freehire launches on Product Hunt on 26 August.

Follow →

Incident Response Senior Consultant

Summary

Senior cybersecurity consultant leading incident response engagements, using digital forensics, threat hunting, network analysis, malware investigation, and cloud incident response (Windows, macOS, Linux, Zeek/Bro, Suricata, AWS/Azure/GCP, AI) to help organizations recover from security incidents.

This position is listed on behalf of a partner company, who manages all applications and next steps. Our partner is looking for an Incident Response Senior Consultant based in Canada.

This is a senior cybersecurity consulting role focused on helping organizations investigate and respond to sophisticated security incidents.
You will lead complex incident response engagements and work alongside highly skilled security professionals on high-impact investigations.
The role combines digital forensics, threat hunting, network analysis, malware investigation, remediation, and cloud incident response.
You will interact directly with customers, executives, regulators, and legal counsel, translating complex technical findings into clear recommendations.
The position also offers opportunities to develop new investigative methodologies and contribute to industry thought leadership.
You will work in a highly autonomous, collaborative environment where continuous learning, technical curiosity, and innovation are strongly encouraged.
The role requires flexibility to travel on short notice, with travel expected for up to 30% of the time.

Accountabilities:

  • Lead incident response engagements, coordinating investigations and ensuring high-quality technical and client outcomes.
  • Develop and apply innovative threat-hunting techniques to identify malicious activity across large and complex datasets.
  • Conduct intrusion investigations under the direction of external legal counsel when required.
  • Perform host and network-based forensic investigations across Windows, macOS, and Linux environments.
  • Analyze forensic evidence to determine the scope, impact, timeline, and extent of security compromises.
  • Perform basic malware analysis and support static and dynamic analysis activities.
  • Conduct network forensic analysis using network protocols, logs, and tools such as Zeek/Bro and Suricata.
  • Support investigations involving targeted threats, including advanced persistent threats, organized cybercrime, and hacktivist activity.
  • Develop customized tactical and strategic remediation plans to help compromised organizations recover and strengthen their security posture.
  • Support cloud incident response activities across environments such as AWS, Azure, and GCP.
  • Communicate technical findings, risks, recommendations, and investigation outcomes to customer executives, management teams, regulators, and legal stakeholders.
  • Lead and mentor team members while providing clear guidance on investigative tasks, methodologies, and technical approaches.
  • Produce high-quality reports, presentations, recommendations, and other client-facing deliverables.
  • Contribute to cybersecurity thought leadership through technical publications, webinars, presentations, and industry events.
  • Apply AI technologies to improve investigative decision-making, streamline workflows, increase efficiency, and enhance business outcomes.
  • Requirements:

    • Significant professional experience in incident response, cybersecurity consulting, information security, or a closely related field.
    • Demonstrated experience leading or managing incident response investigations, preferably within a consulting or matrixed environment.
    • Strong background in computer forensics, including the use of forensic tools to determine the scope and impact of compromises.
    • Strong knowledge of network protocols, network forensic analysis, and network security technologies.
    • Experience with tools such as Zeek/Bro or Suricata is highly valuable.
    • Knowledge of malware analysis and reverse engineering, including familiarity with static and dynamic analysis techniques.
    • Strong understanding of targeted attacks, remediation strategies, and secure network architecture.
    • Experience with cloud incident response, particularly in AWS, Azure, and/or GCP environments.
    • Proven ability to independently complete complex technical tasks with minimal supervision.
    • Strong project management skills and experience coordinating technical activities across teams.
    • Excellent communication skills, with the ability to explain complex technical findings to both technical and executive audiences.
    • Demonstrated leadership, mentoring, and stakeholder management capabilities.
    • Curiosity about emerging vulnerabilities, breaches, attack techniques, and cybersecurity trends.
    • Proven experience using AI technologies to enhance decision-making, automate or streamline workflows, improve efficiency, and support business outcomes.
    • Strong motivation to continuously develop both technical and interpersonal skills.
    • Bachelor's or master's degree in Computer Science, Computer Engineering, Mathematics, Information Security, Cybersecurity, Information Assurance, Intelligence Studies, or a related discipline. Relevant professional experience or training may be considered in lieu of a degree.
    • Legal authorization to work in Canada.
    • Availability to travel on short notice, up to approximately 30% of the time.
    • Benefits:

      • Base salary range of CAD $100,000–$165,000 per year.
      • Variable/incentive compensation.
      • Equity opportunities.
      • Comprehensive physical and mental wellness programs.
      • Competitive vacation and holiday benefits.
      • Paid parental and adoption leave.
      • Professional development opportunities at all career levels.
      • Employee networks, local community groups, and volunteer opportunities.
      • Inclusive and collaborative work environment.
      • Support for veterans and professionals with disabilities.
      • Remote work opportunity.
      • Equal-pay commitment and compensation based on relevant experience, skills, certifications, and location.
How Jobgether works:
We use an AI-powered matching process to ensure your application is reviewed quickly, objectively, and fairly against the role's core requirements. Our system identifies the top-fitting candidates, and this shortlist is then shared directly with the hiring company. The final decision and next steps (interviews, assessments) are managed by their internal team.
We appreciate your interest and wish you the best!
Why Apply Through Jobgether?
Data Privacy Notice: By submitting your application, you acknowledge that Jobgether will process your personal data to evaluate your candidacy and share relevant information with the hiring employer. This processing is based on legitimate interest and pre-contractual measures under applicable data protection laws (including GDPR). You may exercise your rights (access, rectification, erasure, objection) at any time.
#LI-CL1

What this application asks

lever

Resume/CV, Full name, Email, Phone, Current location, Current company

See also

Tailor your CV for this role?

We couldn't check your fit for this role — add a CV to your profile to see it next time.

A new version of freehire is available