C

Senior Incident Response Analyst

icon building Company : Coalition
icon briefcase Job Type : Full Time

Number of Applicants

 : 

000+

Click to reveal the number of candidates who applied for this job.
icon loader
Apply Now
icon loader Apply Now

Let AI Supercharge Your Job Hunt!

JobCopilot scans 500,000+ company career sites daily to find jobs for you

Never miss an opportunity Save hours by auto-filling applications forms Land more interviews with tailored applications
happy man
thunder iconActivate JobCopilot

Job Description - Senior Incident Response Analyst

About us


Coalition is the world's first Active Insurance provider designed to help prevent digital risk before it strikes. Founded in 2017, Coalition combines comprehensive insurance coverage and innovative cybersecurity tools to help businesses manage and mitigate potential cyberattacks.   


Opportunities to make an impact with bold thinking are real—and happening daily at Coalition.


About the role


Coalition Incident Response (CIR) UK is hiring a Senior DFIR Analyst to lead digital forensics and incident response investigations for policyholders facing active cyber incidents. In this role, you will investigate threats such as business email compromise, ransomware, data theft, and web compromise, helping organizations move from uncertainty to clear, defensible next steps. You will work closely with the UK IR Lead and cross-functional partners across Claims, MDR, security engineering, and external counsel to deliver high-quality incident response in the UK and across Coalition’s global coverage model.

Responsibilities



  • Lead digital forensics and incident response investigations from initial scoping through recovery, reporting, and case closure.

  • Analyze cloud, email, endpoint, network, and web artifacts to reconstruct attacker activity and determine scope and impact.

  • Produce clear forensic reports and present findings to insureds, counsel, brokers, and internal stakeholders.

  • Coordinate response efforts with cross-functional partners, including CIR, Claims, MDR, security engineering, and external vendors.

  • Improve CIR UK playbooks, operating procedures, and proactive services such as tabletop exercises.

  • Support follow-the-sun response coverage by contributing to North American and Australian cases during UK business hours.


Skills and Qualifications



  • You have substantial hands-on DFIR experience and can independently lead investigations with sound judgment and clear ownership.

  • You bring strong Windows and Linux forensics skills, with the ability to collect, analyze, and explain evidence in a defensible way.

  • You have deep experience investigating Microsoft 365, email compromise, and cloud-based attack activity.

  • You can analyze logs and telemetry across networks, perimeter technologies, EDR platforms, and other security tools to build accurate incident timelines.

  • You are comfortable communicating with both technical and non-technical audiences, including presenting findings and recommendations clearly under pressure.

  • You work effectively across teams and know how to partner with internal stakeholders, external counsel, vendors, and customers during fast-moving incidents.

  • You can balance investigative depth with practical business needs, helping organizations make informed decisions during high-stress situations.

  • You are motivated by building repeatable processes, sharing lessons learned, and improving how incident response is delivered over time.


Bonus Points 



  • Experience with macOS forensics.

  • Experience with website forensics, especially WordPress or similar platforms.

  • Familiarity with forensic investigations in AWS, Google Cloud, or other major cloud environments.

  • Understanding of UK privacy or regulatory considerations and how they affect incident response decision-making.

  • Experience with scripting or automation to improve forensic workflows and operational efficiency.


Perks



  • 100% medical coverage, including outpatient care

  • Life insurance 

  • 25+ paid holidays

  • Annual home office stipend

  • 7% employer pension contribution

  • Mental and physical health wellness programs like Headspace, Wellhub

  • Competitive compensation and opportunity for advancement

  •  

Original job Senior Incident Response Analyst posted on GrabJobs ©. To flag any issues with this job please use the Report Job button on GrabJobs.
Apply Now
Share Job
Share Job

Auto-Apply to Incident Response Analyst Jobs with your AI JobCopilot

thunder icon Auto-Apply with AI

Similar Incident Response Analyst Jobs in the UK

GrabJobs is the no1 job portal in the UK, connecting you to thousands of jobs fast! Find the best jobs in the UK, apply in 1 click and get a job today!

Mobile Apps

Copyright © 2026 Grabjobs Pte.Ltd. All Rights Reserved.