Cyber Defense Forensics Analyst
$87.7k - $164kErnst & Young Oman
Within Information Security we blend risk strategy, digital identity, cyber defense, application security and technology solutions as we consider the entire security lifecycle. You will join a team of hardworking, security-focused individuals dedicated to supporting, protecting and enabling the business through innovative, secure solutions that provide speed to market and business value. The opportunity Cyber Triage and Forensics (CTF) Incident Analyst will work as a senior member of the technical team responsible for security incident response for EY. The candidate will work as an escalation point for suspect or confirmed security incidents. Responsibilities include performing digital forensic analysis, following security incident response standard methodologies, malware analysis, identifying indicators of compromise, supporting remediation or coordinating remediation efforts of a security incident, and developing documentation to support the security incident response process. Responsibilities Investigate, coordinate, bring to resolution, and report on security incidents as they are brought up or identified Forensically analyze end user systems and servers found to have possible indicators of compromise Analyze artifacts collected during a security incident/forensic analysis Identify security incidents through ‘Hunting’ operations within a SIEM and other relevant tools Interface and connect with server owners, system custodians, and IT contacts to pursue security incident response activities, including obtaining access to systems, digital artifact collection, and containment and/or remediation actions Provide consultation and assessment on perceived security threats Maintain, manage, improve and update security incident process and protocol documentation Regularly provide reporting and metrics on case work Resolve security incidents by identifying root cause and solutions Analyze findings in investigative matters and develop fact‑based reports Be on‑call to deliver global incident response Skills and attributes for success Resolve security incidents by identifying root cause and solutions Analyze findings in investigative matters and develop fact‑based reports Proven integrity and judgement within a professional environment Ability to appropriately balance work/personal priorities Qualifications Bachelor's or Master's Degree in Computer Science, Information Systems, Engineering or a related field 5+ years experience in incident response, computer forensics analysis and/or malware reverse engineering Understanding of security threats, vulnerabilities, and incident response Understanding of electronic investigation, forensic tools, and methodologies, including: log correlation and analysis, forensically handling electronic data, knowledge of the computer security investigative processes, malware identification and analysis Familiarity with legalities surrounding electronic discovery and analysis Experience with SIEM technologies (i.e. Splunk) Deep understanding of both Windows and Unix/Linux based operating systems Preferred qualifications Hold or be willing to pursue related professional certifications such as GCFE, GCFA or GCIH Background in security incident response in Cloud‑based environments, such as Azure Programming skills in PowerShell, Python and/or C/C++; understanding of best security practices for network architecture and server configuration Desired attributes Demonstrated integrity in a professional environment Ability to work independently Have a global mindset for working with different cultures and backgrounds Knowledgeable in business industry standard security incident response process, procedures, and life cycle Excellent teaming skills Excellent social, communication, and writing skills Compensation and benefits The compensation ranges below are provided in order to comply with United States pay transparency laws. Other geographies will follow their local salary guidelines, which may not be a direct conversion of published US salary ranges. At EY, we’ll develop you with future‑focused skills and equip you with world‑class experiences. We’ll empower you in a flexible environment and fuel you and your extraordinary talents in a diverse and inclusive culture of globally connected teams. Learn more. We offer a comprehensive compensation and benefits package where you’ll be rewarded based on your performance and recognized for the value you bring to the business. The base salary range for this job in all geographic locations in the US is $87,700 to $164,000. The salary range for New York City Metro Area, Washington State and California (excluding Sacramento) is $105,200 to $186,400. Individual salaries within those ranges are determined through a wide variety of factors including but not limited to education, experience, knowledge, skills and geography. In addition, our Total Rewards package includes medical and dental coverage, pension and 401(k) plans, and a wide range of paid time off options. Join us in our team‑led and leader‑enabled hybrid model. Our expectation is for most people in external, client serving roles to work together in person 40‑60% of the time over the course of an engagement, project or year. Under our flexible vacation policy, you’ll decide how much vacation time you need based on your own personal circumstances. You’ll also be granted time off for designated EY Paid Holidays, Winter/Summer breaks, Personal/Family Care, and other leaves of absence when needed to support your physical, financial, and emotional well‑being. Equal Employment Opportunity Statement EY provides equal employment opportunities to applicants and employees without regard to race, color, religion, age, sex, sexual orientation, gender identity/expression, pregnancy, genetic information, national origin, protected veteran status, disability status, or any other legally protected basis, including arrest and conviction records, in accordance with applicable law. Reasonable Accommodation EY is committed to providing reasonable accommodation to qualified individuals with disabilities including veterans with disabilities. If you have a disability and either need assistance applying online or need to request an accommodation during any part of the application process, please call 1‑800‑EY‑HELP3, select Option2 for candidate‑related inquiries, then select Option1 for candidate queries and finally select Option2 for candidates with an inquiry which will route you to EY’s Talent Shared Services Team (TSS) or email the TSS at View email address on click.appcast.io. #J-18808-Ljbffr Ernst & Young Oman
- A healthcare organization is looking for a senior cybersecurity professional to manage and enhance the security of data and systems. This role requires overseeing threat monitoring, coordinating responses to incidents, and collaborating with various teams to improve security...Cyber
$128.1k - $239.6k
...prevents, detects, responds and mitigates cyber-risk, protecting EY and client data, and... ...management systems. The opportunity The Active Defense team is responsible for four core areas:... ...security. In an Active Defense Analyst, we are looking for someone who has experience...CyberSummer holidayLocal areaRemote workFlexible hoursNight shiftWeekend work- ...Effectively communicates investigative findings to non-technical audiences. Provides consultation in regular operations meeting with Cyber Risk Defense Center (CRDC) teams. Drives closed loop processes on security efforts by providing feedback to the TDA leads and/or...CyberWork experience placement
$1,600 per month
...Overview Location: Washington, USA Role: Information Security Analyst / Cybersecurity Professional We are hiring an experienced Information... ...the company’s sensitive information and systems from potential cyber threats. Responsibilities Conduct regular security audits....Cyber$142.5k - $190k
JPMorgan Chase in Seattle is seeking a Technology Support Lead to provide critical support within the Cybersecurity Incident Management team. This role involves managing cybersecurity incidents, executing firm-wide strategies, and enhancing technological resilience. Ideal...Cyber- Ernst & Young Oman is seeking a Cyber Risk professional to manage and assess cyber risks effectively. Responsibilities include collaborating with IT teams, conducting risk assessments, and ensuring compliance with cybersecurity regulations. The ideal candidate will have...Cyber
- Nscale is seeking a Director of Cyber Defense Engineering. This key role involves owning Nscale’s full defensive stack and creating a robust cyber defense program. You will work closely with engineering and executive leadership to manage a global SOC and lead incident responses...Cyber
$100k - $115k
As a member of the Information Services Department, the Senior Analyst, Cybersecurity Operations & Response supports the execution and continuous... ...to help protect the Firm’s systems, applications, and data from cyber threats. ESSENTIAL FUNCTIONS Support the day-to-day operation...CyberFull timeContract workWork at office- ...line with the organization's Information Security Policy. This role involves coordinating and prioritizing key activities, formalizing cyber risk controls, and leading the team to ensure compliance and continuous control monitoring. The Director will also be tasked with...CyberWork experience placement
- Forrester is seeking a Senior Analyst in Seattle, WA, to provide strategic advice and conduct research for risk management leaders. Candidates... ...strong knowledge of risk management practices and expertise in cyber risk quantification, along with superior presentation and...Cyber
$141.7k - $202.7k
...industry partners to enhance information sharing and collective defense. Ensures alignment between external engagement and internal cybersecurity... ...situational awareness, and improve coordinated response to cyber threats. Coordinate internal participation across cybersecurity...CyberShift workDay shift- ...the primary contact for Varonis customers and the first line of defense for data. All Varonis employees are Customer Success and Technical... ...data to e nsure all data is protected from insider threats, cyber-attacks, and policy violations Help customers identify and mitigate...Cyber
- ...Halcyon was awarded Inc’s prestigious Best Places to Work honor, the Fortune Magazine Cyber 60, Fast Company’s Next Big Thing in Tech, CRN\'s Stellar Startups, The Information 50, Cyber Defense Magazine’s Top InfoSec Innovators and more. If that’s not enough to grab your...CyberRemote job
- ...language/culture, training/education/instruction, IT, cyber security, and intelligence (analysts, CI, HUMINT, SIGINT, etc.). Global Dimensions is currently... ...or information from disparate sources, and develop defensible judgements and conclusions based on accepted research...CyberWork at office
$71.6k - $136.89k
VMOD Analyst (Government) job at AT&T. Bellevue, WA. This position requires office presence of a minimum of 5 days per week and is only... ...management tools, especially Nessus. Prior experience supporting Cyber Security Service Provider (CSSP) operations. Strong analytical and...CyberTemporary workFor contractorsWork at officeLocal areaRelocation$170k - $200k
...transforming land operations for modern defense. The company leverages over a decade of advanced... ...our autonomous ground vehicles against cyber threats in complex, contested... ...security requirements, covering log collection, forensics, and automated intrusion detection and prevention...CyberContract work$70k - $80k
...to stop breaches, simplify security, and shape the future of cyber defense. Ifyou'repassionate aboutcutting-edgetechnology, thrive in a collaborative... ..., and you could be a part of it. From AI-assisted triage to analyst copilots that elevate humanexpertise, we combine machine...CyberTemporary workCasual workWork at officeLocal areaRemote workShift work$119k - $193k
About This Role: Forrester is currently looking for a Senior Analyst to conduct research and deliver strategic advice for risk management... ...practices and methods; deep knowledge and expertise in cyber risk quantification; and deep experience in developing, maintaining...CyberFor contractors- ...Officer, or equivalent industry leadership experience supporting Defense missions. Deep expertise in enterprise IT modernization,... ...integration, and delivery of scalable IT solutions across hybrid cloud, cyber, data, and network domains. Driving alignment with DISA‑led...Cyber
- Synack is looking for a Sales Director to drive business within the Defense Industrial Base. In this role, you will leverage your relationships and sales skills to deliver growth and manage client needs efficiently. The ideal candidate will have 8+ years of sales experience...Cyber
- The Institute for Defense Analyses (IDA) at the University of Washington seeks an Assistant Professor for a tenure-track faculty position... .... Areas of focus include Model-Based Systems Engineering, Cyber-Physical Systems, and Human-Autonomy Teaming. The role requires...Cyber
- Senior Information Security & Cyber Risk Analyst in Vancouver, WA Location: Washington Job Function: Information Security JOB SUMMARY: Responsible for planning and implementation of information security and cyber risk policies, procedures, standards, and controls. Facilitates...CyberLocal area
- ...leading-edge support to federal customers, with a particular focus on Defense and National Security mission sets. We leverage more than 17... ...-level role provides strategic leadership and multidisciplinary cyber expertise to ensure secure operations and risk-managed digital...CyberFor contractors
$87.8k - $160.9k
...clients to build confidence and trust with their customers, the overall market and when required by regulation or contract. For our Cyber Risk services, the ideal candidate will be responsible for identifying, evaluating, and managing cyber risks across the organization...CyberContract workSummer holidayWork at officeFlexible hours- ...Service‑Disabled Veteran Owned Small Business (SDVOSB) providing Cyber Security, Intelligence Analysis, Financial Management,... ...Management support to the Intelligence Community (IC), the Department of Defense (DoD), and other federal government customers. We take pride in...CyberMonday to FridayShift workDay shift
- ...team is growing, and we’re looking for an IT End User Services Analyst to join our supportive, hands‑on team, based at our Bellevue site... ...written and verbal communication skills. Sound understanding of cyber security and data protection practices. A reliable, hands‑on...CyberWork at officeOverseas
$128.1k - $239.6k
...A leading global professional services firm is seeking an Active Defense Analyst in Seattle, WA, to enhance security measures. You will conduct threat hunting, emulate attacker behaviors, and collaborate with teams to remediate vulnerabilities. Required qualifications...Flexible hours$150k - $175k
Sigma Defense is seeking a Software Engineer to provide technical support for the US Navy Above Water Sensors portfolio. Responsibilities include systems analysis, software implementation, and contributing to documentation. Candidates must be US citizens with relevant experience...Cyber$275k - $315k
...powers the future. About the Role We are hiring a Director of Cyber Defense Engineering to own Nscale’s full defensive stack and build a... ...shift handoffs, triage discipline, escalation thresholds, and analyst development. Drive AI-assisted triage and alert enrichment to...CyberFlexible hoursShift work$87.7k - $164k
Ernst & Young Oman is seeking a Cyber Triage and Forensics Incident Analyst in Seattle. This role involves investigating security incidents, performing digital forensic analyses, and supporting remediation efforts. The ideal candidate will have over 5 years of experience...CyberFlexible hours
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Cyber Defense Forensics Analyst. Be the first to apply!
- cyber security analyst Seattle, WA
- information security consultant Seattle, WA
- remote cyber security analyst Seattle, WA
- cyber Seattle, WA
- defense attorney Seattle, WA
- insurance defense attorney Seattle, WA
- defense Seattle, WA
- defense security service Seattle, WA
- insurance defense paralegal Seattle, WA
- defense analyst Seattle, WA

