Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Incident Response Principal Consultant (Remote)

$140k - $195k

CrowdStrike Holdings, Inc.

As a global leader in cybersecurity, CrowdStrike protects the people, processes and technologies that drive modern organizations. Since 2011, our mission hasn't changed - we're here to stop breaches, and we've redefined modern security with the world's most advanced AI-native platform. Our customers span all industries, and they count on CrowdStrike to keep their businesses running, their communities safe and their lives moving forward. We're also a mission-driven company. We cultivate a culture that gives every CrowdStriker both the flexibility and autonomy to own their careers. We're always looking to add talented CrowdStrikers to the team who have limitless passion, a relentless focus on innovation and a fanatical commitment to our customers, our community and each other. Ready to join a mission that matters? The future of cybersecurity starts with you.

About the Role:

CrowdStrike is looking for highly motivated, self-driven, technical consultants dedicated to making a difference in global security by protecting organizations against the most advanced attackers in the world. Our CrowdStrike Services team offers opportunities to expand your skill set through a wide variety of engagements including front page incident response investigations for organizations you'll find on the annual Fortune 100 list.

We are looking for US based candidates located in either Pacific or Mountain time.

Am I a Principal Consultant Candidate?
  • Do you find yourself interested in and keeping up with the latest vulnerabilities and breaches?
  • Are you self-motivated and looking for an opportunity to rapidly accelerate your skills?
  • Do you crave new and innovative work that actually matters to your customer?
  • Do you have an Incident Response or Information Security background that you're not fully utilizing?
  • Are you capable of leading teams and interacting with customers?
  • Do you love working around like-minded, smart people who you can learn from and mentor on a daily basis?
What You'll Do:
  • Lead incident response engagements
  • Develop and use new methods to hunt for bad actors across large sets of data.
  • Work under the direction of outside counsel to conduct intrusion investigations
  • Perform host and/or network-based forensics across Windows, Mac, and Linux platforms.
  • Perform basic malware analysis.
  • Produce high-quality written and verbal reports, presentations, recommendations, and findings to key stakeholders including customer management, regulators, and legal counsel .
  • Demonstrate industry thought leadership through blog posts, CrowdCasts, and other public speaking events.
What You'll Need:

Successful candidates will have experience in one or more of the following areas:
  • Team leadership experience in a matrixed consulting environment
  • Incident Response: experience conducting or managing incident response investigations for organizations, investigating targeted threats such as the Advanced Persistent Threat, Organized Crime, and Hacktivists.
  • Computer Forensic Analysis: a background using a variety of forensic analysis tools in incident response investigations to determine the extent and scope of compromise.
  • Network Forensic Analysis: strong knowledge of network protocols, network analysis tools like Bro/Zeek or Suricata, and ability to perform analysis of associated network logs.
  • Reverse Engineering: ability to understand the capabilities of static and dynamic malware analysis.
  • Incident Remediation: strong understanding of targeted attacks and able to create customized tactical and strategic remediation plans for compromised organizations.
  • Network Operations and Architecture/Engineering: strong understanding of secure network architecture and strong background in performing network operations.
  • Cloud Incident Response: knowledge in any of the following areas: AWS, Azure, GCP incident response methodologies.
  • Communications: strong ability to communicate executive and/or detailed level findings to clients; ability to effectively communicate tasks, guidance, and methodology with internal teams
Additionally, all candidates must possess the following qualifications:
  • Capable of completing technical tasks without supervision.
  • Desire to grow and expand both technical and soft skills.
  • Strong project management skills.
  • Contributing thought leader within the incident response industry.
  • Ability to foster a positive work environment and attitude.
  • Ability to travel on short notice, up to 30% of the time.
Education:

BA or BS / MA or MS degree in Computer Science, Computer Engineering, Math, Information Security, Information Assurance, Information Security Management, Intelligence Studies, Cybersecurity, Cybersecurity Policy, or a related field. Applicants without a degree but with relevant work experience and/or training will be considered.

#LI-Remote

#LI-AC1
This role may require the candidate to periodically undergo and pass alcohol and/or drug test(s) during the course of employment.

Benefits of Working at CrowdStrike:
  • Market leader in compensation and equity awards
  • Comprehensive physical and mental wellness programs
  • Competitive vacation and holidays for recharge
  • Paid parental and adoption leaves
  • Professional development opportunities for all employees regardless of level or role
  • Employee Networks, geographic neighborhood groups, and volunteer opportunities to build connections
  • Vibrant office culture with world class amenities
  • Great Place to Work Certified™ across the globe

CrowdStrike is proud to be an equal opportunity employer. We are committed to fostering a culture of belonging where everyone is valued for who they are and empowered to succeed. We support veterans and individuals with disabilities through our affirmative action program.

CrowdStrike is committed to providing equal employment opportunity for all employees and applicants for employment. The Company does not discriminate in employment opportunities or practices on the basis of race, color, creed, ethnicity, religion, sex (including pregnancy or pregnancy-related medical conditions), sexual orientation, gender identity, marital or family status, veteran status, age, national origin, ancestry, physical disability (including HIV and AIDS), mental disability, medical condition, genetic information, membership or activity in a local human rights commission, status with regard to public assistance, or any other characteristic protected by law. We base all employment decisions--including recruitment, selection, training, compensation, benefits, discipline, promotions, transfers, lay-offs, return from lay-off, terminations and social/recreational programs--on valid job requirements.

If you need assistance accessing or reviewing the information on this website or need help submitting an application for employment or requesting an accommodation, please contact us at View email address on click.appcast.io for further assistance.

Find out more about your rights as an applicant.

CrowdStrike participates in the E-Verify program.

Notice of E-Verify Participation

Right to Work

CrowdStrike, Inc. is committed to fair and equitable compensation practices. Placement within the pay range is dependent on a variety of factors including, but not limited to, relevant work experience, skills, certifications, job level, supervisory status, and location. The base salary range for this position for all U.S. candidates is $140,000 - $195,000 per year, with eligibility for bonuses, equity grants and a comprehensive benefits package that includes health insurance, 401k and paid time off.

For detailed information about the U.S. benefits package, please click here.


Expected Close Date of Job Posting is:06-20-2026
Vacancy posted 19 hours ago
Similar jobs that could be interesting for youBased on the Incident Response Principal Consultant (Remote) in United States vacancy
  • A leading consulting firm is seeking a Principal Digital Forensics Incident Response Consultant. This full-time role in Orlando, FL, requires strong incident response and...  ...position offers flexible PTO, medical benefits, and the possibility for remote work. #J-18808-Ljbffr
    Remote work
    Principal
    Full time
    Flexible hours

    Kivu Consulting Inc

    Orlando, FL
    4 days ago
  • $122.3k - $269.5k

     ...HCC Service Company, Inc. is seeking a Principal DFIR Consultant. This role involves providing expert skills in digital forensics and incident response to support TMHCC insureds. The ideal...  ...cyber investigations. Work is remote with overtime as needed. Compensation... 
    Remote work
    Principal

    HCC Service Company, Inc.

    New York, NY
    2 days ago
  •  ...Principal Consultant, Digital Forensic and Incident Response (DFIR) (Remote) Remote About Surefire Cyber Surefire Cyber is redefining the incident response model by delivering a swifter, stronger response to cyber incidents such as ransomware, email compromise, malware... 
    Remote work
    Principal
    Full time
    Local area
    Flexible hours
    Weekend work

    Surefire Cyber, LLC.

    New York, NY
    3 days ago
  • $135k - $200k

     ...Principal Consultant As a global leader in cybersecurity, CrowdStrike protects the people, processes and technologies that drive modern...  ...a wide variety of engagements including front page incident response investigations for organizations you'll find on the annual... 
    Remote work
    Principal
    Work experience placement
    Work at office
    Local area

    CrowdStrike

    United States
    3 days ago
  • CrowdStrike Holdings, Inc. is seeking motivated technical consultants for incident response roles in their Services team. The position involves...  ..., and be able to travel up to 30% of the time. This is a remote position open to US-based applicants in certain time zones... 
    Remote work

    CrowdStrike Holdings, Inc.

    California, MO
    2 days ago
  •  ...GuidePoint Security is looking for a Senior DFIR Consultant to join their remote team across the U.S. The role involves participating as a technical resource in incident response investigations, authoring detailed engagement deliverables, and utilizing automation to enhance... 
    Remote work

    GuidePoint Security

    New York, NY
    4 days ago
  • An established industry player in cybersecurity is seeking a skilled professional to join their dynamic incident response team. This role focuses on engaging with clients post-cyber-attack, utilizing advanced forensic methodologies to analyze and remediate threats. The... 
    Remote work

    Ransomware Recovery

    Houston, TX
    1 day ago
  • $100.2k - $164.1k

    Zurich 56 Company Ltd is hiring a Senior Incident Response Consultant to provide expert incident response and digital forensics services. In this role, you will lead investigations during cyber security incidents, maintain client relationships, and deliver actionable insights... 
    Remote job

    Zurich 56 Company Ltd

    Kansas City, MO
    4 days ago
  • $115k - $160k

     ...Principal Consultant CrowdStrike is looking for highly motivated, self-driven, technical consultants dedicated to making a difference...  ...a wide variety of engagements including front page incident response investigations for organizations you'll find on the annual... 
    Remote work
    Work experience placement
    Work at office
    Local area
    Shift work
    Weekend work

    CrowdStrike

    United States
    3 days ago
  • $100.2k - $164.1k

     ...role joins SpearTip, the cybersecurity consulting segment within Zurich Resilience...  ...extend up to 20% travel. As a Senior Incident Response Consultant, you will deliver expert incident...  ...rapidly deploying to client sites or remotely connecting to contain active threats,... 
    Remote work
    Full time
    Temporary work
    Apprenticeship
    Local area
    Visa sponsorship
    Flexible hours

    Zurich Insurance Group

    United States
    4 days ago
  •  ...remediation and cyber-attack first response, we consistently deliver...  ...on behalf of CYPFER in incident response tasks, interacting with...  ...as needed. ~ This role is remote but requires the ability to travel...  ...strong customer service and consulting skills. Adhere to client... 
    Remote work
    Weekend work

    Cypfer

    United States
    1 day ago
  •  ...Incident Response Consultant Incident Response Consultants support clients who face increasingly sophisticated security threats on a daily basis...  .... What's Great About Sophos? · Sophos operates a remote-first working model, making remote work the primary option... 
    Remote work
    Work experience placement
    Local area

    Sophos

    United States
    3 days ago
  • Senior Incident Response Consultant job at Pondurance. Indianapolis, IN. Senior Incident Response Consultant REMOTE About the Role: Are you a people person with cybersecurity expertise? Are you able to provide exceptional support to customers in their greatest time of... 
    Remote work
    Full time
    Work at office
    Immediate start

    Itlearn360

    Indianapolis, IN
    4 days ago
  •  ...Surefire Cyber is redefining the incident response model by delivering a...  ...transparency Job Title: Senior Consultant, Digital Forensics and...  ...Incident Response (DFIR) Location: Remote, USA / ExemptCompensation:...  ...of Engagement Leads and Principal Consultants on advanced and... 
    Remote job
    Full time
    Internship
    Local area
    Flexible hours
    Weekend work

    Surefire Cyber

    Wilmington, DE
    13 days ago
  •  ...Wednesday, and Thursday. Summary Armor is seeking an Incident Response Consultant to provide security consultation and incident response...  ...Reimbursement And Work-Life Balance Perks Like Flexible Schedules And Remote Work Options. WORK ENVIRONMENT The work environment... 
    Remote work
    Work at office
    Local area
    Immediate start
    Flexible hours

    Armor Defense Inc

    Plano, TX
    17 days ago
  • $161k - $268k

     ...Principal Incident Response & Readiness Consultant Sophos is a cybersecurity leader defending 600,000 organizations globally with an AI-driven platform and...  ...What's Great About Sophos? · Sophos operates a remote-first working model, making remote work the primary option... 
    Remote work
    Principal
    Local area

    Sophos

    United States
    1 day ago
  • $150k - $165k

     ...Overview Join to apply for the Principal Digital Forensics Incident Response Consultant role at Kivu Consulting (a part of Quorum Cyber) . Base pay...  ...Flexible PTO ~ Medical, Dental, and Vision ~401k ~ Remote Work Seniority level ~ Mid-Senior level... 
    Remote work
    Principal
    Full time
    Flexible hours

    Kivu Consulting Inc

    Orlando, FL
    6 days ago
  • $140k - $170k

     ...Associate Principal/Cybersecurity & Incident Response Boston, MA, United States; Chicago, IL, United States;...  ...States CRA is a leading global consulting firm that provides independent economic...  ...e.g. holiday periods), additional remote work options are offered to those... 
    Remote work
    Principal
    Work at office
    Local area
    Work from home
    3 days per week

    Charles River Associates

    Chicago, IL
    1 day ago
  •  ...A cybersecurity firm is seeking a Principal Consultant specializing in Digital Forensics and Incident Response to provide expert guidance during cyber incidents. This remote role requires a seasoned professional with a strong background in forensic analysis and incident... 
    Remote work
    Principal

    Surefire Cyber, LLC.

    New York, NY
    3 days ago
  •  ...Principal Consultant- Azure, IAM & Endpoint Solutions The Principal Consultant will lead the...  ...operations for enterprise clients. Key Responsibilities: Support presales through...  ...analytics rules, automation playbooks, and incident response workflows. Identity,... 
    Remote work
    Principal
    Work at office

    CrucialLogics

    United States
    3 days ago
  • $106.17k - $159.26k

     ...Workday Integrations Principal Consultant – Global AMS The Workday Integrations Principal Consultant...  ...our clients to be successful. Responsibilities: Onshore lead who leads...  ...Offshore team on day-to-day activities, incidents, root cause analysis and other work requests... 
    Remote work
    Principal
    Contract work
    Temporary work

    Collaborative Solutions

    United States
    4 days ago
  • $130k - $140k

     ...Principal Consultant Your expertise secures the control systems that power...  ...southeast Texas, two weeks remote) and a front-row seat to...  ...scope, schedule, and assigned responsibilities, and participate in client...  ...in ICS security incident response, risk assessment activities... 
    Remote work
    Principal

    American Bureau of Shipping

    Port Neches, TX
    1 day ago
  •  ...The Principal SIEM Consultant will be pivotal to problem definition, requirements...  ...to execute detection, response, and analytics strategies.•...  ...security domains including incident response, threat detection,...  ...necessary to productively work remotely/from home (where applicable... 
    Remote work
    Principal
    Work experience placement
    Local area
    Work from home

    Optiv

    Denver, CO
    19 hours ago
  • $135k - $200k

     ...educate employees, and develop tailored cyber initiatives. The Principal Consultant role is the leader on the ground. This role serves as the...  ...industry segments. Assess and develop cybersecurity and incident response programs in a proactive fashion to help mature the... 
    Remote work
    Principal
    Work experience placement
    Work at office
    Local area

    CrowdStrike

    New York, NY
    4 days ago
  •  ...A cybersecurity consulting firm in the United States is looking for an Incident Response Consultant to join their expanding IR team. In this role, you will handle threat investigations, support clients during critical incidents, and shape the company's digital forensics... 

    MOXFIVE

    New York, NY
    4 days ago
  •  ...Fire Investigator – Sr. Principal Consultant (Seasonal) Be part of a...  ...and explosion scenes. Responsibilities Perform all required...  ...origin of fires and explosion incidents. Convey findings and...  ...have the willingness to work remotely and from home office. ~... 
    Remote work
    Principal
    Seasonal work
    Work at office
    Work from home
    Worldwide
    Home office
    Flexible hours

    Crawford & Company

    United States
    2 days ago
  •  ...Incident & Problem Consultant At PNC, our people are our greatest differentiator and competitive advantage...  ...Consultant within PNC's First Response SRC (Sight Reliability Center Organization...  ...). This position may be eligible for remote work in select geographic locations,... 
    Remote work
    Work at office
    Work from home
    Shift work
    Afternoon shift

    PNC

    United States
    1 day ago
  •  ...Principal Advanced Threat Response Analyst This role has been designated as 'Remote/Teleworker', which means you will primarily work from home. Hewlett Packard Enterprise...  ...over a decade of hands-on experience in incident response, threat hunting, threat intelligence... 
    Remote work
    Principal
    Temporary work
    Work from home

    Hewlett Packard Enterprise Development LP

    United States
    3 days ago
  • $103.7k - $125k

     ...Carolina, and will be filled locally. Job Summary: The Incident Handler supports the monitoring, investigation, and triage of...  ...Defense Center teams to communicate findings, support incident response processes, and contribute to ongoing security operations and... 
    Full time
    Work experience placement
    Work from home
    Flexible hours
    Shift work

    Kaiser Permanente

    Greensboro, NC
    19 hours ago
  •  ...Principal Consultant - Data Architecture Poland About Us Do you want to boost your career and collaborate with expert, talented colleagues...  ...advisor for clients and internal stakeholders. You are responsible for ensuring that enterprise data and analytics solutions... 
    Remote work
    Principal

    Infosys Europe

    United States
    3 days ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Incident Response Principal Consultant (Remote). Be the first to apply!