Full-Time

Senior Incident Response Analyst

Confirmed live in the last 24 hours

Coalition

Coalition

501-1,000 employees

Active insurance and cybersecurity risk management

Cybersecurity
Financial Services

Mid, Senior

Remote in Canada

Category
Cybersecurity
IT & Security
Required Skills
Microsoft Azure
AWS
Linux/Unix
Google Cloud Platform
Requirements
  • 3-5 years of professional experience (2 years directly related to IR or functional area) or equivalent combination of education and experience
  • Bachelor's degree in digital forensics, cybersecurity, computer science, information systems or similar field
  • Working as part of a team in a remote matrixed consulting environment
  • Incident Response: conducting or overseeing IR investigations for organizations, answering to opportunistic and targeted threats such as BECs, FTFs, ransomware and APTs
  • Digital Forensic Analysis: a background in using different forensic assessment tools in incident response investigations to ascertain the extent and scope of compromise and possessing creativity and reason in approaching intricate forensic problems
  • Incident Remediation: strong knowledge of opportunistic and targeted attacks and aptitude to generate customized strategic and tactical remediation plans for consumers
  • Network Forensic Analysis: strong knowledge of networking protocols, network assessment tools, and aptitude to perform assessment of associated network logs
  • SOC and EDR: experience with EDR solutions and leveraging detections and analytics to mitigate threats appropriately
  • Possessing a knowledge of secure network architecture and a strong knowledge of networking fundamentals
  • Cloud Incident Response: knowledge in AWS, Azure, GCP incident response strategies
  • GCIH, GCIA, GCFA, GCFE, ACE, EnCE, CFCE, CISSP, or similar
Responsibilities
  • Work under the direction of IR lead and outside counsel to conduct IR investigations
  • Fulfill consumer requests and resolve incidents received via e-mail or internal ticketing systems in a timely and detail-oriented manner
  • Guide all consumer interactions professionally with a strong emphasis on consumer satisfaction
  • Assess and assess security incidents and escalate to appropriate internal teams for additional assistance
  • Triage and scope incidents for prospective consumers to identify the DFIR objectives and magnitude of effort involved to satisfy objectives
  • Provide strategic, relevant, and achievable recommendations to help advance the security posture of organizations during and after an incident
  • Communicate effectively with consumers (executives and IT) on the topics of incident type, remediation, forensics and assessment
  • Perform host and network-based forensics across Windows, Mac, and Linux platforms as well as cloud environments
  • Deliver high-quality written and verbal reports, recommendations, and findings to key stakeholders including consumers and legal counsel
  • Participate in, or work directly on additional projects, assignments, or initiatives as required
  • Mentor and coach team members and work effectively as part of team unit
  • Develop, evaluate and utilize novel methods to hunt for indicators of compromise and perform assessment across large sets of data
  • Assist in the development of internal guidelines, playbooks and knowledge base
  • Demonstrate industry thought guidance through blog posts and occasional public speaking events

Coalition provides Active Insurance, which combines insurance coverage with cybersecurity tools to help businesses prevent digital risks. Their main product, Coalition Control, is a platform that offers automated cyber alerts, expert guidance, and third-party risk management to help businesses manage potential cyber attacks. Coalition stands out from competitors by integrating insurance with proactive cybersecurity measures, rather than just offering reactive coverage. The goal of Coalition is to empower businesses to mitigate cyber threats before they occur, ensuring a safer digital environment.

Company Stage

Series F

Total Funding

$749M

Headquarters

San Francisco, California

Founded

2017

Growth & Insights
Headcount

6 month growth

4%

1 year growth

11%

2 year growth

28%
Simplify Jobs

Simplify's Take

What believers are saying

  • Coalition's $5 billion valuation and substantial funding rounds indicate strong investor confidence and potential for rapid growth.
  • The acquisition of Jumbo and an insurance carrier will likely lead to expanded service offerings and market reach, providing more opportunities for employees.
  • Coalition's integrated approach to cyber insurance and cybersecurity tools positions it as a leader in the industry, offering employees the chance to work on innovative solutions.

What critics are saying

  • The competitive landscape in both the cybersecurity and insurance sectors is intense, requiring Coalition to continuously innovate to maintain its edge.
  • Rapid expansion and multiple acquisitions could lead to integration challenges, potentially disrupting operations and affecting employee morale.

What makes Coalition unique

  • Coalition uniquely combines cyber insurance with cybersecurity tools, offering a comprehensive risk management solution that sets it apart from traditional insurers.
  • The acquisition of Jumbo and an insurance carrier allows Coalition to expand its service offerings and provide policies through its own admitted insurance carrier, enhancing its market position.
  • Coalition's significant funding rounds, including a $250 million Series F, underscore its financial strength and ability to invest in advanced cybersecurity technologies.

Help us improve and share your feedback! Did you find this helpful?

Benefits

Enjoy a highly fulfilling, mission-driven culture

Health, dental, and vision benefits for you and your family

Life insurance and disability benefits

Paid parental leave

401(k) plan

Wellness and commuter benefits

Flexible working hours

Open vacation days

We embrace distributed work; some benefits will vary by location

You are an owner. We offer stock options to each of our employees