
Senior Incident Response DFIR Consultant – Engagement Lead
Posted Sep 15

Posted Sep 15
This is a fully remote position, open to applicants in United States.
• Oversee incident response initiatives for external clients.
• Perform digital forensics investigations, analyze malware, and attribute threat actors.
• Offer 24/7 on-call incident response by remotely connecting to mitigate active threats, safeguard evidence, and reduce disruption.
• Assess compromised systems, networks, and cloud environments utilizing industry-standard tools and practices.
• Present executive-level briefings and deliver written reports that include business impact assessments and recommendations.
• Collaborate with IT teams, legal representatives, insurance providers, law enforcement, and executive management to coordinate incident response.
• Advise on ransomware negotiations, business email compromise, insider threats, and incidents involving advanced persistent threats.
• Guide junior consultants and analysts, ensuring quality assurance.
• Maintain documentation for cases, track time, and report on engagement status.
• Work with insurance brokers, managed service providers, and law firms regarding cyber insurance claims and breach responses.
• Investigate emerging threats, attack techniques, and forensic methodologies.
• Contribute to thought leadership through blog articles, conference presentations, and client educational resources.
• Develop scopes of work and provide cost estimates.
• Identify areas for expanding client engagements.
• Support business development through client presentations, capability demonstrations, and proposal creation.
• Ensure that deliverables adhere to quality standards, timelines, and budgets.
• Travel as necessary.
• Bachelor's degree and a minimum of 5 years of experience in the Cyber Security field; OR completion of Zurich Cybersecurity Technician Apprenticeship, including Cyber Security Certification and at least 6 years of experience in the Cyber Security field; OR High School Diploma or Equivalent with a minimum of 7 years of experience in the Cyber Security field.
• Advanced expertise in Digital Forensics & Incident Response.
• Intermediate expertise in Threat Intelligence & Malware Analysis.
• Advanced skills in Client Communication & Stakeholder Management.
• Advanced knowledge of Windows/Linux Operating System Forensics.
• Intermediate knowledge in Network Forensics & Log Analysis.
• Intermediate skills in Cloud Security (Azure/AWS/M365).
• Advanced proficiency in forensic tools such as EnCase, FTK, X-Ways, Volatility, and Binalyze.
• Advanced skills in Ransomware & Business Email Compromise (BEC) Investigations.
• Advanced capabilities in Report Writing & Executive Communication.
• Intermediate proficiency in Project Management.
• Experience in Threat Actor Communications.
• Capability to provide 24/7 on-call incident response services.
• Willingness to work remotely within the U.S. and travel up to 5% as necessary.
• Employment sponsorship is not available.
• Eligibility for a short-term incentive bonus set at 15%.
• Competitive compensation.
• Comprehensive benefits package for employees and their families.
• Opportunities for growth, inclusion, and a supportive work environment.
• Potential for merit-based increases.
dentsu Austria
GHY International
GHY International
GHY International
Get handpicked remote jobs straight to your inbox weekly.