Senior Incident Response Consultant
$100.2k - $164.1kZurich Insurance Company Ltd
Senior Incident Response Consultant
This role joins SpearTip, the cybersecurity consulting segment within Zurich Resilience Solutions. Blending cutting-edge technologies, unique skill sets, and proven cyber counterintelligence strategies, SpearTip partners with our clients to protect shareholder value, shield corporate reputations, and enhance long-term profits. We are driven to protect our clients from the ever-changing threat actors and become the gold standard in detecting zero-day vulnerabilities. In this role you make work virtual within the U.S. and extend up to 20% travel. As a Senior Incident Response Consultant, you will deliver expert incident response and digital forensics services to external clients experiencing cyber security incidents. Leads complex investigations, provides strategic guidance during security breaches, and drives incident containment and recovery efforts. Maintains 75% billable utilization while delivering exceptional client service and building long-term client relationships. The job's core deliverables rely on delivering expert consulting services to external clients during high-stress security incidents. Requires building trust with C-level executives, IT leaders, legal counsel, and insurance partners while managing complex multi-stakeholder relationships during crisis situations.
Key Accountabilities:
- Lead incident response engagements for external clients, conducting digital forensics investigations, malware analysis, and threat actor attribution to identify scope, impact, and root cause of security incidents.
- Provide 24/7 on-call emergency response services, rapidly deploying to client sites or remotely connecting to contain active threats, preserve evidence, and minimize business disruption.
- Conduct comprehensive forensic examinations of compromised systems, networks, and cloud environments using industry-standard tools and methodologies to support client remediation and potential legal proceedings.
- Deliver executive-level briefings and written reports to clients, translating complex technical findings into business impact assessments and actionable recommendations.
- Coordinate with client stakeholders including IT teams, legal counsel, insurance carriers, law enforcement, and executive leadership to manage incident response activities and communication strategies.
- Provide expert guidance on ransomware negotiations, business email compromise investigations, insider threat cases, and advanced persistent threat incidents.
- Develop and deliver incident response retainer services, conducting proactive readiness assessments, tabletop exercises, and security program evaluations for client organizations.
- Mentor junior consultants and analysts, providing technical guidance and quality assurance on client deliverables.
- Maintain detailed case documentation, time tracking, and engagement status reporting to ensure accurate billing and project management.
- Partner with insurance brokers, managed service providers, and law firms to provide incident response services as part of cyber insurance claims and breach response protocols.
- Stay current on emerging threats, attack techniques, and forensic methodologies through continuous research and professional development.
- Contribute to thought leadership initiatives including blog posts, conference presentations, and client education materials.
Business Travel, as required (may be extensive during active incidents) as well as extended hours during Active Incidents/24x7 On-call Rotation, flexible scheduling to accommodate client emergencies and time-sensitive investigations, as required.
Additional Business Accountabilities:
- Develop scopes of work and cost estimates for incident response engagements, ensuring projects are appropriately resourced and profitably delivered.
- Identify opportunities for expanded client engagements based on investigation findings, security gaps, and client needs.
- Support business development activities including client presentations, capability demonstrations, and proposal development for new and existing clients.
- Ensure all client deliverables meet quality standards and are delivered within agreed timelines and budgets.
Basic Qualifications:
- Bachelors degree and 5 or more years experience in the Information Technology area OR Zurich Cybersecurity Technician Apprentice, including Cyber Security Certification and 6 or more years experience in the Information Technology area OR High School Diploma or Equivalent and 7 or more years experience in the Information Technology area AND MS Office experience
AND
Knowledge of Cyber Security Operations Preferred Functional/Technical Skills Qualifications:
- Digital Forensics & Incident Response - Proficiency Level Advanced
- Threat Intelligence & Malware Analysis - Proficiency Level Intermediate
- Client Communication & Stakeholder Management - Proficiency Level Advanced
- Windows/Linux System Forensics - Proficiency Level Advanced
- Network Forensics & Log Analysis - Proficiency Level Intermediate
- Cloud Security (Azure/AWS/M365) - Proficiency Level Intermediate
- Forensic Tool Proficiency (EnCase, FTK, X-Ways, Volatility, etc.) - Proficiency Level Advanced
- Ransomware & BEC Investigations - Proficiency Level Advanced
- Report Writing & Executive Communication - Proficiency Level Advanced
- Project Management - Proficiency Level Intermediate
Your pay at Zurich is based on your role, location, skills, and experience. We follow local laws to ensure fair compensation. You may also be eligible for bonuses and merit increases. If your expectations are above the listed range, we still encourage you to apply—your unique background matters to us. The pay range shown is a national average and may vary by location. The proposed Salary range for this position is $100,200.00 - $164,100.00, with short-term incentive bonus eligibility set at 15%. We offer competitive pay and comprehensive benefits for employees and their families.
Why Zurich? At Zurich, we value your ideas and experience. We offer growth, inclusion, and a supportive environment—so you can help shape the future of insurance. Zurich North America is a leader in risk management, with over 150 years of expertise and coverage across 25+ industries, including 90% of the Fortune 500®. Join us for a brighter future—for yourself and our customers. Zurich in North America does not discriminate based on race, ethnicity, color, religion, national origin, sex, gender expression, gender identity, genetic information, age, disability, protected veteran status, marital status, sexual orientation, pregnancy or other characteristics protected by applicable law. Equal Opportunity Employer disability/vets. Zurich complies with 18 U.S. Code § 1033.
- ...A cybersecurity consulting firm in the United States is looking for an Incident Response Consultant to join their expanding IR team. In this role, you will handle threat investigations, support clients during critical incidents, and shape the company's digital forensics...Senior
- CrowdStrike Holdings, Inc. is seeking motivated technical consultants for incident response roles in their Services team. The position involves leading investigations, developing methods for threat hunting, and conducting forensic analyses on various platforms. Ideal candidates...SeniorRemote work
- ...GuidePoint Security is looking for a Senior DFIR Consultant to join their remote team across the U.S. The role involves participating as a technical resource in incident response investigations, authoring detailed engagement deliverables, and utilizing automation to enhance...SeniorRemote work
- ...breach remediation and cyber-attack first response, we consistently deliver results that... ...Responsibilities: Engage on behalf of CYPFER in incident response tasks, interacting with various... ...Exhibit strong customer service and consulting skills. Adhere to client and internal...SeniorRemote workWeekend work
$115k - $160k
...Principal Consultant CrowdStrike is looking for highly motivated, self-driven, technical consultants dedicated to making a difference... ...through a wide variety of engagements including front page incident response investigations for organizations you'll find on the annual...SeniorWork experience placementWork at officeLocal areaRemote workShift workWeekend work$100.2k - $164.1k
Zurich 56 Company Ltd is hiring a Senior Incident Response Consultant to provide expert incident response and digital forensics services. In this role, you will lead investigations during cyber security incidents, maintain client relationships, and deliver actionable insights...SeniorRemote job- Ubds-Group is seeking a Senior Digital Forensics and Incident Response (DFIR) Consultant in Manchester, NH to lead and support cyber incident investigations. This role focuses on delivering DFIR services to clients and improving internal security operations. The successful...Senior
- ...Description About Surefire Cyber Surefire Cyber is redefining the incident response model by delivering a swifter, stronger response to cyber... ..., predictability, and transparency Job Title: Senior Consultant, Digital Forensics and Incident Response (DFIR) Location:...SeniorRemote jobFull timeInternshipLocal areaFlexible hoursWeekend work
- A leading consulting firm is seeking a Principal Digital Forensics Incident Response Consultant. This full-time role in Orlando, FL, requires strong incident response and forensics expertise, with a focus on client engagements. Ideal candidates will possess extensive information...Full timeRemote workFlexible hours
$122.3k - $269.5k
...HCC Service Company, Inc. is seeking a Principal DFIR Consultant. This role involves providing expert skills in digital forensics and incident response to support TMHCC insureds. The ideal candidate will have a minimum of 5 years experience in leading DFIR teams, including...Remote work$80 - $100 per hour
...A cybersecurity firm is seeking an Incident Response Consultant to join its team. The role requires experience in incident response, a strong understanding of various operating systems, and the ability to investigate cloud-native threats. This position provides flexible...SeniorFull timeFlexible hours- ...Principal Consultant, Digital Forensic and Incident Response (DFIR) (Remote) Remote About Surefire Cyber Surefire Cyber is redefining the incident response... ...development for a Forensic team consisting of 3‑4 Consultants/Senior Consultants, by investing in their professional...Full timeLocal areaRemote workFlexible hoursWeekend work
$135k - $200k
...Principal Consultant As a global leader in cybersecurity, CrowdStrike protects the people, processes and technologies that drive... ...through a wide variety of engagements including front page incident response investigations for organizations you'll find on the annual Fortune...Work experience placementWork at officeLocal areaRemote work- ...Job Title: Senior Communications Specialist, Incident Response Work Place Flexibility: Onsite Legal Entity: Entergy Services, LLC Job Summary/Purpose Assist in the development, management and execution of internal and external communications strategies for...SeniorWork at officeLocal areaRelocation
- ...Incident Response Consultant Incident Response Consultants support clients who face increasingly sophisticated security threats on a daily basis—not only by responding to incidents as they occur, but also by helping them prepare in advance for effective incident handling...Work experience placementLocal areaRemote work
- An established industry player in cybersecurity is seeking a skilled professional to join their dynamic incident response team. This role focuses on engaging with clients post-cyber-attack, utilizing advanced forensic methodologies to analyze and remediate threats. The...Remote work
$103.7k - $125k
...Carolina, and will be filled locally. Job Summary: The Incident Handler supports the monitoring, investigation, and triage of... ...Defense Center teams to communicate findings, support incident response processes, and contribute to ongoing security operations and...Full timeWork experience placementWork from homeFlexible hoursShift work- NCC Group is seeking a DFIR Consultant in Manila. You will engage with Cyber Incident Response Teams and manage various security incidents, providing high-quality technical investigations. Candidates should have 2-4 years of relevant experience and be well-versed in incident...Full time
$40k - $140k
...primarily in a collaborative, family-friendly environment. The ideal candidate should have experience in SOC monitoring and incident response. The position provides valuable hands-on mentoring to junior analysts, fostering both individual growth and team success....Senior- ...Wednesday, and Thursday. Summary Armor is seeking an Incident Response Consultant to provide security consultation and incident response... ...consultation outcomes for customer delivery. Collaborate with senior consultants on complex engagements and escalate as...Work at officeLocal areaImmediate startRemote workFlexible hours
- ...GuidePoint Security, LLC is seeking a Principal Consultant to provide technical leadership on DFIR engagements. Responsibilities include oversight of complex investigations,... ...8 years of DFIR experience and expertise in incident response and forensic investigations. Join a...Senior
- ...Security Analyst to enhance its security measures and proactively manage threats. Responsibilities include monitoring security systems, developing response plans, and supporting incident management processes. The ideal candidate has expertise in security operations, a...Senior
$125k - $160k
...A leading home services provider is seeking a Senior Incident Response Engineer to enhance their security practice. The ideal candidate will have 8+ years in security, including 3 years in incident response, and must possess hands-on experience with cloud security and...SeniorRemote work- ...A company is looking for a Senior Manager to lead its Incident Response team on the night shift. Key Responsibilities Lead and develop the night shift Incident Response team, promoting a culture of accountability and collaboration Serve as the primary escalation point...SeniorRemote workNight shift
- ...A prominent technology firm seeks a Senior Cyber Incident Responder to lead and execute incident response activities. This role involves investigating security incidents and collaborating with various teams to prevent recurrence. Candidates should possess extensive IT...SeniorRemote work
- ...Insight Global, a leading Fortune 100 transportation company in Memphis, TN, is looking for a Senior Cyber Security Incident Response Analyst. The successful candidate will manage Tier 3 and Tier 4 cyber security incidents, conduct thorough investigations, and develop...SeniorRemote work
- ...Check Point Software Technologies is looking for an experienced Incident Response Team Leader in Charlotte, NC. This hands-on leadership role involves leading a team of IR analysts and overseeing customer engagement during security incidents. The ideal candidate will...Senior
- ...Ascend Learning is looking for a Senior Security Engineer to lead SOC operations and provide technical security leadership. The... ...environment. Candidates should have a strong cybersecurity background, incident response certification, and experience in managing SOC operations. We...SeniorWork from homeFlexible hours
$100 - $115 per hour
...A workforce solutions firm is looking for a Principal Incident Response & Malware Analysis Engineer. This hands-on role requires expertise in incident response, malware analysis, and digital forensics. You will lead complex investigations and mentor junior staff. Candidates...SeniorFull timeRemote work$100k - $160k
...A regional insurance provider is looking for a Level 3 Incident Response Analyst to lead incident response activities. The ideal candidate will have over 7 years of Cybersecurity experience, with significant expertise in incident handling and security operations. This...SeniorRemote work
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Senior Incident Response Consultant. Be the first to apply!
- sailpoint consultant United States
- lead analytics consultant United States
- iam consultant United States
- sox consultant United States
- consultant part time United States
- lean consultant United States
- power bi consultant United States
- therapy consultant United States
- loss control consultant United States
- ocm consultant United States


