Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Senior Incident Response Consultant

$100.2k - $164.1k

Zurich Insurance Group

This role joins SpearTip, the cybersecurity consulting segment within Zurich Resilience Solutions. Blending cutting-edge technologies, unique skill sets, and proven cyber counterintelligence strategies, SpearTip partners with our clients to protect shareholder value, shield corporate reputations, and enhance long-term profits. We are driven to protect our clients from the ever-changing threat actors and become the gold standard in detecting zero-day vulnerabilities. In this role you make work virtual within the U.S. and extend up to 20% travel.

As a Senior Incident Response Consultant, you will deliver expert incident response and digital forensics services to external clients experiencing cyber security incidents. Leads complex investigations, provides strategic guidance during security breaches, and drives incident containment and recovery efforts. Maintains 75% billable utilization while delivering exceptional client service and building long-term client relationships. The job's core deliverables rely on delivering expert consulting services to external clients during high-stress security incidents. Requires building trust with C-level executives, IT leaders, legal counsel, and insurance partners while managing complex multi-stakeholder relationships during crisis situations.

Key Accountabilities:

  • Lead incident response engagements for external clients, conducting digital forensics investigations, malware analysis, and threat actor attribution to identify scope, impact, and root cause of security incidents.
  • Provide 24/7 on-call emergency response services, rapidly deploying to client sites or remotely connecting to contain active threats, preserve evidence, and minimize business disruption.
  • Conduct comprehensive forensic examinations of compromised systems, networks, and cloud environments using industry-standard tools and methodologies to support client remediation and potential legal proceedings.
  • Deliver executive-level briefings and written reports to clients, translating complex technical findings into business impact assessments and actionable recommendations.
  • Coordinate with client stakeholders including IT teams, legal counsel, insurance carriers, law enforcement, and executive leadership to manage incident response activities and communication strategies.
  • Provide expert guidance on ransomware negotiations, business email compromise investigations, insider threat cases, and advanced persistent threat incidents.
  • Develop and deliver incident response retainer services, conducting proactive readiness assessments, tabletop exercises, and security program evaluations for client organizations.
  • Mentor junior consultants and analysts, providing technical guidance and quality assurance on client deliverables.
  • Maintain detailed case documentation, time tracking, and engagement status reporting to ensure accurate billing and project management.
  • Partner with insurance brokers, managed service providers, and law firms to provide incident response services as part of cyber insurance claims and breach response protocols.
  • Stay current on emerging threats, attack techniques, and forensic methodologies through continuous research and professional development.
  • Contribute to thought leadership initiatives including blog posts, conference presentations, and client education materials.
  • Business Travel, as required (may be extensive during active incidents) as well as extended hours during Active Incidents/24x7 On-call Rotation, flexible scheduling to accommodate client emergencies and time-sensitive investigations, as required.
Additional Business Accountabilities:
  • Develop scopes of work and cost estimates for incident response engagements, ensuring projects are appropriately resourced and profitably delivered.
  • Identify opportunities for expanded client engagements based on investigation findings, security gaps, and client needs.
  • Support business development activities including client presentations, capability demonstrations, and proposal development for new and existing clients.
  • Ensure all client deliverables meet quality standards and are delivered within agreed timelines and budgets.
Basic Qualifications:
  • Bachelors degree and 5 or more years experience in the Information Technology area
    OR
  • Zurich Cybersecurity Technician Apprentice, including Cyber Security Certification and 6 or more years experience in the Information Technology area
    OR
  • High School Diploma or Equivalent and 7 or more years experience in the Information Technology area
    AND
  • MS Office experience
    AND
  • Knowledge of Cyber Security Operations
Preferred Functional/Technical Skills Qualifications:
  • Digital Forensics & Incident Response - Proficiency Level Advanced
  • Threat Intelligence & Malware Analysis - Proficiency Level Intermediate
  • Client Communication & Stakeholder Management - Proficiency Level Advanced
  • Windows/Linux System Forensics - Proficiency Level Advanced
  • Network Forensics & Log Analysis - Proficiency Level Intermediate
  • Cloud Security (Azure/AWS/M365) - Proficiency Level Intermediate
  • Forensic Tool Proficiency (EnCase, FTK, X-Ways, Volatility, etc.) - Proficiency Level Advanced
  • Ransomware & BEC Investigations - Proficiency Level Advanced
  • Report Writing & Executive Communication - Proficiency Level Advanced
  • Project Management - Proficiency Level Intermediate

Your pay at Zurich is based on your role, location, skills, and experience. We follow local laws to ensure fair compensation. You may also be eligible for bonuses and merit increases. If your expectations are above the listed range, we still encourage you to apply-your unique background matters to us. The pay range shown is a national average and may vary by location. The proposed Salary range for this position is $100,200.00 - $164,100.00, with short-term incentive bonus eligibility set at 15%.


We offer competitive pay and comprehensive benefits for employees and their families. [Learn more about Total Rewards here.]

Why Zurich?

At Zurich, we value your ideas and experience. We offer growth, inclusion, and a supportive environment-so you can help shape the future of insurance. Zurich North America is a leader in risk management, with over 150 years of expertise and coverage across 25+ industries, including 90% of the Fortune 500®.

Join us for a brighter future-for yourself and our customers.

Zurich in North America does not discriminate based on race, ethnicity, color, religion, national origin, sex, gender expression, gender identity, genetic information, age, disability, protected veteran status, marital status, sexual orientation, pregnancy or other characteristics protected by applicable law. Equal Opportunity Employer disability/vets.

Zurich complies with 18 U.S. Code § 1033.

Please note: Zurich does not accept unsolicited CVs from agencies. Preferred vendors should use our Recruiting Agency Portal.

Location(s): AM - Missouri Virtual Office, AM - Remote Work (US)
Remote Working: Hybrid
Schedule: Full Time
Employment Sponsorship Offered: No


Linkedin Recruiter Tag: #LI-AW1 #LI-ASSOCIATE #LI-REMOTE
Vacancy posted 2 days ago
Similar jobs that could be interesting for youBased on the Senior Incident Response Consultant in United States vacancy
  •  ...A cybersecurity consulting firm in the United States is looking for an Incident Response Consultant to join their expanding IR team. In this role, you will handle threat investigations, support clients during critical incidents, and shape the company's digital forensics... 
    Senior

    MOXFIVE

    New York, NY
    2 days ago
  • CrowdStrike Holdings, Inc. is seeking motivated technical consultants for incident response roles in their Services team. The position involves leading investigations, developing methods for threat hunting, and conducting forensic analyses on various platforms. Ideal candidates... 
    Senior
    Remote work

    CrowdStrike Holdings, Inc.

    California, MO
    5 days ago
  •  ...GuidePoint Security is looking for a Senior DFIR Consultant to join their remote team across the U.S. The role involves participating as a technical resource in incident response investigations, authoring detailed engagement deliverables, and utilizing automation to enhance... 
    Senior
    Remote work

    GuidePoint Security

    New York, NY
    2 days ago
  •  ...breach remediation and cyber-attack first response, we consistently deliver results that...  ...~ Engage on behalf of CYPFER in incident response tasks, interacting with various...  ...~ Exhibit strong customer service and consulting skills. ~ Adhere to client and... 
    Senior
    Remote work
    Weekend work

    Cypfer

    Plano, TX
    2 days ago
  • $115k - $160k

     ...Principal Consultant CrowdStrike is looking for highly motivated, self-driven, technical consultants dedicated to making a difference...  ...through a wide variety of engagements including front page incident response investigations for organizations you'll find on the annual... 
    Senior
    Work experience placement
    Work at office
    Local area
    Remote work
    Shift work
    Weekend work

    CrowdStrike

    United States
    6 hours ago
  • A leading consulting firm is seeking a Principal Digital Forensics Incident Response Consultant. This full-time role in Orlando, FL, requires strong incident response and forensics expertise, with a focus on client engagements. Ideal candidates will possess extensive information... 
    Full time
    Remote work
    Flexible hours

    Kivu Consulting Inc

    Orlando, FL
    7 days ago
  •  ...Principal Consultant, Digital Forensic and Incident Response (DFIR) (Remote) Remote About Surefire Cyber Surefire Cyber is redefining the incident response...  ...development for a Forensic team consisting of 3‑4 Consultants/Senior Consultants, by investing in their professional... 
    Full time
    Local area
    Remote work
    Flexible hours
    Weekend work

    Surefire Cyber, LLC.

    New York, NY
    1 day ago
  • $135k - $200k

     ...Principal Consultant As a global leader in cybersecurity, CrowdStrike protects the people, processes and technologies that drive...  ...through a wide variety of engagements including front page incident response investigations for organizations you'll find on the annual Fortune... 
    Work experience placement
    Work at office
    Local area
    Remote work

    CrowdStrike

    United States
    8 hours ago
  • $90k - $120k

     ...About Surefire Cyber Surefire Cyber is redefining the incident response model by delivering a swifter, stronger response to cyber...  ...efficiency, predictability, and transparency Job Title: Senior Consultant, Digital Forensics and Incident Response (DFIR)... 
    Senior
    Remote job
    Full time
    Local area
    Flexible hours
    Weekend work

    Surefire Cyber Inc.

    Remote
    more than 2 months ago
  •  ...Incident Response Consultant Incident Response Consultants support clients who face increasingly sophisticated security threats on a daily basis—not only by responding to incidents as they occur, but also by helping them prepare in advance for effective incident handling... 
    Work experience placement
    Local area
    Remote work

    Sophos

    United States
    8 hours ago
  • An established industry player in cybersecurity is seeking a skilled professional to join their dynamic incident response team. This role focuses on engaging with clients post-cyber-attack, utilizing advanced forensic methodologies to analyze and remediate threats. The... 
    Remote work

    Ransomware Recovery

    Houston, TX
    4 days ago
  • $103.7k - $125k

     ...Carolina, and will be filled locally. Job Summary: The Incident Handler supports the monitoring, investigation, and triage of...  ...Defense Center teams to communicate findings, support incident response processes, and contribute to ongoing security operations and... 
    Full time
    Work experience placement
    Work from home
    Flexible hours
    Shift work

    Kaiser Permanente

    Greensboro, NC
    3 days ago
  •  ...Job Title: Senior Communications Specialist, Incident Response Work Place Flexibility: Onsite Legal Entity: Entergy Services, LLC Job Summary/Purpose Assist in the development, management and execution of internal and external communications strategies for... 
    Senior
    Work at office
    Local area
    Relocation

    Entergy Corporation

    New Orleans, LA
    5 days ago
  • $40k - $140k

     ...primarily in a collaborative, family-friendly environment. The ideal candidate should have experience in SOC monitoring and incident response. The position provides valuable hands-on mentoring to junior analysts, fostering both individual growth and team success.... 
    Senior

    Get It Recruit - Real Estate

    Elgin, SC
    21 hours ago
  •  ...Security Analyst to enhance its security measures and proactively manage threats. Responsibilities include monitoring security systems, developing response plans, and supporting incident management processes. The ideal candidate has expertise in security operations, a... 
    Senior

    First American

    Santa Ana, CA
    4 days ago
  •  ...GuidePoint Security, LLC is seeking a Principal Consultant to provide technical leadership on DFIR engagements. Responsibilities include oversight of complex investigations,...  ...8 years of DFIR experience and expertise in incident response and forensic investigations. Join a... 
    Senior

    GuidePoint Security

    New York, NY
    5 days ago
  • $125k - $160k

     ...A leading home services provider is seeking a Senior Incident Response Engineer to enhance their security practice. The ideal candidate will have 8+ years in security, including 3 years in incident response, and must possess hands-on experience with cloud security and... 
    Senior
    Remote work

    Frontdoor

    New York, NY
    4 days ago
  •  ...A company is looking for a Senior Manager to lead its Incident Response team on the night shift. Key Responsibilities Lead and develop the night shift Incident Response team, promoting a culture of accountability and collaboration Serve as the primary escalation point... 
    Senior
    Remote work
    Night shift

    Virtual Vocations Inc

    United States
    3 days ago
  •  ...Insight Global, a leading Fortune 100 transportation company in Memphis, TN, is looking for a Senior Cyber Security Incident Response Analyst. The successful candidate will manage Tier 3 and Tier 4 cyber security incidents, conduct thorough investigations, and develop... 
    Senior
    Remote work

    Insight Global

    Memphis, TN
    5 days ago
  •  ...Ascend Learning is looking for a Senior Security Engineer to lead SOC operations and provide technical security leadership. The...  ...environment. Candidates should have a strong cybersecurity background, incident response certification, and experience in managing SOC operations. We... 
    Senior
    Work from home
    Flexible hours

    Ascend Learning

    Leawood, KS
    4 days ago
  • $100 - $115 per hour

     ...A workforce solutions firm is looking for a Principal Incident Response & Malware Analysis Engineer. This hands-on role requires expertise in incident response, malware analysis, and digital forensics. You will lead complex investigations and mentor junior staff. Candidates... 
    Senior
    Full time
    Remote work

    Synergis

    New York, NY
    2 days ago
  •  ...A leading data and AI company is looking for a Sr. Staff Security Engineer, Incident Response to join its team. This critical role requires extensive experience in incident response as well as cloud security expertise. The individual will lead investigations and establish... 
    Senior
    Remote work

    Databricks

    San Francisco, CA
    4 days ago
  • $100k - $160k

     ...A regional insurance provider is looking for a Level 3 Incident Response Analyst to lead incident response activities. The ideal candidate will have over 7 years of Cybersecurity experience, with significant expertise in incident handling and security operations. This... 
    Senior
    Remote work

    Allstate Northern Ireland

    Indiana, PA
    4 days ago
  •  ...A global information analytics company is seeking a Senior Incident Response Engineer in New Jersey. This role involves leading security incident response efforts, conducting forensic investigations, and developing comprehensive incident reports. The ideal candidate will... 
    Senior
    Remote work
    Work from home

    Elsevier

    New York, NY
    5 days ago
  •  ...Akumin is looking for a Security Engineer III to secure its IT infrastructure and manage incident response. The role involves designing and implementing advanced security solutions, conducting vulnerability assessments, and ensuring compliance with regulatory standards... 
    Senior

    Akumin

    New York, NY
    2 days ago
  •  ...A leading cybersecurity firm is seeking a Senior Consultant to lead incident response engagements. You will manage complex security challenges and guide clients through forensic investigations. The ideal candidate will have a degree in a relevant field and possess strong... 
    Senior
    Remote work
    Shift work
    Weekend work

    Palo Alto Networks

    Santa Clara, CA
    4 days ago
  •  ...A technology company in the United States is seeking a Senior Backend Software Engineer to join their engineering team. This role...  ...involves designing backend services and APIs for an AI-powered incident response platform. The ideal candidate has over 5 years of experience,... 
    Senior

    MOXFIVE

    New York, NY
    2 days ago
  •  ...Senior Incident Response And Threat Management Analyst Experience 12+ years Charlotte NC (5 days) Lead the full lifecycle of cybersecurity incidents from detection to postincident review Conduct advanced threat analysis malware reverse engineering and forensic... 
    Senior
    Night shift
    Weekend work

    Software Technology Inc

    Charlotte, NC
    1 day ago
  •  ...JOB PURPOSE: The primary purpose of the Compliance Rapid Response Senior Nurse Consultant is to support long-term care centers in achieving and sustaining regulatory compliance by conducting mock surveys, identifying areas of risk, and guiding teams through proactive... 
    Senior

    PruittHealth

    Raleigh, NC
    1 day ago
  •  ...Job Description A Fortune 100 transportation company headquartered in Memphis, TN is looking for a Senior Cyber Security Incident Response Analyst. The Cyber Incident Response Analyst will report to the Manger of Incident Response and will be responsible for handling Teir... 
    Senior
    Remote work

    Insight Global

    Memphis, TN
    2 days ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Senior Incident Response Consultant. Be the first to apply!