Senior Incident Response Consultant 2

Forensic Focus Limited

Canada

Hybrid

CAD 95,000 - 158,000

Full time

5 days ago
Be an early applicant
Application generator

Don’t send a generic resume — generate a resume and cover letter tailored to this exact role.

Get past ATS filters

Job summary

Forensic Focus Limited in Canada is seeking a Senior Incident Response Consultant to lead end-to-end DFIR engagements for organisations that have suffered cyberattacks. You will run customer-facing calls, delegate investigations, coordinate with legal and insurers, and deliver executive summaries with MITRE ATT&CK-mapped timelines.

The role requires deep expertise across computer, network, cloud, memory and email forensics, with proven incident response leadership on high-profile incidents.

Qualifications

  • Must have deep expertise across computer, network, cloud, memory and email forensics.
  • Proven incident response leadership on high-profile incidents.
  • Familiarity with threat hunting, OSINT, web app security and pentesting is valued.

Responsibilities

  • Lead end-to-end incident response engagements for cyberattacks.
  • Run customer-facing calls and coordinate with legal and insurers.
  • Delegate investigative tasks and produce executive summary reports with timelines and remediation guidance.
  • Maintain MITRE ATT&CK-mapped timelines in client deliverables.

Skills

DFIR leadership
Incident response
Cloud forensics
Memory forensics
Network forensics
Email forensics
Threat hunting

Tools

Forensic tooling
MITRE ATT&CK mapping

Job description

# Senior Incident Response Consultant 2*Sophos***Canada**Senior · Full-time### The RoleThis senior consulting position sits within an elite DFIR team, leading end-to-end incident response engagements for organisations that have suffered cyberattacks. Day-to-day responsibilities include running customer-facing calls, delegating investigative tasks, coordinating with legal and insurance stakeholders, and producing executive summary reports with MITRE ATT&CK-mapped timelines and remediation guidance.### Skills & ExperienceCandidates should bring strong expertise across computer, network, cloud, memory and email forensics, alongside proven incident response leadership on high-profile incidents. Familiarity with threat hunting, OSINT, web application security, and penetration testing is valued. Experience with Sophos technologies and industry-standard forensic tooling is advantageous.### Who It SuitsThis role suits a seasoned DFIR professional who combines deep technical forensic knowledge with the communication and leadership skills needed to manage both technical teams and senior client stakeholders under pressure. Those comfortable operating in fast-moving, high-stakes incident environments will thrive here.Typical advertised salary forIncident Response roles in Canada:**C$95,000–C$158,000**(median C$130,000 — from47 recent listings analysed by Forensic Focus).Compare Incident Response salaries in Canada →Learn More/Apply
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Sr. Cyber Consultant, DFIR
Sr. Cyber Consultant, DFIR

Forensic Focus Limited • Canada

Hybrid
CAD 95,000 - 158,000
Senior Incident Response Lead — Remote
Senior Incident Response Lead — Remote

Sophos • Canada

On-site
CAD 131,000 - 219,000
Incident Response Senior Consultant
Incident Response Senior Consultant

Forensic Focus Limited • Canada

On-site
CAD 120,000 - 180,000
Incident Response Senior Consultant (Remote, CAN)
Incident Response Senior Consultant (Remote, CAN)

Forensic Focus Limited • Toronto

Hybrid
CAD 97,000 - 158,000
Senior Threat Analyst - MDR & Threat Hunting Lead
Senior Threat Analyst - MDR & Threat Hunting Lead

Sophos Group • Canada

On-site
CAD 86,000 - 143,000
Bonus eligibility
Comprehensive benefits package
Remote-first culture
Senior Forward Deployed Detection and Response Consultant, Cyber Defence, National Security, Mandiant
Senior Forward Deployed Detection and Response Consultant, Cyber Defence, National Security, Mandiant

Google • Ottawa

On-site
CAD 140,000 - 190,000
Threat Analyst 3
Threat Analyst 3

Sophos Group • Canada

On-site
CAD 74,000 - 123,000
Incident Response Security Consultant, Mandiant (English)
Incident Response Security Consultant, Mandiant (English)

Forensic Focus Limited • Quebec

Hybrid
CAD 70,000 - 110,000
L3 SOC Analyst / Incident Responder
L3 SOC Analyst / Incident Responder

act digital • Montreal (administrative region)

On-site
CAD 90,000 - 120,000
Remote working available
Flex Office work environment
Annual training and certification
Cybersecurity Incident Response Commander
Cybersecurity Incident Response Commander

ISA Cybersecurity Inc • Toronto

On-site
CAD 135,000 - 180,000
Flexible sick and personal days
Generous health plan
RRSP matching and bonus programs
+1