Senior Associate/Cybersecurity & Incident Response (Forensic Services practice)
- Toronto, ON
- Hybrid
- Posted Sep 1, 2026
- 1 position
$140,000–$190,000 / year
Opens an external site
- Employment type
- Full-time
- Experience level
- Senior · 5+ years
- Minimum education
- Bachelor’s degree
- Posting language
- English
- Working hours
- 40 hours per week
- Office presence
- 4 days per week
Job summary
The Senior Associate will execute security and privacy investigations, perform digital forensic analysis, and manage incident response teams. They will also provide technical guidance on cybersecurity controls and support business development efforts through proposal drafting.
Job details
About Charles River Associates CRA is a leading global consulting firm that provides independent economic and financial analysis behind litigation matters, guides businesses through critical strategy and operational issues to become more profitable, and advises governments on the economic impact of policies and regulations. Our two main services – economic and management consulting – are delivered by practice groups that focus on specific areas of expertise or industries. Click here to learn how CRA can help you launch your career. Position Overview CRA’s Forensic Services practice supports companies’ commitment to integrity by assisting them and their counsel in independently responding to allegations of fraud, waste, abuse, misconduct, and non-compliance. We are noted for deploying cross-trained teams of forensic professionals to assist our clients in gaining deeper insights and greater value more quickly. We provide accounting and forensic services as well as cybercrime investigation services. The opportunities to contribute to the team in this Senior Associate role may include (but are not limited to): Executing security and privacy investigations for CRA clients, in preparation of, and in response to, data security matters, which may include ongoing breach detection, threat analysis, incident response and malware analysis; Performing forensic analysis of digital information using standard computer forensics and evidence handling techniques and computer forensics tools; Improving the ability of the incident response team to react to incidents by evaluating and implementing new tools and processes; Contributing to the creation and maintenance of effective relationships with local, state and federal law enforcement agencies to assist in criminal matters; Preparing client communications for project milestones and senior leadership; Managing risk by implementing quality control measures and documentation; Participating in team recruiting and retention efforts and managing team morale. Manage the growth and professional development of junior staff members; Providing management support to engagement teams led by senior personnel; Supporting engagement planning and management. Participating in project team execution, analysis, and work product. Managing and supervising teams as appropriate; Providing technical assessment/audit and guidance to clients on the adequacy of cyber security controls in accordance with cybersecurity frameworks that are included in one or more of the following - NIST CSF 2.0, HIPAA, ISO 27001 and 27002, SOC2, NERC-CIP, Interfacing with client personnel; Assisting in business development efforts by drafting proposals and coordinating with other practice areas within the firm. Desired Qualifications Bachelor's or Master's degree in a related field required; 5-7 years’ experience in cyber intrusion investigation or incident response analysis; Ability to effectively prioritize multiple projects and meet timely deadlines; Experience in a hands-on technical role functioning as an incident responder, network forensic analyst or malware analyst; Experience with data analytics engagements and contributing to the execution of technology-based best practices; Working knowledge of computer hardware components, operating systems, file systems, computer networks, e-mail systems, mobile devices, IT security or incident response; Deep knowledge of networking (TCP/IP, design, traffic flow, protocols, sessions), operating systems (Windows / *nix) and web technologies. To Apply To be considered for a position in Canada, we require the following: Resume – please include current address, personal email and telephone number; If you are interested in applying for one of our international locations, please visit our Careers site to view and apply for available jobs. Career Growth and Benefits CRA’s robust skills development programs, including a commitment to offering 100 hours of training annually through formal and informal programs, encourage you to thrive as an individual and team member. Beginning with research and analysis skill building, training continues with technical training, presentation skills, internal seminars, and career mentoring and performance coaching from an assigned senior colleague. Additional leadership and collaboration opportunities exist through internal firm development activities. We offer a comprehensive total rewards program including a superior benefits package, wellness programming to support physical, mental, emotional and financial well-being, and in-house immigration support for foreign nationals and international business travelers. Work Location Flexibility CRA creates a work environment that enables our colleagues to benefit from being together in the office to best deliver on our promise of career growth, mentorship and inclusivity. At the same time, we recognize that individuals realize a range of benefits when working from home periodically. We currently expect that individuals spend at least 3 to 4 days a week working in the office (which may include traveling to another CRA office or to client meetings), with specific days determined in coordination with your practice or team. Our Commitment to Equal Employment Opportunity Charles River Associates is an equal opportunity employer (EOE). All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, age, disability, status as a protected veteran, or any other protected characteristic under applicable law. Salary and other compensation A good-faith estimate of the annual base salary range for this position is CAD$140,000 – $190,000. Starting pay within this range may vary based on factors such as education level, experience, skills, geographic location, market conditions, and other qualifications of the successful candidate. This position may be eligible for additional bonus incentive compensation. CRA offers a comprehensive benefits package, subject to eligibility requirements, which may include: extended medical, dental, and vision insurance; ERP with employer contribution; TFSP; RESP; life and disability insurance; paid time off (vacation, sick leave, holidays); paid parental leave; wellness programs and employee assistance resources; and commuter benefits.
What you’ll do
The Senior Associate will execute security and privacy investigations, perform digital forensic analysis, and manage incident response teams. They will also provide technical guidance on cybersecurity controls and support business development efforts through proposal drafting.
Requirements
Candidates must possess a Bachelor's or Master's degree and 5-7 years of experience in cyber intrusion investigation or incident response. Strong technical knowledge of networking, operating systems, and forensic tools is required.
Benefits
• Extended medical insurance • Dental insurance • Vision insurance • ERP with employer contribution • TFSP • RESP • Life insurance • Disability insurance • Paid time off • Paid parental leave • Wellness programs • Employee assistance resources • Commuter benefits • Training programs
Listed skills
- Risk Management · Preferred
- Business development · Preferred
Other relevant skills
Identified from the job description. Confirm important requirements above.
- Cybersecurity
- Incident response
- Forensic analysis
- Malware analysis
- Data security
- Threat analysis
- Breach detection
- NIST CSF 2.0
- ISO 27001
- SOC2
- Network forensics
- Data analytics
- Risk management
- Technical auditing
- Business development
- Performance Coaching
- Web Technologies
- Cybercrime
- GIAC Network Forensic Analyst
- Cyber Threat Intelligence
- IT Security
- NIST Cybersecurity Framework (CSF)
- Time Off Management
- Malware Analysis
- Planning
- Research
- Accounting
- Data Analysis
- Auditing
- Business Development
- Management Consulting
- Management
- Lawsuits
- Communication
- Computer Networks
- Computer Forensics
- Computer Hardware
- Consulting
- Loyalty Programs
- Cyber Security
- Data Security
- Operating Systems
- Digital Data
- Digital Forensics
- File Systems
- Incident Response
- Financial Analysis
- Leadership
- Health Insurance Portability And Accountability Act (HIPAA) Compliance
- International Business
Job areas
- Consulting
- Security & Safety
- Technology
- Data & Analytics
- Finance & Accounting
- Cybersecurity Incident Response Analyst
- Incident Analyst / Responder
- Database and Network Professionals Not Elsewhere Classified
- Information Security Analysts
More jobs you can apply to directly
Similar opportunities posted by employers hiring on Jobs.ca, with no external application form.
Desjardins
Administrateur ou administratrice de plateforme TI - Senior
Direct employerEasy Apply- Hybrid
- montreal ou levis
- Posted Sep 17, 2026
Connectability Inc.
Technical Sales Specialist
Direct employerEasy Apply- Hybrid
- Posted Sep 5, 2026
Government of Ontario
Senior Business Analyst
SponsoredDirect employerEasy Apply- On-site
- Toronto, ON
- Posted Aug 31, 2026
