Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Senior Incident Response Consultant

$100.2k - $164.1k

Zurich Insurance Company Ltd

Senior Incident Response Consultant

This role joins SpearTip, the cybersecurity consulting segment within Zurich Resilience Solutions. Blending cutting-edge technologies, unique skill sets, and proven cyber counterintelligence strategies, SpearTip partners with our clients to protect shareholder value, shield corporate reputations, and enhance long-term profits. We are driven to protect our clients from the ever-changing threat actors and become the gold standard in detecting zero-day vulnerabilities. In this role you make work virtual within the U.S. and extend up to 20% travel. As a Senior Incident Response Consultant, you will deliver expert incident response and digital forensics services to external clients experiencing cyber security incidents. Leads complex investigations, provides strategic guidance during security breaches, and drives incident containment and recovery efforts. Maintains 75% billable utilization while delivering exceptional client service and building long-term client relationships. The job's core deliverables rely on delivering expert consulting services to external clients during high-stress security incidents. Requires building trust with C-level executives, IT leaders, legal counsel, and insurance partners while managing complex multi-stakeholder relationships during crisis situations.

Key Accountabilities:

  • Lead incident response engagements for external clients, conducting digital forensics investigations, malware analysis, and threat actor attribution to identify scope, impact, and root cause of security incidents.
  • Provide 24/7 on-call emergency response services, rapidly deploying to client sites or remotely connecting to contain active threats, preserve evidence, and minimize business disruption.
  • Conduct comprehensive forensic examinations of compromised systems, networks, and cloud environments using industry-standard tools and methodologies to support client remediation and potential legal proceedings.
  • Deliver executive-level briefings and written reports to clients, translating complex technical findings into business impact assessments and actionable recommendations.
  • Coordinate with client stakeholders including IT teams, legal counsel, insurance carriers, law enforcement, and executive leadership to manage incident response activities and communication strategies.
  • Provide expert guidance on ransomware negotiations, business email compromise investigations, insider threat cases, and advanced persistent threat incidents.
  • Develop and deliver incident response retainer services, conducting proactive readiness assessments, tabletop exercises, and security program evaluations for client organizations.
  • Mentor junior consultants and analysts, providing technical guidance and quality assurance on client deliverables.
  • Maintain detailed case documentation, time tracking, and engagement status reporting to ensure accurate billing and project management.
  • Partner with insurance brokers, managed service providers, and law firms to provide incident response services as part of cyber insurance claims and breach response protocols.
  • Stay current on emerging threats, attack techniques, and forensic methodologies through continuous research and professional development.
  • Contribute to thought leadership initiatives including blog posts, conference presentations, and client education materials.

Business Travel, as required (may be extensive during active incidents) as well as extended hours during Active Incidents/24x7 On-call Rotation, flexible scheduling to accommodate client emergencies and time-sensitive investigations, as required.

Additional Business Accountabilities:

  • Develop scopes of work and cost estimates for incident response engagements, ensuring projects are appropriately resourced and profitably delivered.
  • Identify opportunities for expanded client engagements based on investigation findings, security gaps, and client needs.
  • Support business development activities including client presentations, capability demonstrations, and proposal development for new and existing clients.
  • Ensure all client deliverables meet quality standards and are delivered within agreed timelines and budgets.

Basic Qualifications:

  • Bachelors degree and 5 or more years experience in the Information Technology area OR Zurich Cybersecurity Technician Apprentice, including Cyber Security Certification and 6 or more years experience in the Information Technology area OR High School Diploma or Equivalent and 7 or more years experience in the Information Technology area AND MS Office experience

AND

Knowledge of Cyber Security Operations Preferred Functional/Technical Skills Qualifications:

  • Digital Forensics & Incident Response - Proficiency Level Advanced
  • Threat Intelligence & Malware Analysis - Proficiency Level Intermediate
  • Client Communication & Stakeholder Management - Proficiency Level Advanced
  • Windows/Linux System Forensics - Proficiency Level Advanced
  • Network Forensics & Log Analysis - Proficiency Level Intermediate
  • Cloud Security (Azure/AWS/M365) - Proficiency Level Intermediate
  • Forensic Tool Proficiency (EnCase, FTK, X-Ways, Volatility, etc.) - Proficiency Level Advanced
  • Ransomware & BEC Investigations - Proficiency Level Advanced
  • Report Writing & Executive Communication - Proficiency Level Advanced
  • Project Management - Proficiency Level Intermediate

Your pay at Zurich is based on your role, location, skills, and experience. We follow local laws to ensure fair compensation. You may also be eligible for bonuses and merit increases. If your expectations are above the listed range, we still encourage you to apply—your unique background matters to us. The pay range shown is a national average and may vary by location. The proposed Salary range for this position is $100,200.00 - $164,100.00, with short-term incentive bonus eligibility set at 15%. We offer competitive pay and comprehensive benefits for employees and their families.

Why Zurich? At Zurich, we value your ideas and experience. We offer growth, inclusion, and a supportive environment—so you can help shape the future of insurance. Zurich North America is a leader in risk management, with over 150 years of expertise and coverage across 25+ industries, including 90% of the Fortune 500®. Join us for a brighter future—for yourself and our customers. Zurich in North America does not discriminate based on race, ethnicity, color, religion, national origin, sex, gender expression, gender identity, genetic information, age, disability, protected veteran status, marital status, sexual orientation, pregnancy or other characteristics protected by applicable law. Equal Opportunity Employer disability/vets. Zurich complies with 18 U.S. Code § 1033.

Vacancy posted 4 days ago
Similar jobs that could be interesting for youBased on the Senior Incident Response Consultant in United States vacancy
  •  ...A cybersecurity consulting firm in the United States is looking for an Incident Response Consultant to join their expanding IR team. In this role, you will handle threat investigations, support clients during critical incidents, and shape the company's digital forensics... 
    Senior

    MOXFIVE

    New York, NY
    3 days ago
  • CrowdStrike Holdings, Inc. is seeking motivated technical consultants for incident response roles in their Services team. The position involves leading investigations, developing methods for threat hunting, and conducting forensic analyses on various platforms. Ideal candidates... 
    Senior
    Remote work

    CrowdStrike Holdings, Inc.

    California, MO
    6 days ago
  •  ...GuidePoint Security is looking for a Senior DFIR Consultant to join their remote team across the U.S. The role involves participating as a technical resource in incident response investigations, authoring detailed engagement deliverables, and utilizing automation to enhance... 
    Senior
    Remote work

    GuidePoint Security

    New York, NY
    3 days ago
  •  ...breach remediation and cyber-attack first response, we consistently deliver results that...  ...Responsibilities: Engage on behalf of CYPFER in incident response tasks, interacting with various...  ...Exhibit strong customer service and consulting skills. Adhere to client and internal... 
    Senior
    Remote work
    Weekend work

    Cypfer

    United States
    5 days ago
  • $115k - $160k

     ...Principal Consultant CrowdStrike is looking for highly motivated, self-driven, technical consultants dedicated to making a difference...  ...through a wide variety of engagements including front page incident response investigations for organizations you'll find on the annual... 
    Senior
    Work experience placement
    Work at office
    Local area
    Remote work
    Shift work
    Weekend work

    CrowdStrike

    United States
    1 day ago
  • $100.2k - $164.1k

    Zurich 56 Company Ltd is hiring a Senior Incident Response Consultant to provide expert incident response and digital forensics services. In this role, you will lead investigations during cyber security incidents, maintain client relationships, and deliver actionable insights... 
    Senior
    Remote job

    Zurich 56 Company Ltd

    Kansas City, MO
    3 days ago
  • Ubds-Group is seeking a Senior Digital Forensics and Incident Response (DFIR) Consultant in Manchester, NH to lead and support cyber incident investigations. This role focuses on delivering DFIR services to clients and improving internal security operations. The successful... 
    Senior

    Ubds-Group

    Manchester, NH
    1 day ago
  •  ...Description About Surefire Cyber Surefire Cyber is redefining the incident response model by delivering a swifter, stronger response to cyber...  ..., predictability, and transparency Job Title: Senior Consultant, Digital Forensics and Incident Response (DFIR) Location:... 
    Senior
    Remote job
    Full time
    Internship
    Local area
    Flexible hours
    Weekend work

    Surefire Cyber

    Wilmington, DE
    12 days ago
  • A leading consulting firm is seeking a Principal Digital Forensics Incident Response Consultant. This full-time role in Orlando, FL, requires strong incident response and forensics expertise, with a focus on client engagements. Ideal candidates will possess extensive information... 
    Full time
    Remote work
    Flexible hours

    Kivu Consulting Inc

    Orlando, FL
    8 days ago
  • $122.3k - $269.5k

     ...HCC Service Company, Inc. is seeking a Principal DFIR Consultant. This role involves providing expert skills in digital forensics and incident response to support TMHCC insureds. The ideal candidate will have a minimum of 5 years experience in leading DFIR teams, including... 
    Remote work

    HCC Service Company, Inc.

    New York, NY
    12 hours ago
  • $80 - $100 per hour

     ...A cybersecurity firm is seeking an Incident Response Consultant to join its team. The role requires experience in incident response, a strong understanding of various operating systems, and the ability to investigate cloud-native threats. This position provides flexible... 
    Senior
    Full time
    Flexible hours

    MOXFIVE

    New York, NY
    3 days ago
  •  ...Principal Consultant, Digital Forensic and Incident Response (DFIR) (Remote) Remote About Surefire Cyber Surefire Cyber is redefining the incident response...  ...development for a Forensic team consisting of 3‑4 Consultants/Senior Consultants, by investing in their professional... 
    Full time
    Local area
    Remote work
    Flexible hours
    Weekend work

    Surefire Cyber, LLC.

    New York, NY
    2 days ago
  • $135k - $200k

     ...Principal Consultant As a global leader in cybersecurity, CrowdStrike protects the people, processes and technologies that drive...  ...through a wide variety of engagements including front page incident response investigations for organizations you'll find on the annual Fortune... 
    Work experience placement
    Work at office
    Local area
    Remote work

    CrowdStrike

    United States
    1 day ago
  •  ...Job Title: Senior Communications Specialist, Incident Response Work Place Flexibility: Onsite Legal Entity: Entergy Services, LLC Job Summary/Purpose Assist in the development, management and execution of internal and external communications strategies for... 
    Senior
    Work at office
    Local area
    Relocation

    Entergy Corporation

    New Orleans, LA
    7 days ago
  •  ...Incident Response Consultant Incident Response Consultants support clients who face increasingly sophisticated security threats on a daily basis—not only by responding to incidents as they occur, but also by helping them prepare in advance for effective incident handling... 
    Work experience placement
    Local area
    Remote work

    Sophos

    United States
    1 day ago
  • An established industry player in cybersecurity is seeking a skilled professional to join their dynamic incident response team. This role focuses on engaging with clients post-cyber-attack, utilizing advanced forensic methodologies to analyze and remediate threats. The... 
    Remote work

    Ransomware Recovery

    Houston, TX
    5 days ago
  • $103.7k - $125k

     ...Carolina, and will be filled locally. Job Summary: The Incident Handler supports the monitoring, investigation, and triage of...  ...Defense Center teams to communicate findings, support incident response processes, and contribute to ongoing security operations and... 
    Full time
    Work experience placement
    Work from home
    Flexible hours
    Shift work

    Kaiser Permanente

    Greensboro, NC
    4 days ago
  • NCC Group is seeking a DFIR Consultant in Manila. You will engage with Cyber Incident Response Teams and manage various security incidents, providing high-quality technical investigations. Candidates should have 2-4 years of relevant experience and be well-versed in incident... 
    Full time

    NCC Group

    Manila, UT
    3 days ago
  • $40k - $140k

     ...primarily in a collaborative, family-friendly environment. The ideal candidate should have experience in SOC monitoring and incident response. The position provides valuable hands-on mentoring to junior analysts, fostering both individual growth and team success.... 
    Senior

    Get It Recruit - Real Estate

    Elgin, SC
    2 days ago
  •  ...Wednesday, and Thursday. Summary Armor is seeking an Incident Response Consultant to provide security consultation and incident response...  ...consultation outcomes for customer delivery. Collaborate with senior consultants on complex engagements and escalate as... 
    Work at office
    Local area
    Immediate start
    Remote work
    Flexible hours

    Armor Defense Inc

    Plano, TX
    16 days ago
  •  ...GuidePoint Security, LLC is seeking a Principal Consultant to provide technical leadership on DFIR engagements. Responsibilities include oversight of complex investigations,...  ...8 years of DFIR experience and expertise in incident response and forensic investigations. Join a... 
    Senior

    GuidePoint Security

    Richmond, VA
    1 day ago
  •  ...Security Analyst to enhance its security measures and proactively manage threats. Responsibilities include monitoring security systems, developing response plans, and supporting incident management processes. The ideal candidate has expertise in security operations, a... 
    Senior

    First American

    Santa Ana, CA
    5 days ago
  • $125k - $160k

     ...A leading home services provider is seeking a Senior Incident Response Engineer to enhance their security practice. The ideal candidate will have 8+ years in security, including 3 years in incident response, and must possess hands-on experience with cloud security and... 
    Senior
    Remote work

    Frontdoor

    New York, NY
    5 days ago
  •  ...A company is looking for a Senior Manager to lead its Incident Response team on the night shift. Key Responsibilities Lead and develop the night shift Incident Response team, promoting a culture of accountability and collaboration Serve as the primary escalation point... 
    Senior
    Remote work
    Night shift

    Virtual Vocations Inc

    United States
    4 days ago
  •  ...A prominent technology firm seeks a Senior Cyber Incident Responder to lead and execute incident response activities. This role involves investigating security incidents and collaborating with various teams to prevent recurrence. Candidates should possess extensive IT... 
    Senior
    Remote work

    Gainwell Technologies

    California, MO
    5 days ago
  •  ...Insight Global, a leading Fortune 100 transportation company in Memphis, TN, is looking for a Senior Cyber Security Incident Response Analyst. The successful candidate will manage Tier 3 and Tier 4 cyber security incidents, conduct thorough investigations, and develop... 
    Senior
    Remote work

    Insight Global

    Memphis, TN
    6 days ago
  •  ...Check Point Software Technologies is looking for an experienced Incident Response Team Leader in Charlotte, NC. This hands-on leadership role involves leading a team of IR analysts and overseeing customer engagement during security incidents. The ideal candidate will... 
    Senior

    Check Point Software Technologies

    Charlotte, NC
    12 hours ago
  •  ...Ascend Learning is looking for a Senior Security Engineer to lead SOC operations and provide technical security leadership. The...  ...environment. Candidates should have a strong cybersecurity background, incident response certification, and experience in managing SOC operations. We... 
    Senior
    Work from home
    Flexible hours

    Ascend Learning

    Leawood, KS
    5 days ago
  • $100 - $115 per hour

     ...A workforce solutions firm is looking for a Principal Incident Response & Malware Analysis Engineer. This hands-on role requires expertise in incident response, malware analysis, and digital forensics. You will lead complex investigations and mentor junior staff. Candidates... 
    Senior
    Full time
    Remote work

    Synergis

    New York, NY
    3 days ago
  • $100k - $160k

     ...A regional insurance provider is looking for a Level 3 Incident Response Analyst to lead incident response activities. The ideal candidate will have over 7 years of Cybersecurity experience, with significant expertise in incident handling and security operations. This... 
    Senior
    Remote work

    Allstate Northern Ireland

    Indiana, PA
    5 days ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Senior Incident Response Consultant. Be the first to apply!