EU remote
Incident Response Lead, Germany (m/w/d)*
About this role
About us Coalition is the world's first Active Insurance provider designed to help prevent digital risk before it strikes. Founded in 2017, Coalition combines comprehensive insurance coverage and innovative cybersecurity tools to help businesses manage and mitigate potential cyberattacks. Opportunities to make an impact with bold thinking are real—and happening daily at Coalition. About the Role As one of our first Cyber Incident Response (CIR) hires in Germany, this role will help establish and expand Coalition’s incident response presence in the market.
This person will serve customers in Germany and the broader region, and must be fluent in German and English, with the ability to communicate highly technical concepts clearly to both technical and non-technical audiences. Responsibilities Drive incident response engagements to guide our customers through forensic investigations, contain security incidents, and provide guidance on longer term remediation recommendations.
Coordinate and guide incident response assistance from team members and vendors. Investigate customer data breaches and malicious activity leveraging forensics tools; analyze Windows, Linux, and Mac OS X systems to identify Indicators of Compromise (IOCs); examine firewall, web, database, and other log sources to identify evidence of malicious activity. Provide case reporting as required across internal and external audiences with the appropriate technical level of detail for threat researchers and/or business customers.
Evaluate customer security programs, technologies, controls, and business environments; recommend and develop enhancements. Provide recommendations on solutions to help customers navigate information security risk. Track emerging security practices and contribute to building internal processes and our various products. Stay abreast of the current regulatory environment, industry trends, and related implications, including Germany- and EU-relevant security and privacy expectations.
Support the growth of Coalition’s CIR presence in Germany as an early in-country team member, helping build trusted relationships with local customers and partners. Skills and Qualifications Fluency in German and English is required. Minimum C1 level. Bachelor’s Degree in Computer Science, Information Security, Engineering, or other relevant subjects. 5+ years of incident response or digital forensics experience. Demonstrated practiced knowledge of the lifecycle of network threats, attacks, attack vectors, and methods of exploitation with a knowledge of intrusion set tactics, techniques, and procedures.