ApplySarthi Match jobs to your CV

Incident Response Engagement-Lead

Jobgether

Make my CV for this job, freeView job and applyYour CV, rewritten for this role using only your real experience. Sign in with Google and upload your CV. Nothing to install.

Skills named in this job

Read from the description itself, not inferred.

This role on the market

450 open engagement roles across 136 companies are on ApplySarthi right now, most of them in Bengaluru (9), Hyderabad (4), Delhi NCR (4).

What engagement roles keep asking for: Stakeholder management (15%), AWS (15%) — counted across their open postings here.

Jobgether has 3,942 open roles listed here.

Counted across 14 company job boards, updated as roles open and close.

Preparing for this interview

Interviews for engagement roles keep coming back to Stakeholder management, AWS. Practise those questions before you sit with Jobgether.

Questions you are likely to be asked

  1. Why do you want to join Jobgether?
  2. What is your experience with Stakeholder management? Tell me one thing you learned the hard way.
  3. What is a weakness you are working on, and how?
  4. Tell me about yourself, and why this role is the right next step.
  5. Tell me about a problem you solved at work that you are proud of.

Prep Sarthi gives you a free mock interview: an AI interviewer asks you questions like these out loud, from your own CV and this job, and shows your score and your weakest answer.

Practise the Incident Response Engagement-Lead at Jobgether interview free →

Accountabilities:: Lead and coordinate the full incident response lifecycle, including scoping, containment, eradication, and recovery, across moderately complex, multi-system environments. Serve as the primary point of contact for claims teams, breach counsel, incident response providers, and policyholders throughout active cyber incident engagements. Manage and oversee digital forensics and incident response providers, ensuring investigations are appropriately scoped, timely, accurate, and aligned with engagement objectives. Identify, track, and actively manage scope changes and potential scope creep across multiple concurrent engagements while maintaining timelines and stakeholder alignment. Schedule, coordinate, and facilitate briefings on complex forensic findings, translating technical investigation results into clear and actionable reporting for technical, legal, and executive audiences. Work effectively within legally sensitive investigations, applying an understanding of Attorney-Client Privilege and Work Product Doctrine in coordination with legal counsel. Collaborate with claims adjusters, underwriters, external partners, and other stakeholders to support accurate incident documentation and informed coverage determinations. Contribute to the ongoing development and improvement of incident response methodologies, playbooks, processes, and tooling. Requirements: 4–6 years of hands-on experience in digital forensics and incident response (DFIR), with meaningful exposure to the cyber insurance ecosystem, including experience working with or on behalf of insurance carriers, breach counsel, and/or policyholders. Demonstrated experience managing cyber incidents through scoping, containment, eradication, and recovery. Proven ability to lead moderately complex, multi-system investigations while applying strong project management skills and proactively controlling scope. Experience working in legally sensitive environments, with an understanding of Attorney-Client Privilege and the Work Product Doctrine. Strong consulting, communication, and stakeholder management skills, including the ability to present forensic findings to technical, legal, and executive audiences. Ability to remain organized, decisive, and detail-oriented while managing multiple concurrent engagements in high-pressure incident response situations. A bachelor’s degree in Cybersecurity, Information Security Management, Digital Forensics, Computer Science, or a related discipline is preferred. Equivalent professional experience may be considered in lieu of a degree, particularly when combined with relevant industry certifications such as GCIH, GNFA, CompTIA CySA+, CISM, or CISSP. Strong analytical, problem-solving, written communication, and presentation skills, with the ability to translate complex technical information into practical recommendations. Benefits: Remote work opportunity within the United States. Competitive compensation aligned with experience and responsibilities. Comprehensive employee benefits, including healthcare coverage. A collaborative and dynamic environment with opportunities to work across technical, legal, claims, underwriting, and external partner teams. Opportunities for continuous professional development and career growth. The opportunity to work on complex, high-impact cyber incidents and contribute to the evolution of incident response practices. An inclusive workplace committed to equal employment opportunity and a diverse range of perspectives. Exposure to an innovative, technology-driven environment focused on cyber risk, resilience, and incident response.

Match this job to your CV

ApplySarthi scores your CV against this role, shows the skills you are missing, and writes a tailored version for the application.

Check my match →

Similar open roles

Need answers during your interview? Try Live Sarthi.

Live Sarthi, an Interview Sarthi app, shows answer suggestions during the call.

Try Live Sarthi free →

A Windows app, from the same team as ApplySarthi.

Listed on lever · posted 2026-09-26. ApplySarthi collects openings and links to application pages; the role is advertised by Jobgether, not by us.