Principal Practice Lead - DFIR
Cyderes (Cyber Defense and Response) is a pure-play, full life-cycle cybersecurity services provider with award-winning managed security services, identity and access management, and professional services designed to manage the cybersecurity risks of enterprise clients. We specialize in multi-technology, complex environments with the in speed and agility needed to tackle the most advanced cyber threats. We leverage our global scale and decades of experience to accelerate our clients’ cyber outcomes through a full lifecycle of cybersecurity services. We are a global company with operating centers in the United States, Canada, the United Kingdom, and India.
About the Role:
We are seeking a highly skilled and creative Principal Practice Lead to build out and lead our DFIR Proactive Services Team. In this role, you will design and deliver cutting-edge, engaging training experiences that prepare organizations for cyber incidents. You will own the creation and execution of gamified incident response scenarios such as tabletop exercises, capture the flag (CTF) challenges, purple team engagements, and incident response planning workshops.
Your mission is to transform traditional cybersecurity readiness training into high-impact, competitive, and interactive experiences—leveraging online platforms, scoreboards, and audience engagement tools. This role is ideal for a DFIR veteran who thrives at the intersection of technical expertise, instructional design, and customer engagement.
Responsibilities:
Lead the development and delivery of proactive DFIR offerings, including:
Customized tabletop exercises for executive and technical audiences
Capture the Flag (CTF) challenges simulating realistic threat scenarios
Purple team engagements combining offensive and defensive operations
Incident response plan reviews and development workshops
Design gamified and interactive formats using live scoring platforms, polling tools, and audience feedback technologies (e.g., Kahoot, Slido, custom leaderboards).
Engage with clients to assess preparedness gaps and tailor scenarios to their business and threat landscape.
Mentor and guide a team of DFIR consultants and red/blue teamers to deliver high-quality proactive services.
Collaborate with Threat Intelligence and IR teams to ensure real-world relevance and alignment with emerging threats.
Contribute to thought leadership, including conference presentations, blog posts, and webinars showcasing the proactive services program.
Support pre-sales activities as a subject matter expert, helping clients understand the business value of proactive DFIR services.
Requirements:
6+ years in cybersecurity, with 4+ in DFIR, red/blue teaming, or threat emulation
Strong experience leading or delivering incident response tabletop or simulation exercises
Understanding of attacker tactics (MITRE ATT&CK), incident response processes, and IR planning
Familiarity with gamified training approaches and CTF platforms (e.g., CTFd, TryHackMe, custom scoreboard setups)
Excellent presentation and facilitation skills, especially with executive audiences
Experience with purple teaming or joint offensive/defensive simulation
Demonstrated ability to build programs from the ground up with minimal supervision
Preferred: Experience with audience engagement platforms (e.g., Kahoot, Mentimeter, Slido)
Consulting experience or history of client-facing delivery in a fast-paced environment
Knowledge of scripting or platform development for interactive training tools
Cyderes is an Equal Opportunity Employer (EOE). Qualified applicants are considered for employment without regard to race, religion, color, sex, age, disability, sexual orientation, genetic information, national origin, or veteran status.
Note: This job posting is intended for direct applicants only. We request that outside recruiters do not contact us regarding this position.
Principal Practice Lead - DFIR
Cyderes (Cyber Defense and Response) is a pure-play, full life-cycle cybersecurity services provider with award-winning managed security services, identity and access management, and professional services designed to manage the cybersecurity risks of enterprise clients. We specialize in multi-technology, complex environments with the in speed and agility needed to tackle the most advanced cyber threats. We leverage our global scale and decades of experience to accelerate our clients’ cyber outcomes through a full lifecycle of cybersecurity services. We are a global company with operating centers in the United States, Canada, the United Kingdom, and India.
About the Role:
We are seeking a highly skilled and creative Principal Practice Lead to build out and lead our DFIR Proactive Services Team. In this role, you will design and deliver cutting-edge, engaging training experiences that prepare organizations for cyber incidents. You will own the creation and execution of gamified incident response scenarios such as tabletop exercises, capture the flag (CTF) challenges, purple team engagements, and incident response planning workshops.
Your mission is to transform traditional cybersecurity readiness training into high-impact, competitive, and interactive experiences—leveraging online platforms, scoreboards, and audience engagement tools. This role is ideal for a DFIR veteran who thrives at the intersection of technical expertise, instructional design, and customer engagement.
Responsibilities:
Lead the development and delivery of proactive DFIR offerings, including:
Customized tabletop exercises for executive and technical audiences
Capture the Flag (CTF) challenges simulating realistic threat scenarios
Purple team engagements combining offensive and defensive operations
Incident response plan reviews and development workshops
Design gamified and interactive formats using live scoring platforms, polling tools, and audience feedback technologies (e.g., Kahoot, Slido, custom leaderboards).
Engage with clients to assess preparedness gaps and tailor scenarios to their business and threat landscape.
Mentor and guide a team of DFIR consultants and red/blue teamers to deliver high-quality proactive services.
Collaborate with Threat Intelligence and IR teams to ensure real-world relevance and alignment with emerging threats.
Contribute to thought leadership, including conference presentations, blog posts, and webinars showcasing the proactive services program.
Support pre-sales activities as a subject matter expert, helping clients understand the business value of proactive DFIR services.
Requirements:
6+ years in cybersecurity, with 4+ in DFIR, red/blue teaming, or threat emulation
Strong experience leading or delivering incident response tabletop or simulation exercises
Understanding of attacker tactics (MITRE ATT&CK), incident response processes, and IR planning
Familiarity with gamified training approaches and CTF platforms (e.g., CTFd, TryHackMe, custom scoreboard setups)
Excellent presentation and facilitation skills, especially with executive audiences
Experience with purple teaming or joint offensive/defensive simulation
Demonstrated ability to build programs from the ground up with minimal supervision
Preferred: Experience with audience engagement platforms (e.g., Kahoot, Mentimeter, Slido)
Consulting experience or history of client-facing delivery in a fast-paced environment
Knowledge of scripting or platform development for interactive training tools
Cyderes is an Equal Opportunity Employer (EOE). Qualified applicants are considered for employment without regard to race, religion, color, sex, age, disability, sexual orientation, genetic information, national origin, or veteran status.
Note: This job posting is intended for direct applicants only. We request that outside recruiters do not contact us regarding this position.