Forward Deployed Detection and Response Consultant, Cyber Defence, National Security, Mandiant

Google LLC

Ottawa

On-site

CAD 134,000 - 137,000

Full time

30 hours ago
Be an early applicant
Application generator

Don’t send a generic resume — generate a resume and cover letter tailored to this exact role.

Get past ATS filters

Job summary

Google LLC in Ottawa, Canada seeks a Forward Deployed Detection and Response Consultant within Mandiant’s National Security team. You will embed with clients to deliver security operations, incident response, assessment, and training, helping organizations detect threats and minimize mission risk.

Role emphasizes agentic AI-driven detection, rapid incident resolution, and collaboration with clients and internal partners across cloud, endpoints, and networks.

Qualifications

  • Bachelor’s degree or equivalent practical experience.
  • 3+ years in SOC or related roles with EDR/SIEM experience.
  • Incident response experience.
  • Must hold or be eligible for a valid Personnel Security Clearance.

Responsibilities

  • Collaborate with internal and customer teams to detect, respond to, and contain cyber security incidents.
  • Design and build agentic AI solutions to support autonomous detection, response, and remediation.
  • Recognize and codify attacker TTPs and IOCs for current and future investigations.
  • Support and contribute to complex client-facing investigations across cloud, endpoint, and network sources.
  • Develop and present comprehensive reports and presentations for technical and executive audiences.

Skills

SOC analyst
Malware research
Threat hunting
Incident response

Education

Bachelor’s degree or equivalent

Tools

EDR
SIEM

Job description

Forward Deployed Detection and Response Consultant, Cyber Defence, National Security, Mandiant

Ottawa, ON, Canada

  • Bachelor's degree in Computer Science, Information Systems, Cybersecurity, related technical field, or equivalent practical experience.
  • 3 years of experience in SOC analyst, malware research, threat hunting, or similar roles, working with EDR and SIEM technologies.
  • Experience participating in incident response activities.
  • Candidates must hold or be eligible to obtain a valid Personnel Security Clearance as a condition of employment.
Preferred qualifications:
  • Certifications in cloud platforms.
  • Experience building and deploying agentic AI workflows to support detection, response, and remediation.
  • Experience in security competitions, Capture the Flags (CTFs) or testing platforms such as Hack the Box, TryHackMe, Overthewire, etc.
  • Ability to communicate investigative findings and strategies to technical staff, executive leadership, legal counsel, and internal and external clients.
  • Ability to communicate in English and French fluently, to work with internal partners and customer teams.
  • Excellent time and project management skills.
About the job

As a Forward Deployed Detection and Response Consultant, Cyber Defence within Mandiant's National Security team, you will embed with clients in Canada's national security and defence sector and directly contribute to building a secure and resilient Canada.

You will provide industry-leading security operations, incident response, assessment, transformation, managed detection and response, and training services with in-depth tactical support. You will help organizations effectively detect and respond to threats and reduce the overall impact of mission risk before, during, and after an incident. You will be able to resolve security incidents quickly, effectively and at scale with complete incident response including investigation, containment, remediation, and crisis management. In this role, you will work on engagements including assisting clients in navigating technically complex and high-profile incidents, developing agentic solutions, performing forensic analysis, threat hunting, and malware triage.

Part of Google Cloud, Mandiant is a recognized leader in dynamic cyber defense, threat intelligence and incident response services. Mandiant's cybersecurity expertise has earned the trust of security professionals and company executives around the world. Our unique combination of renowned frontline experience responding to some of the most complex breaches, nation-state grade threat intelligence, machine intelligence, and the industry's best security validation ensures that Mandiant knows more about today's advanced threats than anyone. Individual pay is determined by factors including job-related skills, experience, and relevant education or training.

About the job

As a Forward Deployed Detection and Response Consultant, Cyber Defence within Mandiant's National Security team, you will embed with clients in Canada's national security and defence sector and directly contribute to building a secure and resilient Canada.

You will provide industry-leading security operations, incident response, assessment, transformation, managed detection and response, and training services with in-depth tactical support. You will help organizations effectively detect and respond to threats and reduce the overall impact of mission risk before, during, and after an incident. You will be able to resolve security incidents quickly, effectively and at scale with complete incident response including investigation, containment, remediation, and crisis management. In this role, you will work on engagements including assisting clients in navigating technically complex and high-profile incidents, developing agentic solutions, performing forensic analysis, threat hunting, and malware triage.

Part of Google Cloud, Mandiant is a recognized leader in dynamic cyber defense, threat intelligence and incident response services. Mandiant's cybersecurity expertise has earned the trust of security professionals and company executives around the world. Our unique combination of renowned frontline experience responding to some of the most complex breaches, nation-state grade threat intelligence, machine intelligence, and the industry's best security validation ensures that Mandiant knows more about today's advanced threats than anyone. Individual pay is determined by factors including job-related skills, experience, and relevant education or training. Canada: $134000 - $137000 (CAD) + 15% bonus target + equity + benefits

  • Collaborate with internal and customer teams to detect, respond to, and contain cyber security incidents.
  • Design and build agentic AI solutions to support autonomous detection, response, and remediation
  • Recognize and codify attacker Tools, Tactics, and Procedures (TTPs) and Indicators of Compromise (IOCs) that can be applied to current and future investigations.
  • Support and contribute to complex client-facing investigations and examine cloud, endpoint, and network-based sources of evidence.
  • Develop and present comprehensive and accurate reports and presentations for both technical and executive audiences.

Google is proud to be an equal opportunity and affirmative action employer. We are committed to building a workforce that is representative of the users we serve, creating a culture of belonging, and providing an equal employment opportunity regardless of race, creed, color, religion, gender, sexual orientation, gender identity/expression, national origin, disability, age, genetic information, veteran status, marital status, pregnancy or related condition (including breastfeeding), expecting or parents-to-be, criminal histories consistent with legal requirements, or any other basis protected by law. See also Google's EEO Policy , Know your rights: workplace discrimination is illegal , Belonging at Google , and How we hire .

Google is a global company and, in order to facilitate efficient collaboration and communication globally, English proficiency is a requirement for all roles unless stated otherwise in the job posting.

Equity is granted exclusively and discretionarily by Alphabet Inc. on the basis of an agreement concluded between you and Alphabet Inc. Alphabet Inc. is your sole contractual partner with respect to equity grants. GSU grants are not guaranteed, are discretionary, are subject to approval by the Alphabet Inc. board of directors or its delegate, the terms of the relevant Alphabet Inc. stock plan, and your grant agreement. They have no impact on statutory payments. Current or past grants do not confer an acquired right.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Forward Deployed Detection and Response Consultant, Cyber Defence, National Security, Mandiant
Forward Deployed Detection and Response Consultant, Cyber Defence, National Security, Mandiant

Google Inc. • Ottawa

On-site
CAD 134,000 - 137,000
Equity
Senior Forward Deployed Detection and Response Consultant, Cyber Defence, National Security, Ma[...]
Senior Forward Deployed Detection and Response Consultant, Cyber Defence, National Security, Ma[...]

Google • Ottawa

On-site
CAD 166,000 - 170,000
Principal Consultant, Adversarial Resilience and Cyber Defence
Principal Consultant, Adversarial Resilience and Cyber Defence

Google Inc. • Siksiká #146, Alberta

On-site
CAD 198,000 - 202,000
Principal Consultant, Adversarial Resilience and Cyber Defence
Principal Consultant, Adversarial Resilience and Cyber Defence

Google • Alberta

Hybrid
CAD 198,000 - 202,000
Equity
Bonus target 20%
Benefits
Security Consultant Intern, BS/MS, Summer 2027
Security Consultant Intern, BS/MS, Summer 2027

Google • Toronto

On-site
CAD 75,000 - 91,000
Senior Incident Response Security Consultant, Mandiant, Google Cloud
Senior Incident Response Security Consultant, Mandiant, Google Cloud

Google • Canada

On-site
CAD 166,000 - 170,000
Equity
Bonus target 15%
Benefits
Senior Forward Deployed Detection and Response Consultant, Cyber Defence, National Security, Mandiant
Senior Forward Deployed Detection and Response Consultant, Cyber Defence, National Security, Mandiant

Google • Ottawa

On-site
CAD 140,000 - 190,000
Consultant principal en sécurité en matière d'intervention en cas d'incident, Mandiant, Google Cloud
Consultant principal en sécurité en matière d'intervention en cas d'incident, Mandiant, Google Cloud

Google • Alberta

On-site
CAD 166,000 - 170,000
Strategic Security Consultant, Mandiant, Google Cloud (English)
Strategic Security Consultant, Mandiant, Google Cloud (English)

Google • Toronto

On-site
CAD 90,000 - 120,000
Security Consultant Intern, BS/MS, Summer 2027
Security Consultant Intern, BS/MS, Summer 2027

Google LLC • Toronto

On-site
CAD 25,000 - 39,000