Senior Incident Response Analyst

Be among the first applicants.
Coalition
Canada
Remote
CAD 80,000 - 100,000
Be among the first applicants.
Yesterday
Job description

Coalition

Coalition combines comprehensive cyber insurance coverage and security services to help businesses prevent digital risk before it strikes.

Coalition is the world's first Active Insurance provider designed to help prevent digital risk before it strikes. Founded in 2017, Coalition combines broad insurance coverage with a digital risk assessment and continuous security monitoring to help organizations protect themselves in today’s hyper-connected world.

Opportunities to make an impact with bold thinking are real - and happening daily.

Responsibilities

  • Work under the direction of IR lead and outside counsel to conduct IR investigations
  • Fulfill consumer requests and resolve incidents received via e-mail or internal ticketing systems in a timely and detail-oriented manner
  • Guide all consumer interactions professionally with a strong emphasis on consumer satisfaction
  • Assess and escalate security incidents to appropriate internal teams for additional assistance
  • Triage and scope incidents for prospective consumers to identify the DFIR objectives and magnitude of effort involved
  • Provide strategic, relevant, and achievable recommendations to help advance the security posture of organizations during and after an incident
  • Communicate effectively with consumers (executives and IT) on incident type, remediation, forensics, and assessment
  • Perform host and network-based forensics across Windows, Mac, and Linux platforms as well as cloud environments
  • Deliver high-quality written and verbal reports, recommendations, and findings to key stakeholders including consumers and legal counsel
  • Participate in additional projects, assignments, or initiatives as required
  • Mentor and coach team members and work effectively as part of a team
  • Develop, evaluate and utilize novel methods to hunt for indicators of compromise and perform assessments across large data sets
  • Assist in the development of internal guidelines, playbooks, and knowledge base
  • Demonstrate industry thought leadership through blog posts and occasional public speaking events

Skills and Qualifications

  • 3-5 years of professional experience (2 years directly related to IR or functional area) or equivalent combination of education and experience
  • Bachelor's degree in digital forensics, cybersecurity, computer science, information systems or similar field
  • Experience working as part of a team in a remote consulting environment
  • Incident Response: conducting or overseeing IR investigations for organizations, addressing opportunistic and targeted threats
  • Digital Forensic Analysis: experience using forensic assessment tools in incident response investigations
  • Incident Remediation: strong knowledge of opportunistic and targeted attacks and ability to create strategic remediation plans
  • Network Forensic Analysis: knowledge of networking protocols and assessment tools
  • SOC and EDR: experience with EDR solutions and leveraging detections to mitigate threats
  • Knowledge of secure network architecture and networking fundamentals
  • Cloud Incident Response: knowledge in AWS, Azure, GCP incident response strategies

Bonus Points

  • Excellent critical thinking skills with experience diagnosing and troubleshooting technical issues
  • Customer-oriented with a strong interest in consumer satisfaction
  • Ability to learn new technologies and concepts and comfortable using command-line interfaces
  • Experience guiding teams of highly motivated analysts
  • Ability to communicate technical information to a non-technical audience
  • Experience working with consumers through high priority scenarios
  • Knowledge in project management
  • Foster a positive work environment
  • Flexibility with work schedule in urgent response needs
  • Contribute to thought leadership within the DFIR industry
  • Relevant certifications (GCIH, GCIA, GCFA, GCFE, ACE, EnCE, CFCE, CISSP, etc.)

Why Coalition?

We’re a remote-first, mission-driven team committed to building a more inclusive culture with people of all different backgrounds. We trust our team members to take responsibility, share ownership, and put in the work to help us in our pursuit to solve digital risk.

Coalition’s exceptional growth stems from its ability to address real-world problems for organizations of all sizes and remain true to our founding values of character, humility, responsibility, purpose, authenticity, and inclusion.

We’re always looking for collaborative, inquisitive individuals to join #OurCoalition.

Get a free, confidential resume review.
Select file or drag and drop it
Avatar
Free online coaching
Improve your chances of getting that interview invitation!
Be the first to explore new Senior Incident Response Analyst jobs in Canada