Senior Incident Response Consultant
$100.2k - $164.1kZurich Insurance Group
This role joins SpearTip, the cybersecurity consulting segment within Zurich Resilience Solutions. Blending cutting-edge technologies, unique skill sets, and proven cyber counterintelligence strategies, SpearTip partners with our clients to protect shareholder value, shield corporate reputations, and enhance long-term profits. We are driven to protect our clients from the ever-changing threat actors and become the gold standard in detecting zero-day vulnerabilities. In this role you make work virtual within the U.S. and extend up to 20% travel.
As a Senior Incident Response Consultant, you will deliver expert incident response and digital forensics services to external clients experiencing cyber security incidents. Leads complex investigations, provides strategic guidance during security breaches, and drives incident containment and recovery efforts. Maintains 75% billable utilization while delivering exceptional client service and building long-term client relationships. The job's core deliverables rely on delivering expert consulting services to external clients during high-stress security incidents. Requires building trust with C-level executives, IT leaders, legal counsel, and insurance partners while managing complex multi-stakeholder relationships during crisis situations. Key Accountabilities:- Lead incident response engagements for external clients, conducting digital forensics investigations, malware analysis, and threat actor attribution to identify scope, impact, and root cause of security incidents.
- Provide 24/7 on-call emergency response services, rapidly deploying to client sites or remotely connecting to contain active threats, preserve evidence, and minimize business disruption.
- Conduct comprehensive forensic examinations of compromised systems, networks, and cloud environments using industry-standard tools and methodologies to support client remediation and potential legal proceedings.
- Deliver executive-level briefings and written reports to clients, translating complex technical findings into business impact assessments and actionable recommendations.
- Coordinate with client stakeholders including IT teams, legal counsel, insurance carriers, law enforcement, and executive leadership to manage incident response activities and communication strategies.
- Provide expert guidance on ransomware negotiations, business email compromise investigations, insider threat cases, and advanced persistent threat incidents.
- Develop and deliver incident response retainer services, conducting proactive readiness assessments, tabletop exercises, and security program evaluations for client organizations.
- Mentor junior consultants and analysts, providing technical guidance and quality assurance on client deliverables.
- Maintain detailed case documentation, time tracking, and engagement status reporting to ensure accurate billing and project management.
- Partner with insurance brokers, managed service providers, and law firms to provide incident response services as part of cyber insurance claims and breach response protocols.
- Stay current on emerging threats, attack techniques, and forensic methodologies through continuous research and professional development.
- Contribute to thought leadership initiatives including blog posts, conference presentations, and client education materials.
- Business Travel, as required (may be extensive during active incidents) as well as extended hours during Active Incidents/24x7 On-call Rotation, flexible scheduling to accommodate client emergencies and time-sensitive investigations, as required.
- Develop scopes of work and cost estimates for incident response engagements, ensuring projects are appropriately resourced and profitably delivered.
- Identify opportunities for expanded client engagements based on investigation findings, security gaps, and client needs.
- Support business development activities including client presentations, capability demonstrations, and proposal development for new and existing clients.
- Ensure all client deliverables meet quality standards and are delivered within agreed timelines and budgets.
- Bachelors degree and 5 or more years experience in the Information Technology area
OR - Zurich Cybersecurity Technician Apprentice, including Cyber Security Certification and 6 or more years experience in the Information Technology area
OR - High School Diploma or Equivalent and 7 or more years experience in the Information Technology area
AND - MS Office experience
AND - Knowledge of Cyber Security Operations
- Digital Forensics & Incident Response - Proficiency Level Advanced
- Threat Intelligence & Malware Analysis - Proficiency Level Intermediate
- Client Communication & Stakeholder Management - Proficiency Level Advanced
- Windows/Linux System Forensics - Proficiency Level Advanced
- Network Forensics & Log Analysis - Proficiency Level Intermediate
- Cloud Security (Azure/AWS/M365) - Proficiency Level Intermediate
- Forensic Tool Proficiency (EnCase, FTK, X-Ways, Volatility, etc.) - Proficiency Level Advanced
- Ransomware & BEC Investigations - Proficiency Level Advanced
- Report Writing & Executive Communication - Proficiency Level Advanced
- Project Management - Proficiency Level Intermediate
We offer competitive pay and comprehensive benefits for employees and their families. [Learn more about Total Rewards here.] Why Zurich? At Zurich, we value your ideas and experience. We offer growth, inclusion, and a supportive environment-so you can help shape the future of insurance. Zurich North America is a leader in risk management, with over 150 years of expertise and coverage across 25+ industries, including 90% of the Fortune 500®. Join us for a brighter future-for yourself and our customers. Zurich in North America does not discriminate based on race, ethnicity, color, religion, national origin, sex, gender expression, gender identity, genetic information, age, disability, protected veteran status, marital status, sexual orientation, pregnancy or other characteristics protected by applicable law. Equal Opportunity Employer disability/vets. Zurich complies with 18 U.S. Code § 1033. Please note: Zurich does not accept unsolicited CVs from agencies. Preferred vendors should use our Recruiting Agency Portal. Location(s): AM - Missouri Virtual Office, AM - Remote Work (US)
Remote Working: Hybrid
Schedule: Full Time
Employment Sponsorship Offered: No
Linkedin Recruiter Tag: #LI-AW1 #LI-ASSOCIATE #LI-REMOTE
- ...A cybersecurity consulting firm in the United States is looking for an Incident Response Consultant to join their expanding IR team. In this role, you will handle threat investigations, support clients during critical incidents, and shape the company's digital forensics...Senior
- CrowdStrike Holdings, Inc. is seeking motivated technical consultants for incident response roles in their Services team. The position involves leading investigations, developing methods for threat hunting, and conducting forensic analyses on various platforms. Ideal candidates...SeniorRemote work
- ...GuidePoint Security is looking for a Senior DFIR Consultant to join their remote team across the U.S. The role involves participating as a technical resource in incident response investigations, authoring detailed engagement deliverables, and utilizing automation to enhance...SeniorRemote work
- ...breach remediation and cyber-attack first response, we consistently deliver results that... ...~ Engage on behalf of CYPFER in incident response tasks, interacting with various... ...~ Exhibit strong customer service and consulting skills. ~ Adhere to client and...SeniorRemote workWeekend work
$115k - $160k
...Principal Consultant CrowdStrike is looking for highly motivated, self-driven, technical consultants dedicated to making a difference... ...through a wide variety of engagements including front page incident response investigations for organizations you'll find on the annual...SeniorWork experience placementWork at officeLocal areaRemote workShift workWeekend work- A leading consulting firm is seeking a Principal Digital Forensics Incident Response Consultant. This full-time role in Orlando, FL, requires strong incident response and forensics expertise, with a focus on client engagements. Ideal candidates will possess extensive information...Full timeRemote workFlexible hours
- ...Principal Consultant, Digital Forensic and Incident Response (DFIR) (Remote) Remote About Surefire Cyber Surefire Cyber is redefining the incident response... ...development for a Forensic team consisting of 3‑4 Consultants/Senior Consultants, by investing in their professional...Full timeLocal areaRemote workFlexible hoursWeekend work
$135k - $200k
...Principal Consultant As a global leader in cybersecurity, CrowdStrike protects the people, processes and technologies that drive... ...through a wide variety of engagements including front page incident response investigations for organizations you'll find on the annual Fortune...Work experience placementWork at officeLocal areaRemote work$90k - $120k
...About Surefire Cyber Surefire Cyber is redefining the incident response model by delivering a swifter, stronger response to cyber... ...efficiency, predictability, and transparency Job Title: Senior Consultant, Digital Forensics and Incident Response (DFIR)...SeniorRemote jobFull timeLocal areaFlexible hoursWeekend work- ...Incident Response Consultant Incident Response Consultants support clients who face increasingly sophisticated security threats on a daily basis—not only by responding to incidents as they occur, but also by helping them prepare in advance for effective incident handling...Work experience placementLocal areaRemote work
- An established industry player in cybersecurity is seeking a skilled professional to join their dynamic incident response team. This role focuses on engaging with clients post-cyber-attack, utilizing advanced forensic methodologies to analyze and remediate threats. The...Remote work
$103.7k - $125k
...Carolina, and will be filled locally. Job Summary: The Incident Handler supports the monitoring, investigation, and triage of... ...Defense Center teams to communicate findings, support incident response processes, and contribute to ongoing security operations and...Full timeWork experience placementWork from homeFlexible hoursShift work- ...Job Title: Senior Communications Specialist, Incident Response Work Place Flexibility: Onsite Legal Entity: Entergy Services, LLC Job Summary/Purpose Assist in the development, management and execution of internal and external communications strategies for...SeniorWork at officeLocal areaRelocation
$40k - $140k
...primarily in a collaborative, family-friendly environment. The ideal candidate should have experience in SOC monitoring and incident response. The position provides valuable hands-on mentoring to junior analysts, fostering both individual growth and team success....Senior- ...Security Analyst to enhance its security measures and proactively manage threats. Responsibilities include monitoring security systems, developing response plans, and supporting incident management processes. The ideal candidate has expertise in security operations, a...Senior
- ...GuidePoint Security, LLC is seeking a Principal Consultant to provide technical leadership on DFIR engagements. Responsibilities include oversight of complex investigations,... ...8 years of DFIR experience and expertise in incident response and forensic investigations. Join a...Senior
$125k - $160k
...A leading home services provider is seeking a Senior Incident Response Engineer to enhance their security practice. The ideal candidate will have 8+ years in security, including 3 years in incident response, and must possess hands-on experience with cloud security and...SeniorRemote work- ...A company is looking for a Senior Manager to lead its Incident Response team on the night shift. Key Responsibilities Lead and develop the night shift Incident Response team, promoting a culture of accountability and collaboration Serve as the primary escalation point...SeniorRemote workNight shift
- ...Insight Global, a leading Fortune 100 transportation company in Memphis, TN, is looking for a Senior Cyber Security Incident Response Analyst. The successful candidate will manage Tier 3 and Tier 4 cyber security incidents, conduct thorough investigations, and develop...SeniorRemote work
- ...Ascend Learning is looking for a Senior Security Engineer to lead SOC operations and provide technical security leadership. The... ...environment. Candidates should have a strong cybersecurity background, incident response certification, and experience in managing SOC operations. We...SeniorWork from homeFlexible hours
$100 - $115 per hour
...A workforce solutions firm is looking for a Principal Incident Response & Malware Analysis Engineer. This hands-on role requires expertise in incident response, malware analysis, and digital forensics. You will lead complex investigations and mentor junior staff. Candidates...SeniorFull timeRemote work- ...A leading data and AI company is looking for a Sr. Staff Security Engineer, Incident Response to join its team. This critical role requires extensive experience in incident response as well as cloud security expertise. The individual will lead investigations and establish...SeniorRemote work
$100k - $160k
...A regional insurance provider is looking for a Level 3 Incident Response Analyst to lead incident response activities. The ideal candidate will have over 7 years of Cybersecurity experience, with significant expertise in incident handling and security operations. This...SeniorRemote work- ...A global information analytics company is seeking a Senior Incident Response Engineer in New Jersey. This role involves leading security incident response efforts, conducting forensic investigations, and developing comprehensive incident reports. The ideal candidate will...SeniorRemote workWork from home
- ...Akumin is looking for a Security Engineer III to secure its IT infrastructure and manage incident response. The role involves designing and implementing advanced security solutions, conducting vulnerability assessments, and ensuring compliance with regulatory standards...Senior
- ...A leading cybersecurity firm is seeking a Senior Consultant to lead incident response engagements. You will manage complex security challenges and guide clients through forensic investigations. The ideal candidate will have a degree in a relevant field and possess strong...SeniorRemote workShift workWeekend work
- ...A technology company in the United States is seeking a Senior Backend Software Engineer to join their engineering team. This role... ...involves designing backend services and APIs for an AI-powered incident response platform. The ideal candidate has over 5 years of experience,...Senior
- ...Senior Incident Response And Threat Management Analyst Experience 12+ years Charlotte NC (5 days) Lead the full lifecycle of cybersecurity incidents from detection to postincident review Conduct advanced threat analysis malware reverse engineering and forensic...SeniorNight shiftWeekend work
- ...JOB PURPOSE: The primary purpose of the Compliance Rapid Response Senior Nurse Consultant is to support long-term care centers in achieving and sustaining regulatory compliance by conducting mock surveys, identifying areas of risk, and guiding teams through proactive...Senior
- ...Job Description A Fortune 100 transportation company headquartered in Memphis, TN is looking for a Senior Cyber Security Incident Response Analyst. The Cyber Incident Response Analyst will report to the Manger of Incident Response and will be responsible for handling Teir...SeniorRemote work
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Senior Incident Response Consultant. Be the first to apply!
- care consultant United States
- iam consultant United States
- work from home nurse consultant United States
- aws consultant United States
- consultant pharmacist United States
- human performance consultant United States
- loss control consultant United States
- network relations consultant United States
- public sector consultant United States
- workflow consultant United States

