Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Cyber Incident Responder

$75k - $87.5k

Canopius Group

The Role Canopius is a market ‑ leading cyber insurer with an in ‑ house Cyber Incident Management Team (CIMT) that delivers immediate, expert support to our policyholders during their most critical moments. As an Incident Manager, you’ll be the first point of contact when a client faces a cyber event—whether business email compromise, ransomware, social engineering, data theft, or other attacks. You will triage and lead the response, mobilize our expert panel (forensics, legal, PR, and specialist advisors), and project ‑ manage recovery from containment through restoration, providing calm, clear communication throughout. Job Description Operating in a global, follow ‑ the ‑ sun model across Sydney, London, and Chicago, you’ll ensure true 24/7 coverage for new notifications, collaborate closely with our Claims team to support timely coverage assessment, and help clients navigate local legal and regulatory obligations. Sitting at the coal face of live incidents, you’ll also capture structured insights and trends that inform our underwriting, analytics, and ongoing service evolution, all while meeting and exceeding internal SLAs. Responsibilities Own the incident from notification to closure Be the first point of contact for policyholder incident notifications. Rapidly triage, assess severity, and set the response plan and cadence. Orchestrate specialist vendors (IR firms, forensics, legal, PR, ransom advisors), ensuring right‑sized support at the right time. Maintain clear timelines, decisions, and next steps Deliver best in class customer service‑in‑class customer service Provide calm, empathetic guidance under pressure; translate technical issues into clear business impact and options. Set and manage expectations on milestones (containment, restoration, notifications) and costs. Conduct welcome/onboarding calls; explain how to notify, what to expect, and how the IR panel operates. Capture and act on policyholder feedback to continuously improve service. Hit internal SLAs (acknowledgement, triage, vendor mobilization, comms cadence). Operate within a global, 24/7 team model Participate in rota/on call coverage to ensure true follow the sun response. ‑call coverage to ensure true follow‑the‑sun response. Perform structured handovers across regions; maintain accurate case notes and status. Evolve the service offering Contribute to playbook/runbook enhancements and decision trees (e.g., ransomware, BEC, DDoS, data exfil). Recommend panel/vendor improvements and measure vendor SLAs and outcomes. Support content development (guides, FAQs, tabletop scenarios). Collaborate with Claims, Underwriting and Insights & Analytics Partner with the Claims team to ensure smooth coverage confirmation and claim handling. Surface material facts, costs, and causation signals; ensure incident files are complete and timely. Escalate complex matters promptly and appropriately. Sit “at the coal face” of live incidents and distil timely, high-quality insights (threat vectors, controls efficacy, vendor performance, and industry signals). ‑quality insights (threat vectors, controls efficacy, vendor performance, Provide structured post incident summaries and trend themes for underwriters and leadership. ‑incident summaries and trend themes for underwriters and leadership. Ensure precise, consistent capture of incident metadata and outcomes (e.g., root cause, initial access, controls in place, dwell time, MTTA/MTTR, costs). Champion data quality standards; work with Analytics to refine taxonomies and dashboards. Collaborate in delivery of incident preparedness sessions, tabletops, and executive simulations for insureds. ‑deliver incident preparedness sessions, tabletops, and executive simulations for insureds. Feed real world lessons learned into control uplift recommendations. ‑world lessons learned into control uplift recommendations. Skills And Experience A minimum of two years working in the cybersecurity field, ideally with hands ‑ on involvement in incident handling or response activities. Strong foundational knowledge of cyber ‑ attack methods, threat behaviors, and the end ‑ to ‑ end lifecycle of incident response. Demonstrate ability to solve complex problems and make sound judgements quickly, especially when operating in high pressure or fastmoving situations. ‑pressure or fast‑moving situations. Excellent organisational habits with a focus on accuracy and thoroughness in all tasks. Clear and confident communication skills—both written and verbal— with the capability to explain technical issues in an accessible way for non-technical audiences. ‑technical audiences. Basic data skills to partner with Analytics (e.g., Excel/Power BI; familiarity with SQL/Python advantageous). High empathy, composure under pressure, and a service mindset. Salary Range: $75,000 - 87,500 #J-18808-Ljbffr Canopius Group

Vacancy posted 3 days ago
Similar jobs that could be interesting for youBased on the Cyber Incident Responder in Chicago, IL vacancy
  • EY in Chicago seeks a Junior Incident Coordinator for the Cyber & Investigative Services team to coordinate security incident response for cyber events. You’ll apply incident response plans, work with cross-functional teams, and maintain playbooks to ensure rapid, controlled... 
    Cyber

    EY

    Chicago, IL
    5 days ago
  • Request Technology, LLC is seeking a Cyber Security Threat Analyst in Chicago to monitor, triage, and respond to security incidents. You will utilize threat intelligence to stay ahead of threats and collaborate with IT teams to improve secure configurations. The role involves... 
    Cyber

    Request Technology, LLC

    Chicago, IL
    2 days ago
  • $175k - $250k

     ...them and their counsel in independently responding to allegations of fraud, waste, abuse, misconduct...  ...an experienced leader in the forensic & cyber investigations space, your...  ...cyber breach detection, threat analysis, incident response and malware analysis;Performing... 
    Cyber
    Work at office
    Local area
    Work from home
    3 days per week

    CRA International

    Chicago, IL
    2 days ago
  • $130k - $152.5k

     ...them and their counsel in independently responding to allegations of fraud, waste, abuse, misconduct...  ...breach detection, threat analysis, incident response and malware analysis;Performing...  ...guidance to clients on the adequacy of cyber security controls in accordance with... 
    Cyber
    Work at office
    Local area
    Work from home
    3 days per week

    CRA International

    Chicago, IL
    2 days ago
  • $138k - $200k

     ...customer teams to investigate and contain incidents.Recognize and codify attacker Tools,...  ...help organizations effectively detect and respond to threats and reduce the overall impact...  ...Mandiant is a recognized leader in dynamic cyber defense, threat intelligence and incident... 
    Cyber

    Google

    Chicago, IL
    5 days ago
  • The Options Clearing Corporation (OCC) is seeking an Associate Principal, Cyber Defense to lead in-depth investigations of security incidents escalated from Tier 1. The role emphasizes advanced threat intelligence usage, incident response, and collaboration with cross-functional... 
    Cyber

    National Black MBA Association

    Chicago, IL
    3 days ago
  • Charles River Associates (CRA) in Chicago seeks a Senior Associate for its Forensic Services practice to lead end-to-end incident response and recovery engagements, directing teams and managing client and counsel relationships. You will own matters from intake through... 
    Cyber

    Charles River Associates

    Chicago, IL
    2 days ago
  • The Options Clearing Corporation (OCC) in Chicago seeks an Associate Principal, Cyber Defense to lead in-depth analysis and response to escalated security incidents. You will investigate complex events, implement containment, and document findings to strengthen the organization... 
    Cyber

    The Options Clearing Corporation

    Chicago, IL
    3 days ago
  • The Options Clearing Corporation is seeking an Associate Principal, Cyber Defense to lead security incident analysis and response. This role involves investigating complex security threats and implementing preventive measures. Candidates should have over four years of information... 
    Cyber
    Shift work

    The Options Clearing Corporation

    Chicago, IL
    5 days ago
  • $160k - $190k

     ...be valued and empowered, then we invite you to apply to our Cyber Incident Response Associate Attorney position in our Chicago Office....  ...legal notices of a data breach to individuals and regulators Responding to regulatory investigations arising out of a data breach Oversight... 
    Cyber
    Work at office
    Flexible hours

    Wilson Elser - Attorneys

    Chicago, IL
    4 days ago
  • $160k - $190k

     ...be valued and empowered, then we invite you to apply to our Cyber Incident Response Associate Attorneyposition in our Chicago Office. This...  ...notices of a data breach to individuals and regulators Responding to regulatory investigations arising out of a data breach Oversight... 
    Cyber
    Full time
    Work at office
    Flexible hours

    Wilson Elser Moskowitz Edelman & Dicker LLP

    Chicago, IL
    4 days ago
  • $169.01k - $370.53k

     ...capabilities, then consider a career in Advisory. KPMG is currently seeking a Director, Incident Response to its Advisory Practice. Responsibilities: Lead enterprise cyber incident response engagements, overseeing containment, investigation, recovery,... 
    Cyber
    Full time
    H1b
    Local area

    KPMG

    Chicago, IL
    17 days ago
  • BCG Attorney Search seeks an Incident Response Associate for its Privacy and Cyber practice in Chicago, IL. The ideal candidate brings 4-6 years of experience in incident response, privacy advisory, and compliance to guide clients through complex data security issues. Responsibilities... 
    Cyber

    BCG Attorney Search

    Chicago, IL
    4 days ago
  • $110.8k - $226.4k

     ...new challenges with confidence. The Incident Response Manager serves as a senior...  ...engagements, mentoring and developing incident responders, overseeing engagement delivery, and...  ..., digital forensics, threat hunting, or cyber defense operations. ~ Demonstrated experience... 
    Cyber
    Local area
    Worldwide

    Crowe

    Chicago, IL
    4 days ago
  • $104.8k - $192.2k

     ...your career wherever you want it to go.  Join EY and help to build a better working world. Role Description Role Family Incident Coordination / Operational Response Leadership Primary Focus Incident command, cross-functional coordination, escalation... 
    Cyber
    Summer holiday
    Flexible hours

    Ernst & Young

    Chicago, IL
    a month ago
  • Wilson Elser Moskowitz Edelman & Dicker LLP in Chicago seeks a Cyber Incident Response Associate Attorney with strong data privacy and incident response experience. The role involves handling cybersecurity breach matters, regulatory interactions, and client advisement... 
    Cyber

    Wilson Elser

    Chicago, IL
    3 days ago
  • Wilson Elser, a national law firm, seeks an experienced Cyber Incident Response Associate Attorney in Chicago to handle data breach incidents, privacy-law analyses, and regulatory communications. Qualified candidates hold a JD and Bar in good standing with 3+ years of... 
    Cyber
    Flexible hours

    Wilson Elser

    Chicago, IL
    21 hours ago
  • BCG Attorney Search is seeking a Senior Cyber Incident Response Attorney for a fully remote position, based in Chicago, Illinois. The role offers the opportunity to manage complex cybersecurity‑related cases and lead incident response efforts. Candidates should have 8+... 
    Cyber
    Remote job

    BCG Attorney Search

    Chicago, IL
    5 days ago
  • Job Overview A law firm seeks an Incident Response Associate to join their Privacy and Cyber practice group in Chicago, IL. The ideal candidate will have 4-6 years of experience in incident response, privacy advisory, and compliance. Duties Lead all aspects of the incident... 
    Cyber

    BCG Attorney Search

    Chicago, IL
    4 days ago
  • $130k - $150k

     ...Description In this role, you will manage the Security Incident Response team; for detecting and identifying cyber threats, as well as containment and remediation...  ...a Security Incident Response Team focused on responding to security threats and maintaining HUB’s critical... 
    Cyber
    Immediate start

    HUB International

    Chicago, IL
    2 days ago
  • $160k - $190k

     ...looking for a long-term fit where you can grow in a role, and will be valued and empowered, then we invite you to apply to our Cyber Incident Response Associate Attorneyposition in our Chicago Office.This position offers a flexible, hybrid working arrangement.The PositionKey... 
    Cyber
    Full time
    Work at office
    Flexible hours

    Wilson Elser

    Chicago, IL
    3 days ago
  • $160k - $205k

     ...Development Security Framework Program within Bank of America’s Cyber Security Assurance Offensive Security group. The program...  ...assessors in technical tradecraft and soft skills.Respond to security incidents and provide technical assistance to leadership across the... 
    Cyber
    Full time
    Work at office
    Shift work
    Day shift

    Bank of America

    Chicago, IL
    2 days ago
  • $114.1k - $268.18k

     ...expand your capabilities, then consider a career in Advisory.We are currently seeking a Manager, Incident Response to join our Advisory practice.ResponsibilitiesLead and manage cyber incident response activities, including triage, containment, eradication, and recovery... 
    Cyber
    Work experience placement
    H1b
    Local area

    KPMG

    Chicago, IL
    3 days ago
  •  ...Information Security Officer to lead the bank's information and cyber security within IT. You will define strategy, plan and execute projects, oversee vendors, monitor operations and respond to security incidents, reporting to the CIO. This hybrid role requires 3 days... 
    Cyber
    Remote work

    The Federal Savings Bank

    Chicago, IL
    4 days ago
  • $145k - $210k

    Senior Cyber Security EngineerCooley is seeking a Senior Cyber Security Engineer to join the Security team.Position summary...  ...event monitoring (SIEM) systemsAs a member of the Incident Response team respond to alerts, warnings, incidents, and help desk tickets to ensure... 
    Cyber
    Full time
    Temporary work
    Work at office
    Flexible hours
    Weekend work

    Cooley

    Chicago, IL
    2 days ago
  •  ...tasks for cybersecurity programs such as incident response, application cybersecurity, vulnerability...  ...and entities to measure and evaluate cyber security threat assessments. Provide...  ...aspects. Maintain technical documentation. Respond to security related incidents. Measure... 
    Cyber
    For contractors
    Work experience placement

    Samprasoft

    Chicago, IL
    3 days ago
  • $93.9k - $156.5k

    The Cyber Defense Response Analyst II is a mid-level technical role focused on responding to and remediating cyber incidents at CME Group, a major player in global financial markets. We are looking for someone who finds joy in the inner workings of technology, with the... 
    Cyber
    Full time
    Worldwide
    Day shift
    Afternoon shift

    CME- Group

    Chicago, IL
    2 days ago
  • $100k - $115k

     ...differentiated idea: that Adaptive AI could detect and respond to novel, real-time cyber threats. That approach matters more than ever in the era...  ...security operations, SOC workflows, threat detection, or incident response use cases is desirable.Familiarity with customer... 
    Cyber
    Full time
    Work at office
    Local area
    3 days per week

    Darktrace

    Chicago, IL
    2 days ago
  • $112k - $160k

     ...for leading advanced cybersecurity operations focused on incident response, cyber recovery, and forensic investigation. This role plays a critical...  ...initiatives with minimal direction and have experience responding to sophisticated cyber incidents Investigate, recover... 
    Cyber
    Permanent employment
    Full time
    Local area
    3 days per week

    KellyMitchell Group

    Chicago, IL
    2 days ago
  • $130k - $160k

     ...Engineer to lead advanced cybersecurity initiatives focused on incident response, cyber recovery, forensic investigation, and security hardening....  ...and maintain secure recovery environments, investigate and respond to cybersecurity incidents, identify root causes, and... 
    Cyber
    Contract work
    Immediate start

    ConsultNet

    Chicago, IL
    5 days ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Cyber Incident Responder. Be the first to apply!