Senior Incident Response Analyst

New
C
Coalition, Inc.Active Insurance
UKFull-TimeSenior
Salary not disclosed
Apply NowOpens the employer's application page

Job Details

Experience
Substantial hands-on DFIR experience

Requirements

  • Substantial hands-on DFIR experience
  • Strong Windows forensics skills
  • Strong Linux forensics skills
  • Ability to collect, analyze, and explain evidence in a defensible way
  • Deep experience investigating Microsoft 365
  • Deep experience investigating email compromise
  • Deep experience investigating cloud-based attack activity
  • Ability to analyze logs and telemetry across networks
  • Ability to analyze logs and telemetry across perimeter technologies
  • Ability to analyze logs and telemetry across EDR platforms
  • Ability to analyze logs and telemetry across other security tools to build accurate incident timelines
  • Comfortable communicating with both technical and non-technical audiences
  • Ability to present findings and recommendations clearly under pressure
  • Ability to work effectively across teams and partner with internal stakeholders, external counsel, vendors, and customers during fast-moving incidents
  • Ability to balance investigative depth with practical business needs
  • Motivated by building repeatable processes, sharing lessons learned, and improving how incident response is delivered over time

Responsibilities

  • Lead digital forensics and incident response investigations from initial scoping through recovery, reporting, and case closure.
  • Analyze cloud, email, endpoint, network, and web artifacts to reconstruct attacker activity and determine scope and impact.
  • Produce clear forensic reports and present findings to insureds, counsel, brokers, and internal stakeholders.
  • Coordinate response efforts with cross-functional partners, including CIR, Claims, MDR, security engineering, and external vendors.
  • Improve CIR UK playbooks, operating procedures, and proactive services such as tabletop exercises.
  • Support follow-the-sun response coverage by contributing to North American and Australian cases during UK business hours.
View Full Description & ApplyYou'll be redirected to the employer's site
View details
Apply Now