Senior Incident Response Engineer

Sophos

United States

On-site

USD 150,000 - 190,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Sophos is seeking an experienced Senior Incident Response Consultant to lead incident response engagements for customers worldwide. You will spearhead a team of Incident Response Consultants, running customer-facing calls, and delivering detailed written updates via email, with priorities set for the investigation and proper delegation.

At engagement end you will provide an executive summary-style report, including a MITRE ATT&CK mapping, and guide remediation to neutralize threats and improve

Qualifications

  • Experience leading incident response engagements.
  • Ability to communicate complex cybersecurity topics to executives.
  • Experience conducting root cause analysis and remediation guidance.
  • Proficiency with industry-standard forensic tools.

Responsibilities

  • Lead incident response engagements for customers worldwide.
  • Run customer-facing calls and provide detailed written updates.
  • Prioritize investigations and delegate tasks to team members.
  • Ensure thorough root cause analysis and remediation guidance.
  • Produce executive summaries with MITRE ATT&CK mapping.

Skills

Incident response
Team leadership
Executive communication
Root cause analysis

Tools

MITRE ATTACK
Forensic tools
Sophos technologies

Job description

About Us

Sophos is a cybersecurity leader defending 600,000 organizations globally with an AI‑driven platform and expert‑led services. Sophos meets organizations wherever they are in their security maturity and grows with them to defeat cyberattacks. Its solutions combine machine learning, automation, and real‑time threat intelligence with frontline human expertise from Sophos X‑Ops to deliver advanced, 24/7 threat monitoring, detection, and response.

Sophos offers industry‑leading managed detection and response (MDR) alongside a comprehensive portfolio of cybersecurity technologies — including endpoint, network, email, and cloud security, extended detection and response (XDR), identity threat detection and response (ITDR), and next‑gen SIEM. Together with expert advisory services, these capabilities help organizations proactively reduce risk and respond faster, with the visibility and scalability needed to stay ahead of evolving threats.

Sophos goes to market with a global partner ecosystem, including Managed Service Providers (MSPs), Managed Security Service Providers (MSSPs), resellers and distributors, marketplace integrations, and cyber risk partners, giving organizations the flexibility to choose trusted relationships when securing their business.

Sophos is headquartered in Oxford, U.K. More information is available at www.sophos.com.

Role Summary

Sophos is seeking an experienced and motivated Incident Response Consultant to join our Incident Response (IR) service. The Sophos IR team is an elite group of incident responders that are engaged by organizations worldwide to respond to and neutralize cyber threats. Specializing in industry‑standard forensic tools and Sophos technologies, the team provides comprehensive investigations, response actions, remediation guidance, and root cause analysis to combat a wide range of cybersecurity incidents.

As a Senior Incident Response Consultant on the Sophos IR team, you will be responsible for spearheading incident response engagements for customers who have experienced a cybersecurity attack. In this role, you will lead a team of Incident Response Consultants, running customer‑facing calls, providing detailed written updates via email, and determining the priorities of the investigation, delegating tasks accordingly to your team.

In this role, you will be accountable for ensuring that the appropriate actions have been taken by both your team and the customer to effectively neutralize the threat. Additionally, you will be tasked with conducting a thorough root cause analysis to determine the origin of the incident, including identifying whether any data exfiltration occurred, provided the necessary evidence is available.

At the culmination of each engagement, you will be responsible for producing an executive summary‑style report, which will include a timeline of key events mapped to the MITRE ATT&CK framework. This comprehensive report will serve as a valuable resource for stakeholders, highlighting the steps taken to combat the cybersecurity incident and provide remediation guidance.

The ideal candidate for this role will possess extensive experience leading incident response efforts, a deep understanding of cybersecurity threats and mitigation strategies, and the ability to communicate complex technical information to executive‑level stakeholders in a clear and concise manner.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior Incident Response Lead
Senior Incident Response Lead

Sophos • United States

On-site
USD 150,000 - 190,000
Incident Response Consultant 3
Incident Response Consultant 3

Sophos • United States

On-site
USD 120,000 - 200,000
Remote Senior Incident Response Leader
Remote Senior Incident Response Leader

Sophos • United States

Remote
USD 180,000 - 240,000
Remote-first work model
Incident Response Manager
Incident Response Manager

Crowe LLP • United States

On-site
USD 120,000 - 150,000
Threat Analyst 1
Threat Analyst 1

Sophos • United States

On-site
USD 75,000 - 110,000
Cyber Incident Responder
Cyber Incident Responder

Meriplex-Communication • Town of Texas (WI)

On-site
USD 110,000 - 160,000
Strategic Incident Response & Threat Intel Lead
Strategic Incident Response & Threat Intel Lead

Sophos • United States

Remote
USD 120,000 - 180,000
Cyber Incident Responder
Cyber Incident Responder

Meriplex • Town of Texas (WI)

On-site
USD 120,000 - 180,000
Cyber Incident Responder
Cyber Incident Responder

Meriplex Communications, Ltd. • Town of Texas (WI), Northern (KY)

Hybrid
USD 110,000 - 150,000
Senior MDR Threat Analyst – Detection & Response
Senior MDR Threat Analyst – Detection & Response

Sophos • United States

On-site
USD 70,000 - 100,000