655,689open jobs
38,143companies
92,304added this week
Browse all
Salary
$107k – $212k per year (Estimated)
Location
Remote (Canada)
Seniority
Senior · 10+ years exp
Employment
Contractor
Overview
Company
Impact
Profile match
Jobgether is a Belgian recruitment platform built entirely around remote and flexible work, aggregating openings from thousands of employers that allow work from outside an office. Its matching engine ranks roles against a candidate's skills, seniority and stated preferences on location and flexibility, rather than leaving people to filter a keyword search, and it verifies how genuinely remote each posting is. The company also runs an AI screening layer that shortlists applicants for employers, and publishes research and guidance on distributed work practices alongside the job marketplace itself.

This position is listed on behalf of a partner company, who manages all applications and next steps. Our partner is looking for a Senior Incident Response Consultant 2 based in Canada.

This senior cybersecurity role sits at the forefront of complex digital forensics and incident response engagements, helping organizations contain and recover from sophisticated cyberattacks. You will lead high-impact investigations involving ransomware, network breaches, business email compromise, insider threats, and web applications. As an incident lead, you will direct technical teams, prioritize investigations, communicate findings to customers, and coordinate response activities with key stakeholders. You will combine forensic expertise, threat intelligence, and structured incident response methodologies to identify attacker activity and root causes. The role also involves translating complex technical findings into clear executive-level reporting and actionable remediation guidance. Working across multiple incidents and time zones, you will play a critical role in strengthening customer resilience against evolving cyber threats.

Accountabilities:

    As a Senior Incident Response Consultant, you will lead customer engagements from initial assessment through investigation, containment, remediation guidance, and final reporting. You will act as a trusted technical advisor while coordinating analysts, customers, legal counsel, and other stakeholders throughout high-pressure incidents.

    • Lead customer kickoff calls, assess the situation, and identify immediate actions required to contain threats.
    • Act as a trusted advisor by providing customers with practical incident response and remediation guidance.
    • Lead daily customer update calls and communicate forensic findings clearly and confidently.
    • Provide concise written updates to customers between scheduled calls.
    • Direct forensic investigations, establish priorities, and delegate investigative tasks to analysts.
    • Manage multiple incident response engagements concurrently while maintaining quality and responsiveness.
    • Review findings and determine attacker tactics, techniques, and procedures (TTPs), contributing relevant intelligence to threat intelligence platforms.
    • Ensure appropriate actions are completed by both internal teams and customers to effectively neutralize threats.
    • Conduct root cause analysis to determine how incidents originated and assess potential data exfiltration where sufficient evidence is available.
    • Produce clear, timely executive-summary reports containing incident timelines mapped to the MITRE ATT&CK framework and actionable remediation recommendations.
    • Coordinate with legal counsel, cyber insurance carriers, and other external stakeholders when required.
    • Provide daily handover notes across time zones and during transitions between incident leads.
    • Contribute to basic and moderately complex projects that improve and expand the incident response service.
    • Mentor junior analysts, share knowledge, and contribute to the continuous development of the wider incident response team.
    • Requirements:

      The ideal candidate brings extensive hands-on incident response leadership experience, strong forensic expertise, and the ability to make sound decisions during complex and high-pressure cybersecurity events. You should be comfortable leading technical teams and customer engagements rather than simply reviewing investigative data.

      • 10+ years of experience leading incident response investigations involving ransomware, network breaches, malicious insiders, web applications, and database services.
      • Proven experience leading business email compromise (BEC) investigations.
      • Strong digital forensic analysis experience across cloud environments such as AWS, Microsoft Azure, and GCP.
      • Proven ability to successfully neutralize and support remediation of ransomware threats.
      • Excellent understanding of incident response processes, methodologies, and best practices.
      • Strong understanding of cyber risks and the ability to assess and communicate those risks effectively to customers.
      • Experience across areas such as computer, network, cloud, memory, and email forensics, threat hunting, threat analysis, web application security, penetration testing, red/blue team exercises, or OSINT.
      • Strong understanding of the MITRE ATT&CK framework.
      • Excellent verbal communication and strong written communication skills.
      • Demonstrated ability to manage priorities, delegate effectively, and coordinate work across multiple incidents.
      • Ability to remain logical, pragmatic, meticulous, analytical, and authoritative during high-pressure situations.
      • Strong technical leadership skills and the ability to manage and mentor incident response teams.
      • Curiosity, sound judgment, a willingness to ask questions, and a strong commitment to continuous learning.
      • Collaborative mindset with a willingness to share knowledge and support the development of junior analysts.
      • Ability to occasionally start early, work late, or support weekends and holidays when customer incidents require it.
      • Cybersecurity certifications such as CISSP, GCFA, or similar are an asset.
      • Experience with SIEM platforms such as Splunk or ELK is desirable.
      • Experience writing SQL queries is a plus.
      • Experience scripting with PowerShell, Python, or Bash is desirable.
      • Willingness to provide occasional overtime support during peak periods or critical engagements.
      • Benefits:

        • Base salary of $131,000-$219,000 CAD.
        • Additional compensation, including eligibility for a bonus.
        • Comprehensive employee benefits package.
        • Remote-first working model, with some roles potentially requiring a hybrid approach.
        • Opportunity to lead high-profile cybersecurity incidents and complex DFIR engagements.
        • Exposure to advanced forensic investigations, threat intelligence, cloud security, and incident response.
        • Work alongside experienced cybersecurity professionals in a globally distributed environment.
        • Opportunities to mentor analysts and contribute to the development of incident response capabilities.
        • Employee-led diversity and inclusion networks supporting community, education, and advocacy.
        • Annual charity, fundraising, and employee volunteer initiatives.
        • Global sustainability initiatives focused on reducing environmental impact.
        • Global fitness and trivia activities supporting employee engagement and wellbeing.
        • Global wellbeing days, monthly wellbeing webinars, and training focused on employee health and wellbeing.
        • Applicants must have legal authorization to work in Canada without requiring employer sponsorship.
Free account
Stop reading job ads. Get the ones that fit.
One free account turns this page into a shortlist built around your stack, your level and your pay.
Match on every job. Stack, seniority, pay and location, scored against your profile.
655,689 open roles. Read straight off company career pages, refreshed every day.
Unlimited applications. Every one you send is tracked in one place, on-site or on a company board.
3 tailored CVs a month. Rewritten for the exact job you are applying to. Included free.
Create a free account Continue with Google
Free forever. No card. Under a minute.

Your match

How well do you fit this role?
Two answers are enough for a real match. No account needed.
Check my fit
Answers stay in this browser until you create an account.

Recommended for you based on this role

Similar stack
Same company
In your city
$69k – $163k per year (Estimated) • Remote • 2+ years exp • Bachelor's Degree
Python
JavaScript
SQL
PowerShell
DevOps
Splunk
GCP
Datadog
Dynatrace
Azure
AWS
Platform Engineering
Apply
$39k – $78k per year (Estimated) • In office • Full-Time • 7+ years exp • Bachelor's Degree • Bengaluru
Python
TypeScript
Databases
Weaviate
Pinecone
AI/ML
AutoGen
Weights & Biases
LangChain
LlamaIndex
AI Agents
Arize Phoenix
DeepEval
LangSmith
Promptfoo
Ragas
AWS Bedrock
LLM
RAG
TruLens
OpenAI
Anthropic
Giskard
Agentic Workflows
DevOps
GCP
GitHub Actions
OpenTelemetry
Prometheus
GitLab CI
Azure
CI/CD
Jenkins
AWS
Docker
Kubernetes
Grafana
Shift-Left
Vector
Cybersecurity
ISO 27001
SOC 2
Shift-Left Security
QA
Selenium
Cypress
Playwright
Pytest
Apply
$100k – $160k per year • Remote/Hybrid • Full-Time • 4+ years exp • Bachelor's Degree • Jersey City • Tempe • Tampa
JavaScript
TypeScript
SQL
Databases
MS SQL
Apache Kafka
Frontend
Angular
React.js
DevOps
GCP
OpenShift
Azure
CI/CD
Jenkins
AWS
Docker
Kubernetes
Management
Agile
Apply
$18k – $42k per year (Estimated) • In office • Full-Time • 3+ years exp • Bachelor's Degree • Bengaluru
Python
SQL
Python
pySpark
Databases
Databricks
Apache Iceberg
Delta Lake
Apache Kafka
AI/ML
Spark
Airflow
DevOps
Azure
CI/CD
AWS
Amazon S3
Amazon Kinesis
Analytics
Azure Data Factory
Apply
Software Engineer 6 hours ago
Remote • 5+ years exp • Tbilisi
JavaScript
SQL
C#
C#
ASP.NET Core
Entity Framework Core
Blazor
xUnit
Databases
RabbitMQ
MS SQL
AI/ML
Copilot
Cursor
Claude Code
Frontend
Bootstrap
JQuery
WebAssembly
DevOps
Azure DevOps
Azure
CI/CD
Git
AWS
Cybersecurity
GDPR
Analytics
ETL/ELT
Management
Outlook
Agile
Scrum
Apply
$145k – $193k per year • Remote • Full-Time • 5+ years exp
Python
JavaScript
PHP
SQL
Ruby
Node JS
Elixir
Python
FastAPI
PHP
Laravel
Ruby
Ruby on Rails
RSpec
Sidekiq
Elixir
Oban
Databases
MySQL
PostgreSQL
RabbitMQ
Apache Kafka
AI/ML
AI Agents
Agentic Workflows
Frontend
GraphQL
Mobile
Clean Architecture
DevOps
gRPC
GCP
Datadog
Git
AWS
Kubernetes
GitHub
Management
Agile
Scrum
QA
Jest
Pytest
Apply
$186k – $321k per year (Estimated) • Remote • Full-Time • 15+ years exp • Bachelor's Degree
AI/ML
Model Context Protocol
Fine-tuning
AI Agents
Context Engineering
LLM Evaluation
LLM Guardrails
Agentic Workflows
Apply
$148k – $267k per year (Estimated) • Remote • Full-Time • 10+ years exp • Master's Degree
Apply
$100k – $167k per year • Remote • Full-Time • 3+ years exp • Bachelor's Degree
Apply
$129k – $255k per year (Estimated) • Remote • Full-Time • 6+ years exp • Master's Degree
Apply
See all jobs
This is one of many
655,689 more open roles from verified company boards, updated every day.