Source Job

Unlimited PTO

  • Lead and execute complex digital forensics and incident response investigations across a range of engagement types.
  • Deliver high-quality analysis, client communication, and tailored deliverables for both technical and managerial audiences.
  • Collaborate with peers to improve methodologies, tooling, and automation to respond to emerging threats.

Digital Forensics Incident Response Malware Analysis Scripting

20 jobs similar to Senior DFIR Consultant

Jobs ranked by similarity.

$96,798–$125,268/yr
Canada

  • Monitor security events and provide technical analysis on alerts
  • Lead information security incidents as Incident Commander, developing response strategies and coordinating across teams
  • Champion Samsara's cultural principles while delivering security guidance for incident response and insider threat initiatives

Samsara (NYSE: IOT) is the pioneer of the Connected Operations™ Cloud, a platform that enables organizations to harness IoT data for actionable insights and improved operations. They are a recently public company with a culture that encourages rapid career development and a focus on digitizing large sectors of the global economy.

US

  • Lead enterprise-wide response to high-risk cybersecurity incidents as Cyber Incident Commander, directing cross-functional efforts and driving containment to resolution.
  • Provide executive incident leadership by delivering updates to senior leaders and supporting decision-making during incidents.
  • Strengthen the incident response program through post-incident reviews, root cause analysis, and continuous improvements to response plans and playbooks.

Experian is a global data and technology company that powers opportunities for people and businesses across financial services, healthcare, automotive, and more. The company has a team of 25,200 employees in 32 countries and is known for its award-winning, people-first culture.

$75,600–$97,200/yr
Ireland

  • Triage, investigate, and respond to alerts from the Huntress platform daily.
  • Perform tactical review of EDR telemetry, log sources, and forensic artifacts to determine root causes and provide remediations.
  • Contribute to detection engineering and collaborate with a passionate team dedicated to protecting companies from cyber-attacks.

Huntress is a cybersecurity company founded in 2015 by former NSA cyber operators, providing enterprise-grade cybersecurity to businesses of all sizes. They secure over 5M endpoints and 14M identities worldwide with a 24/7 human-led SOC and a remote-first culture.

$155,000–$155,000/yr
US

  • Lead and execute incident response engagements for OT customers as Incident Commander, including triage, investigations, threat hunts, and compromise assessments across onsite and remote environments.
  • Conduct post-incident reviews, root-cause analysis, and integrate lessons learned into playbooks and response methodologies.
  • Develop and deliver advisory services including incident response planning workshops, maturity assessments, and tabletop exercises to advance customer readiness.

Dragos is a global leader in operational technology (OT) cybersecurity, combining technology, threat intelligence, and expert services. They have a remote-first mission-driven team across North America, Europe, the Middle East, and APAC built on authenticity, transparency, and trust.

US

  • Design and build specialized forensic software for federal cybercrime and digital-evidence investigations.
  • Engineer forensic capabilities including file-system parsing, memory analysis, and binary data dissection.
  • Collaborate with forensic analysts, crypto engineers, and software developers to deliver court-ready software solutions.

AnaVation is a leader in solving complex technical challenges for the U.S. Federal Intelligence Community, providing advanced software and systems engineering. It is a US-owned company headquartered in Chantilly, Virginia, offering a collaborative work environment and a top-notch team.

US Australia

  • Analyze and respond to advanced threats ranging from commodity phishing to zero-day exploits.
  • Monitor and triage alerts from network security monitoring, EDR platforms, and other log sources.
  • Create detailed incident reports and collaborate with threat intelligence and incident response teams.

Volexity is a cybersecurity company specializing in threat intelligence and incident response. They have a growing, industry-leading security operations team and value diversity and equal opportunity.

$182,000–$182,000/yr
United States

  • Lead deep-dive analysis of ICS-related malware and firmware, developing novel detection methods and Yara signatures.
  • Write persuasive customer-facing technical reports that translate complex malware findings into clear operational impact.
  • Collaborate across teams with hunters, intelligence analysts, and detection engineers to drive malware-related threat research.

Dragos is the global leader in xOT cybersecurity, combining technology, threat intelligence, and expert services. They have a remote-first mission-driven team across North America, Europe, the Middle East, and APAC built on authenticity, transparency, and trust.

$152,000–$152,000/yr
US

  • You will hunt for and analyze adversary capabilities targeting ICS/OT networks.
  • You will develop tools and scripts for capability analysis and inform detection strategies.
  • Your work directly enhances Dragos' ability to defend against advanced threats.

Dragos is the global leader in xOT cybersecurity, combining technology, threat intelligence, and expert services. The company is a remote-first mission-driven team across North America, Europe, the Middle East, and APAC built on authenticity, transparency, and trust.

US

  • Conduct deep technical research into malware, firmware, and adversary tools targeting industrial environments.
  • Develop YARA signatures and detection strategies to protect critical infrastructure.
  • Collaborate with analysts and engineers to transform research into actionable defenses.

The company defends critical infrastructure from advanced cyber threats. It operates with a remote-first, mission-driven culture focused on innovation and transparency.

$140,000–$180,000/yr
US

  • Apply deep expertise in cyber threat intelligence, analyzing advanced threat actors and attack methodologies.
  • Lead strategic threat intelligence initiatives, developing methodologies and providing thought leadership.
  • Convey complex intelligence findings through reports and briefings to diverse technical and executive audiences.

NBCUniversal is a leading media and entertainment company, creating and distributing content across film, television, streaming, and theme parks. As a subsidiary of Comcast Corporation, it employs a large global workforce and fosters an inclusive culture with a commitment to community engagement.

US

  • Provide technical leadership and assist sales teams by presenting products and managing trials.
  • Conduct file analysis, malware analysis, and reverse engineering for enterprise clients.
  • Maintain relationships with technical staff and complete RFPs and security questionnaires.

ReversingLabs develops cyber threat detection and mitigation tools that address advanced persistent threats and polymorphic malware. The company has an international team and fosters a collaborative, growth-oriented culture.

Unlimited PTO

  • Minimum 5 years in an enterprise level security consultative, vendor, or operational role building and assessing Information Security architectures and programs.
  • Proficiency in multiple security technologies, including network security, cloud security, and IAM.
  • Embraces emerging technologies, including AI tools, to work smarter and drive better business outcomes.

GuidePoint Security provides trusted cybersecurity expertise, solutions and services that help organizations make better decisions and minimize risk. Since its inception in 2011, GuidePoint has grown to over 1,200 employees and serves as a trusted advisor to more than 6,200 customers.

$125,560–$173,010/yr
Canada Unlimited PTO

  • Lead and develop a team of security engineers to defend infrastructure, SaaS, and endpoints against real-world adversaries.
  • Own detection and response, including incident command, tuning CrowdStrike, and conducting cybersecurity risk assessments.
  • Drive AI security strategy and partner with cross-functional teams to build robust detection controls.

Forward Financing is a financial technology company that unlocks capital to fuel small businesses across America. Since 2012, they have provided over $4.8 billion in funding to more than 92,000 small businesses and are recognized as a Best Place to Work with a culture focused on empowerment and collaboration.

$150,000–$250,000/yr
Global 2w PTO

  • Own cybersecurity strategy and operations across all AIOS entities.
  • Lead identity, access, endpoint, application, and infrastructure security.
  • Drive risk and compliance for HIPAA, GDPR, SOC 2, and ISO 27001.

AIOS is building the world's first full-stack AI doctor, serving 150k monthly patients through Bolt Pharmacy. We're a profitable, founder-led company scaling from $10M to $350M ARR in 12 months, with a culture of extreme ownership and speed.

$153,000–$214,000/yr
US Canada

  • Lead end-to-end response to product security incidents, from discovery to disclosure.
  • Own and evolve 1Password's PSIRT function, including severity frameworks and playbooks.
  • Drive coordinated vulnerability disclosure and partner with external security researchers.

1Password is a cybersecurity company providing enterprise password management and Unified Access Management, trusted by over 180,000 businesses. With $400M ARR and a remote-first culture, it values collaboration, transparency, and innovation.

US

  • Lead MLB's threat intelligence and incident response programs across the league office, 30 Clubs, and affiliates.
  • Manage vulnerability intelligence, digital risk monitoring, incident coordination, and forensic investigations.
  • Own security awareness programming and use automation to shorten research, triage, and reporting cycles.

Major League Baseball (MLB) is the most historic professional sports league in the United States and Canada. With a league office, 30 Clubs, and affiliates, MLB fosters a culture of growth, teamwork, and professionalism, empowering employees to take initiative and put the team first.

US Unlimited PTO

  • Lead investigation and response for security incidents, suspicious activity, and emerging threats.
  • Design, implement, and improve security monitoring, detection, and response capabilities across AWS.
  • Develop detection rules, conduct post-incident reviews, and partner with teams to strengthen security controls.

CoLab is an AI platform that helps mechanical engineering teams bring life-changing products to market faster by driving stronger engineering decisions. Founded in 2019 and based in St. John's, Newfoundland, CoLab has grown rapidly, earning recognition on Deloitte's Fast 50 and Fast 500 lists.

US

  • Design, implement, and maintain enterprise security infrastructure including firewalls, IDS/IPS, and SIEM solutions.
  • Lead cybersecurity strategy, incident response, and risk management aligning with business objectives.
  • Conduct vulnerability assessments, enforce security policies, and mentor colleagues to foster a culture of security awareness.

McNees Wallace & Nurick is a trusted, client-focused law firm delivering practical, results-driven legal solutions with integrity. With more than 170 attorneys and 350 professionals, the firm fosters a culture of authentic relationships, excellence, and balance.

$172,279–$249,640/yr
US Canada

  • Build and maintain SIEM for log collection and detection rules across corporate and production environments.
  • Design and deploy canary tokens and early warning mechanisms to detect threats before they reach critical assets.
  • Investigate security incidents end-to-end, including malware analysis, exfiltration assessment, and timeline reconstruction.

Quora operates two platforms: a global knowledge sharing platform with over 300M monthly unique visitors, and Poe, a platform for chatting and building with AI language models. The company is privately held, remote-first, and fosters a culture of transparency, collaboration, and experimentation.

US

  • Lead investigation and response to complex security incidents involving healthcare systems, ePHI, and clinical applications.
  • Perform advanced threat analysis, correlation, and root cause analysis using SIEM, EDR, and other security tooling.
  • Serve as a subject matter expert for incident response, vulnerability management, and security operations processes.

Kettering Health is a not-for-profit system of 14 medical centers and more than 120 outpatient facilities serving southwest Ohio, focused on living God's love by promoting and restoring health. With a commitment to providing exceptional care and safety as a top priority, the organization integrates healthcare experts across a large network.