-cyber-sleuth-finding-hidden-connections-in-cyber-data) - [An Applied Introduction to eBPF with Go](https://www.wearedevelopers.com/videos/1075-an-applied-introduction-to-ebpf-with-go) - [Our journey with Spring Boot in a microservice architecture](https://www.wearedevelopers.com/videos/511-our-journey-with-spring-boot-in-a-microservice-architecture) - [The Developer Workstation Blind Spot: Why Your Security Stack Can't See What Matters Most](https://www.wearedevelopers.com/videos/100254-the-developer-workstation-blind-spot-why-your-security-stack-can-t-see-what-matters-most) - [Turning Container security up to 11 with Capabilities](https://www.wearedevelopers.com/videos/718-turning-container-security-up-to-11-with-capabilities) - [Debunking the Top 10 Myths about Web 3](https://www.wearedevelopers.com/videos/634-debunking-the-top-10-myths-about-web-3) ## Related Articles - [Fully Remote Software Engineer Jobs](https://www.wearedevelopers.com/magazine/447-fully-remote-software-engineer-jobs) - [Best Job Boards for Remote Work for Developers](https://www.wearedevelopers.com/magazine/290-best-job-boards-for-remote-work-for-developers) - [Best Paying Remote Jobs](https://www.wearedevelopers.com/magazine/255-best-paying-remote-jobs) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [The Most Popular IT Jobs on the Market](https://www.wearedevelopers.com/magazine/376-the-most-popular-it-jobs-on-the-market) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing)