JobFlexy

Senior Forward Deployed Detection and Response Consultant – Mandiant (Google) – Ottawa, ON

Location: Ottawa, ON | Company: Google

Mandiant, part of Google Cloud, is seeking a Senior Forward Deployed Detection and Response Consultant to join its National Security team in Ottawa, Ontario. This is a highly specialized role for seasoned cyber security professionals who want to work at the intersection of national defence, advanced threat intelligence, and cutting-edge AI-driven security operations.

Sponsored Links

In this position, you’ll embed directly with clients in Canada’s national security and defence sector, delivering hands-on incident response, threat hunting, forensic analysis, and agentic AI solution development. You’ll be working on some of the most technically complex and high-profile engagements in the country, helping organizations reduce mission risk before, during, and after a cyber incident.

About the Role: Senior Forward Deployed Detection and Response Consultant

Day-to-day, you’ll collaborate with both internal and client teams to detect, respond to, and contain cyber security incidents at scale. Your work will span cloud, endpoint, and network-based evidence sources, and you’ll be expected to lead complex investigations while simultaneously developing agentic AI workflows that support autonomous detection and remediation. This role demands both deep technical expertise and the ability to communicate clearly with executive leadership and legal counsel.

You’ll also be responsible for codifying attacker Tools, Tactics, and Procedures (TTPs) and Indicators of Compromise (IOCs) that can be applied across current and future investigations. Collaboration, crisis management, and precise documentation are all central to how this team operates, and you’ll be expected to contribute meaningfully on all fronts.

Sponsored Links

Benefits and Salary

This role offers a competitive compensation package. The salary range for this position in Canada is $166,000–$170,000 CAD per year, plus a 15% bonus target, equity, and a comprehensive benefits package. Additional details about Google’s benefits can be found on the Google Careers website.

Job Details

🏢 Company: Mandiant (Google Cloud)

📍 Location: Ottawa, ON, Canada

💰 Pay: $166,000 – $170,000 CAD/year + 15% bonus target + equity + benefits

Responsibilities

As a senior consultant embedded within Canada’s national security sector, you’ll lead and contribute to some of the most consequential cyber defence engagements in the country. Your responsibilities will be both technical and strategic, requiring you to shift between hands-on forensic work and high-level client communication with equal confidence.

  • Collaborate with internal and client teams to detect, respond to, and contain cyber security incidents
  • Design and build agentic AI solutions to support autonomous detection, response, and remediation workflows
  • Recognize and codify attacker Tools, Tactics, and Procedures (TTPs) and Indicators of Compromise (IOCs) applicable to current and future investigations
  • Lead and contribute to complex client-facing investigations, examining cloud, endpoint, and network-based sources of evidence
  • Perform forensic analysis, threat hunting, and malware triage on high-profile engagements
  • Develop and present comprehensive and accurate reports and presentations for both technical and executive audiences
  • Support crisis management activities including investigation, containment, and remediation at scale

Requirements / Skills

This role is suited to a highly experienced cyber security professional who thrives in fast-paced, high-stakes environments. Mandiant’s national security practice demands individuals who can operate independently, communicate with clarity at all levels, and bring both technical depth and operational leadership to every engagement.

  • Bachelor’s degree in Computer Science, Information Systems, Cybersecurity, a related technical field, or equivalent practical experience
  • 5 years of experience in SOC analyst, malware research, threat hunting, or similar roles, working with EDR and SIEM technologies
  • Incident response leadership experience in complex, real-world environments
  • Personnel Security Clearance — candidates must hold or be eligible to obtain a valid clearance as a condition of employment
  • Agentic AI experience — demonstrable ability to build and deploy AI workflows for detection, response, and remediation (preferred)
  • Cloud platform certifications are considered an asset
  • Bilingualism in English and French is preferred, to support internal partners and customer teams
  • Excellent time and project management skills, with the ability to manage multiple complex engagements simultaneously
  • Experience in security competitions or CTF platforms such as Hack the Box, TryHackMe, or Overthewire is a plus

How to Apply

To apply, visit the official job posting using the link below. Make sure your resume is up to date and reflects your experience in incident response, threat hunting, and any relevant security tooling before submitting.

Share This Opportunity

Know someone who might be interested? Share this job posting and help them join Mandiant in Ottawa.

Job Summary & Tips for Applying

AI-generated summary and tips to help you highlight your strengths effectively.

Quick Summary & What to Highlight: This Senior Forward Deployed Detection and Response Consultant role at Mandiant in Ottawa is perfect for candidates who excel in incident response leadership, threat hunting, and AI-driven security operations. On your resume, emphasize any experience with EDR and SIEM technologies, forensic analysis, and your ability to work in a fast-paced, high-stakes environment. If you’ve previously worked in SOC analysis, malware research, or national security contexts, make sure to highlight specific achievements and responsibilities that align with this position.

Resume & Application Tips: Before applying, tailor your resume to match the job description. Include keywords like incident response, threat hunting, and agentic AI workflows that appear in the posting. Quantify your achievements where possible (e.g., “led incident response for 20+ enterprise clients” or “reduced mean time to containment by 40%”). Write a brief cover letter expressing your genuine interest in Mandiant‘s national security practice and why you’re excited about this opportunity in Ottawa. Double-check your application for spelling errors and ensure your contact information is current.

Interview Preparation: If selected for an interview, research Mandiant‘s values, recent threat intelligence reports, and the broader Google Cloud security ecosystem beforehand. Prepare specific examples using the STAR method (Situation, Task, Action, Result) to demonstrate your incident response and forensic analysis skills. Common questions may include scenarios about navigating complex breaches, working with executive stakeholders, and managing competing priorities under pressure. Dress appropriately for a professional consulting environment, arrive 10–15 minutes early, and bring copies of your resume. Prepare thoughtful questions about the role, team dynamics, and growth opportunities. After the interview, send a thank-you email within 24 hours reiterating your interest in the position.

Recommended Job Offers

More Google openings near Ottawa, ON