Coalition Logo

Coalition

Senior Incident Response Analyst

Posted 13 Days Ago
Be an Early Applicant
Canada
Senior level
Canada
Senior level
As a Senior Incident Response Analyst, you will lead incident investigations, providing forensic analysis and strategic recommendations to enhance organizational security during incidents.
The summary above was generated by AI
About us

Coalition is the world's first Active Insurance provider designed to help prevent digital risk before it strikes. Founded in 2017, Coalition combines comprehensive insurance coverage and innovative cybersecurity tools to help businesses manage and mitigate potential cyberattacks.   

Opportunities to make an impact with bold thinking are real—and happening daily at Coalition.

Responsibilities

  • Work under the direction of IR lead and outside counsel to conduct IR investigations
  • Fulfill consumer requests and resolve incidents received via e-mail or internal ticketing systems in a timely and detail-oriented manner
  • Guide all consumer interactions professionally with a strong emphasis on consumer satisfaction
  • Assess and assess security incidents and escalate to appropriate internal teams for additional assistance
  • Triage and scope incidents for prospective consumers to identify the DFIR objectives and magnitude of effort involved to satisfy objectives
  • Provide strategic, relevant, and achievable recommendations to help advance the security posture of organizations during and after an incident
  • Communicate effectively with consumers (executives and IT) on the topics of incident type, remediation, forensics and assessment
  • Perform host and network-based forensics across Windows, Mac, and Linux platforms as well as cloud environments
  • Deliver high-quality written and verbal reports, recommendations, and findings to key stakeholders including consumers and legal counsel
  • Participate in, or work directly on additional projects, assignments, or initiatives as required
  • Mentor and coach team members and work effectively as part of team unit
  • Develop, evaluate and utilize novel methods to hunt for indicators of compromise and perform assessment across large sets of data
  • Assist in the development of internal guidelines, playbooks and knowledge base
  • Demonstrate industry thought guidance through blog posts and occasional public speaking events

Skills and Qualifications

  • 3-5 years of professional experience (2 years directly related to IR or functional area) or equivalent combination of education and experience
  • Bachelor's degree in digital forensics, cybersecurity, computer science, information systems or similar field
  • Working as part of a team in a remote matrixed consulting environment
  • Incident Response: conducting or overseeing IR investigations for organizations, answering to opportunistic and targeted threats such as BECs, FTFs, ransomware and APTs
  • Digital Forensic Analysis: a background in using different forensic assessment tools in incident response investigations to ascertain the extent and scope of compromise and possessing creativity and reason in approaching intricate forensic problems
  • Incident Remediation: strong knowledge of opportunistic and targeted attacks and aptitude to generate customized strategic and tactical remediation plans for consumers
  • Network Forensic Analysis: strong knowledge of networking protocols, network assessment tools, and aptitude to perform assessment of associated network logs
  • SOC and EDR: experience with EDR solutions and leveraging detections and analytics to mitigate threats appropriately
  • Possessing a knowledge of secure network architecture and a strong knowledge of networking fundamentals
  • Cloud Incident Response: knowledge in AWS, Azure, GCP incident response strategies

Bonus Points 

  • Excellent critical thinking skills with the experience to diagnose and troubleshoot technical issues
  • Customer oriented with a strong interest in consumer satisfaction
  • Experience to learn new technologies and concepts and comfortable using command-line interfaces
  • Experience guiding teams of highly motivated analysts
  • Communicate highly technical information to a non-technical audience
  • Experience to handle and work with consumers through high priority scenarios
  • Knowledge in project management
  • Foster a positive work environment and attitude
  • Flexibility with your work schedule in times of urgent response needs
  • Contribute to thought guidance within the DFIR industry
  • GCIH, GCIA, GCFA, GCFE, ACE, EnCE, CFCE, CISSP, or similar

Perks

  • 100% medical, dental and vision coverage
  • Flexible PTO policy
  • Annual home office stipend and WeWork access
  • Mental & physical health wellness programs (One Medical, Headspace, Gympass, and more)!
  • Competitive compensation and opportunity for advancement
 Why Coalition? 

Work at Coalition is centered on the joint mission to Protect the Unprotected. We have built a remote-first, highly inclusive culture that welcomes people from diverse backgrounds. We trust each other to take responsibility, share ownership of outcomes, and put in the work together to protect businesses from digital risk. Coalition’s exceptional growth stems from its ability to address real-world problems for organizations of all sizes while remaining true to our founding values of character, humility, responsibility, purpose, authenticity, and inclusion.

We’re always looking for collaborative, inquisitive individuals to join #OurCoalition.

Visit our Newsroom > 

Privacy Notice

Coalition is committed to protecting your privacy and handling your personal information responsibly. We collect, use, and store personal information as necessary for the recruitment process and in compliance with applicable privacy laws and regulations in all regions where we operate. We want you to understand what personal information we collect, how we use it, and your rights regarding access, correction, and deletion of your data where applicable. Information submitted, collected, and processed as part of your application is subject to Coalition's Privacy Policy. For further details, please review our full Privacy Policy or contact us with any questions regarding how your information is handled.

Our Privacy Policy > 

Anti-Discrimination Notice

Coalition is proud to be an Equal Opportunity employer. Our policy is to provide equal employment opportunities to all individuals, without discrimination or harassment on the basis of any characteristic protected by applicable laws in each country where we operate. This commitment includes, but is not limited to, ensuring equal treatment in recruitment, selection, training, promotion, transfer, compensation, and all other aspects of employment. Coalition does not tolerate discrimination or harassment of any kind, and we are dedicated to fostering an inclusive and supportive workplace.

Accommodations

Coalition is committed to providing reasonable accommodations to qualified individuals with disabilities, including applicants and employees, in accordance with applicable laws and regulations in each country where we operate. Our policy is to support equal opportunity in the hiring process by considering qualified applicants regardless of disability or other protected characteristics, unless providing accommodation would impose an undue hardship or disproportionate burden. If you require accommodation to complete an application, interview, pre-employment testing, or participate in the selection process, please contact us at [email protected]. We also consider all qualified applicants, including those with criminal histories, in line with applicable laws and regulations in each jurisdiction.

To all potential candidates: Coalition primarily does not use third-party recruiting services. Potential candidates will only be contacted by Coalition, Inc. during the recruitment process. You can always verify any opportunity on our official careers page http://www.coalitioninc.com/careers.

To all recruitment agencies: Coalition does not accept unsolicited agency resumes. Do not forward resumes to our email alias, employees, or other physical or virtual organization locations. Coalition is not responsible for any fees related to unsolicited resumes.

Top Skills

AWS
Azure
Digital Forensics Tools
Edr Solutions
GCP
Linux
macOS
Networking Protocols
Windows

Similar Jobs

18 Days Ago
Remote
7 Locations
Junior
Junior
Healthtech • Pharmaceutical
The Sr Analyst for Cybersecurity Incident Response manages technical tasks, develops security controls, and responds to incidents while applying established knowledge in technology principles.
Top Skills: Disaster RecoveryIncident ResponseInformation SecurityIntrusion DetectionRisk ManagementVulnerability Scanning
19 Days Ago
Remote
13 Locations
Mid level
Mid level
Healthtech
This role involves resolving security incidents, implementing security measures, and collaborating on threat detection and response efforts. Responsibilities include conducting audits, analyzing logs, and improving compliance against security standards.
Top Skills: AWSAzureCrowdstrikeMs DefenderWizWiz Defend
19 Days Ago
Remote
13 Locations
Mid level
Mid level
Healthtech
The Senior Incident Response Analyst resolves security incidents, recommends security enhancements, and collaborates with business units for enterprise-wide remediation. They implement incident response plans, conduct security audits, and analyze security breaches and unauthorized activities.
Top Skills: AWSAzureCloud CybersecurityCrowdstrikeFirewallsMs DefenderNetwork TechnologiesRoutersSwitches

What you need to know about the Montreal Tech Scene

With roots dating back to 1642, Montreal is often recognized for its French-inspired architecture and cobblestone streets lined with traditional shops and cafés. But what truly sets the city apart is how it blends its rich tradition with a modern edge, reflected in its evolving skyline and fast-growing tech industry. According to economic promotion agency Montréal International, the city ranks among the top in North America to invest in artificial intelligence, making it le spot idéal for job seekers who want the best of both worlds.

Key Facts About Montreal Tech

  • Number of Tech Workers: 255,000+ (2024, Tourisme Montréal)
  • Major Tech Employers: SAP, Google, Microsoft, Cisco
  • Key Industries: Artificial intelligence, machine learning, cybersecurity, cloud computing, web development
  • Funding Landscape: $1.47 billion in venture capital funding in 2024 (BetaKit)
  • Notable Investors: CIBC Innovation Banking, BDC Capital, Investissement Québec, Fonds de solidarité FTQ
  • Research Centers and Universities: McGill University, Université de Montréal, Concordia University, Mila Quebec, ÉTS Montréal

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account