Incident Response Lead

New
C
CoalitionCybersecurity Insurance
Germany, Central European business hoursFull-TimeSenior
Salary not disclosed
Apply NowOpens the employer's application page

Job Details

Languages
German, English (Minimum C1 level)
Experience
5+ years
Required Skills
AWSCybersecurity

Requirements

  • Fluency in German and English is required (Minimum C1 level).
  • Bachelor’s Degree in Computer Science, Information Security, Engineering, or other relevant subjects.
  • 5+ years of incident response or digital forensics experience.
  • Demonstrated practiced knowledge of the lifecycle of network threats, attacks, attack vectors, and methods of exploitation.
  • Knowledge of TCP/IP Protocols, network assessment, and network/security applications.
  • Experience with forensic tools (e.g., Velociraptor, Axiom, FTK, SIFT, Volatility, ELK, WireShark, Plaso, Skadi).
  • Experience with EDR tools (e.g., CrowdStrike Falcon, Carbon Black, Sentinel One).
  • Knowledge of industry standard frameworks such as NIST, HIPAA, and PCI.
  • Familiarity with GDPR and awareness of German and EU regulatory considerations.
  • Experience deploying tools to AWS and familiarity using cloud-based platforms for assessment.

Responsibilities

  • Drive incident response engagements to guide our customers through forensic investigations, contain security incidents, and provide guidance on longer term remediation recommendations.
  • Coordinate and guide incident response assistance from team members and vendors.
  • Investigate customer data breaches and malicious activity leveraging forensics tools; analyze Windows, Linux, and Mac OS X systems to identify Indicators of Compromise (IOCs).
  • Examine firewall, web, database, and other log sources to identify evidence of malicious activity.
  • Provide case reporting as required across internal and external audiences with the appropriate technical level of detail.
  • Evaluate customer security programs, technologies, controls, and business environments; recommend and develop enhancements.
  • Stay abreast of the current regulatory environment, industry trends, and related implications, including Germany- and EU-relevant security and privacy expectations.
  • Support the growth of Coalition’s CIR presence in Germany as an early in-country team member.
View Full Description & ApplyYou'll be redirected to the employer's site
View details
Apply Now