Senior Forward Deployed Detection and Response Consultant, Cyber Defence, National Security, Mandiant
Ottawa, Ontario
The Role
This senior consultant embeds directly with national security and defence clients in Canada, leading complex incident response engagements from investigation through containment and remediation. Day-to-day work spans forensic analysis of cloud, endpoint, and network evidence, threat hunting, malware triage, and designing agentic AI workflows to support autonomous detection and response operations.
Skills & Experience
Candidates need at least five years in SOC analysis, malware research, or threat hunting, with hands-on EDR and SIEM experience and a track record of leading incident response activities. Cloud platform certifications, familiarity with CTF/testing platforms, and bilingual English-French communication skills are advantageous. A valid Personnel Security Clearance is required.
Who It Suits
This role suits an experienced DFIR professional who thrives in high-stakes, client-facing environments and is comfortable briefing both technical teams and executive leadership. Those with a passion for national security, an interest in AI-driven defence solutions, and the ability to obtain government security clearance will be particularly well placed.
Typical advertised salary for Incident Response roles in Canada: C$95,000–C$162,000 (median C$130,000 — from 51 recent listings analysed by Forensic Focus).
Learn More/Apply





