Cyber Defense Analyst
$128.1k - $239.6kEY
At EY, we’re all in to shape your future with confidence. We’ll help you succeed in a globally connected powerhouse of diverse teams and take your career wherever you want it to go. Join EY and help to build a better working world. Today’s world is fueled by vast amounts of information. Data is more valuable than ever before. Protecting data and information systems is central to doing business, and everyone in EY Information Security has a critical role to play. Join a global team of almost 950 people who collaborate to support the business of EY by protecting EY and client information assets! Our Information Security professionals enable EY to work securely and deliver secure products and services, as well as detect and quickly respond to security events as they happen. Together, the efforts of our dedicated team helps protect the EY brand and build client trust. Within Information Security we blend risk strategy, digital identity, cyber defense, application security and technology solutions as we consider the entire security lifecycle. You will join a team of hardworking, security-focused individuals dedicated to supporting, protecting and enabling the business through innovative, secure solutions that provide speed to market and business value. The opportunity As a Red Team Operator within the Attack Surface Management team, you will emulate advanced threat actors through offensive security testing and adversary emulation. You will identify vulnerabilities, demonstrate business and operational risks, and provide actionable recommendations to improve defenses. Your key responsibilities Plan, execute, and lead red team operations and adversary emulation, including reconnaissance, initial access, execution, persistence, lateral movement, exfiltration, and impact. Conduct advanced penetration testing across environments: external/internal networks, web/cloud applications, APIs, Active Directory, identity systems, and hybrid/cloud infrastructures. Perform social engineering (e.g., phishing) as part of integrated engagements. Identify, validate, exploit, and chain vulnerabilities to demonstrate realistic attack paths and business risks. Collaborate in Purple Team exercises with defensive teams to improve detection, response, and resilience. Produce high-quality deliverables: detailed technical reports, executive summaries, risk assessments, and remediation recommendations. Mentor junior team members, provide technical oversight, and contribute to methodology improvements and tooling (e.g., custom exploits, automation scripts). Stay current with emerging threats, TTPs, exploits, and defensive countermeasures through research, conferences, and self-development. Skills and attributes for success Deep expertise in offensive security tools and frameworks (e.g., Metasploit, Cobalt Strike / custom C2, Empire, BloodHound, Nmap, Burp Suite, and others).Demonstrated ability to thinking critically Strong knowledge of networking, operating systems (Windows/Linux), Active Directory, cloud platforms (AWS/Azure/GCP), web app security, and common protocols. Proficiency in scripting/programming (Python, PowerShell, Bash, etc.) for automation and custom tooling. Ability to translate complex technical findings into clear business risk language for executives and non-technical stakeholders. Ability to accurately build out attack paths and threat models relevant to current infrastructure and threat intelligence. Independently research and stay knowledgeable of Threat Actor TTP’s and how they may be leveraged. Excellent analytical, problem-solving, and technical writing skills. Strong teamwork, independence, and communication skills. To qualify for the role you must have 6-8 years of hands-on experience in penetration testing, red teaming, or offensive security. Demonstrated experience executing red team or advanced penetration testing engagements. Relevant certifications including OSCP, CPTS (or equivalents such as GPEN, CRTO, OSEP, OSCE). Ability to work effectively in a fully remote environment. Ideally, you’ll also have Experience with threat intelligence-driven adversary emulation (e.g., MITRE ATT&CK framework, TIBER-EU). Prior consulting or client-facing experience (where applicable). Knowledge of purple teaming, security operations (SOC), incident response, and detection engineering. Creation of, or contributions to open-source tools or projects, CTF participation, or public research/blogging. What we look for We are looking for a senior operator that can operate autonomously and bring new, strategic approaches to discovering and evaluating the firm’s attack surface to improve the overall security posture. We are seeking a seasoned operator to improve the organization’s ability to reduce the attack surface while enabling the business. The ideal candidate will seek to improve others while continuously learning and identifying ways to strengthen the organization. What we offer youThe compensation ranges below are provided in order to comply with United States pay transparency laws. Other geographies will follow their local salary guidelines, which may not be a direct conversion of published US salary ranges. At EY, we’ll develop you with future-focused skills and equip you with world-class experiences. We’ll empower you in a flexible environment, and fuel you and your extraordinary talents in a diverse and inclusive culture of globally connected teams. Learn more. We offer a comprehensive compensation and benefits package where you’ll be rewarded based on your performance and recognized for the value you bring to the business. The base salary range for this job in all geographic locations in the US is $128,100 to $239,600. The base salary range for New York City Metro Area, Washington State and California (excluding Sacramento) is $153,800 to $272,300. Individual salaries within those ranges are determined through a wide variety of factors including but not limited to education, experience, knowledge, skills and geography. In addition, our Total Rewards package includes medical and dental coverage, pension and 401(k) plans, and a wide range of paid time off options. Join us in our team-led and leader-enabled hybrid model. Our expectation is for most people in external, client serving roles to work together in person 40-60% of the time over the course of an engagement, project or year. Under our flexible vacation policy, you’ll decide how much vacation time you need based on your own personal circumstances. You’ll also be granted time off for designated EY Paid Holidays, Winter/Summer breaks, Personal/Family Care, and other leaves of absence when needed to support your physical, financial, and emotional well-being. Are you ready to shape your future with confidence? Apply today. EY accepts applications for this position on an on-going basis. For those living in California, please click here for additional information. EY focuses on high-ethical standards and integrity among its employees and expects all candidates to demonstrate these qualities. EY | Building a better working world EY is building a better working world by creating new value for clients, people, society and the planet, while building trust in capital markets. Enabled by data, AI and advanced technology, EY teams help clients shape the future with confidence and develop answers for the most pressing issues of today and tomorrow. EY teams work across a full spectrum of services in assurance, consulting, tax, strategy and transactions. Fueled by sector insights, a globally connected, multi-disciplinary network and diverse ecosystem partners, EY teams can provide services in more than 150 countries and territories. EY provides equal employment opportunities to applicants and employees without regard to race, color, religion, age, sex, sexual orientation, gender identity/expression, pregnancy, genetic information, national origin, protected veteran status, disability status, or any other legally protected basis, including arrest and conviction records, in accordance with applicable law. EY is committed to providing reasonable accommodation to qualified individuals with disabilities including veterans with disabilities. If you have a disability and either need assistance applying online or need to request an accommodation during any part of the application process, please call 1-800-EY-HELP3, select Option 2 for candidate related inquiries, then select Option 1 for candidate queries and finally select Option 2 for candidates with an inquiry which will route you to EY’s Talent Shared Services Team (TSS) or email the TSS at View email address on click.appcast.io.
$76 - $76.9 per hour
...talk with your recruiter to learn more. Base pay range $76.00/hr - $76.90/hr Job Description Immediate need for a talented Cyber Security Analyst - Lead. This is a 04 months contract opportunity with long-term potential and is located in NC, GA, FL, VA, TX, SC (Remote)...SuggestedContract workLocal areaImmediate startRemote work$100k - $150k
...technological and digital security of the Bank. Mitigates exposure to cyber threats, security risks, and unauthorized access. Assesses... ..., technology, and evolving threats in order to enhance defenses for the Bank's information systems and resources. Remote eligible...SuggestedRemote work$70k - $87.5k
...where people truly BELIEVE in what they're doing!We're committed to bringing passion and customer focus to the business.The Cyber Security Analyst is responsible for contributing to, and strengthening, the Information Security function and role throughout the...SuggestedWork at officeLocal areaImmediate startRemote workHome officeFlexible hours$90k - $100k
...Job Title Cyber Security Analyst Location Charlotte, NC Salary $90,000.00 - $100,000.00 Employment Type Full-time Seniority Level Mid-Senior level Experience Required 10-20 years of experience Job Function Information Technology Industries IT Services and IT Consulting...SuggestedFull time$108.31k - $160k
...Suitability/Public Trust Fully remote Information Technology Overview GovCIO is currently hiring for a remote Cyber Threat Analyst to support the US Courts. This position will be within United States and will be fully remote. Responsibilities The Threat...SuggestedFull timeCurrently hiringRemote workFlexible hours$102.17k
...Job Description Join the Trinnex Security Team as a Senior Cyber Security Analyst, where you will operate at the intersection of cybersecurity... ...actors and develop forward‑looking threat intelligence and defense strategies. Mentor junior analysts and contribute to team...H1b- ...A community-focused credit union in North Carolina is seeking a Cyber Security Analyst II to enhance its cybersecurity posture. The role involves managing SIEM solutions, analyzing security incidents, and collaborating with IT teams. Ideal candidates will have a HS Diploma...
- ...Senior Incident Responder – Cyber Security (Regulated Environment) Channel Recruitment is working with a leading organization operating within a highly regulated healthcare environment to hire a Senior Incident Responder to join their cyber security function. This is a...Permanent employmentFull timeWork at office3 days per weekWeekday work
$102.17k - $178.78k
Trinnex in Raleigh, NC, seeks a Senior Cyber Security Analyst to safeguard software systems essential for water utilities. You will embed security into the software development lifecycle and manage vulnerabilities while collaborating with engineering teams. The ideal candidate...- Join to apply for the Cyber Security Analyst II role at SECU Join to apply for the Cyber Security Analyst II role at SECU If you are motivated and believe in the credit union philosophy of "People Helping People," join our team! Position Overview: A Security Administrator...16 hoursFull timeInternshipWork from home
$70k - $87.5k
...where people truly BELIEVE in what they're doing!We're committed to bringing passion and customer focus to the business.The Cyber Security Analyst is responsible for contributing to, and strengthening, the Information Security function and role throughout the...Work at officeLocal areaImmediate startRemote workHome officeFlexible hours$60k
...supporting mission‑critical programs across national security, defense, and public service delivery. Our work focuses on sustaining, operating... ...security and compliance requirements. Execute directed cyber actions including network access restrictions, firewall and policy...Contract workRemote work- ...magnets for a secure, resilient future. With a focus on national security and economic resiliency, we serve critical industries such as defense, aerospace, and automotive powering a high-technology future. Vulcan Elements is building a team of ambitious professionals...Permanent employmentContract workFor contractorsWork at officeRemote work
$130k
...Maximus is a trusted federal partner supporting mission‑critical programs across national security, defense, and public service delivery. Our work focuses on sustaining, operating, and improving essential government systems and services, with proven operational excellence...Contract work$80k
...Maximus is a trusted federal partner supporting mission‑critical programs across national security, defense, and public service delivery. Our work focuses on sustaining, operating, and improving essential government systems and services, with proven operational excellence...Contract work$40 per hour
...content, solve technical cybersecurity problems, and provide feedback to improve how AI systems reason about real-world threats and defenses. Cybersecurity platforms are increasingly powered by AI, but these systems still require practitioners with real-world...Hourly payFull timePart timeRemote work$50k
...Maximus is a trusted federal partner supporting mission‑critical programs across national security, defense, and public service delivery. Our work focuses on sustaining, operating, and improving essential government systems and services, with proven operational excellence...Contract work$95.3k - $158.8k
...improving ownership visibility, and enabling automated evidence collection to support continuous compliance across SOC 2, ISO 27001, Cyber Essentials, and related frameworks. This is a transformation-focused role. The successful candidate will partner with compliance,...Work at officeLocal areaRemote workFlexible hours2 days per week3 days per week$71.2k - $166.1k
Job Description The Senior Federal Information Systems Security Engineer (ISSE) serves as a technical integrator responsible for ensuring that system-to-system connections across federal boundaries are properly documented, approved, and compliant with all required cybersecurity...Contract workTemporary workWork experience placementRelocationFlexible hours$95.3k - $158.8k
hackajob is collaborating with LexisNexis to connect them with exceptional professionals for this role. Would you like to help develop a robust security program to minimize company risk? Would you like to develop your career in our great team? About the Team...Temporary workLocal areaImmediate startWorldwideFlexible hours$120k - $165k
...solutions Monitor and respond to security incidents, coordinating investigations and remediation Lead and mentor a team of security analysts and engineers Collaborate with IT, DevOps, and business units to integrate security into processes and Qualifications Bachelor’s...3 days per week$72.8k - $130k
Requisition number: 2369999 Job category: Technology Optum is a global organization that delivers care, aided by technology to help millions of people live healthier lives. The work you do with our team will directly improve health outcomes by connecting people ...Minimum wageFull timeWork experience placementLocal areaRemote work$91.7k - $163.7k
...global scale. Join us to start Caring. Connecting. Growing together. Join our team as a Senior Cybersecurity Analyst on the Optum Technology Cyber Defense team based in Raleigh, NC (or remote). In this senior role, you will be at the forefront of security automation...Minimum wageFull timeWork experience placementLocal areaRemote work- Responsibilities Good understanding of Intelerad PACS Implementation and Support Understanding of clinical workflows in Radiology domain Good knowledge of HL7 and DICOM standards Experience in handling escalation tickets Familiar with Ticketing tools and Incident management...
$59k - $79.6k
...The IT Configuration Analyst, Junior supports configuration management activities that keep the enterprise configuration management database (CMDB) accurate, complete, and reliable across infrastructure and application services. The role focuses on collecting, validating...Contract workWork at office- ...Job Summary The Service Desk Analyst Level 2 provides technical and application support to internal employees across the organization. This role supports both end‑user technology and enterprise business applications. The ideal candidate is a strong problem solver with...For contractorsWork at officeRemote workAfternoon shift
- ...Application Support Analyst Location: Raleigh, North Carolina (Remote) Role Overview This role involves participation in operational readiness, documentation, knowledge transfer, and support planning activities. The position focuses on developing a comprehensive...Remote work
$104.9k - $174.7k
...hardening Container and Kubernetes security experience Great to Have Offensive security background that informs how you think defensively Relevant certifications: OSCP, CSSLP, GWEB, GPEN, cloud security specialty, or equivalent Prior experience in legal...Local area- IT Audit Manager Raleigh, NC Apply Who We Are: At Bandwidth, we shape how the world connects. We're the global communications software company and Tier 1 network operator with global reach. The voice, messaging, and emergency services infrastructure behind ...Shift work
$104.9k - $174.7k
hackajob is collaborating with LexisNexis to connect them with exceptional professionals for this role. BASIC FUNCTIONS: This position will provide strategic and tactical technical direction in one or more or key areas, providing management with insight and input...Local area
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Cyber Defense Analyst. Be the first to apply!
- cyber security analyst Raleigh, NC
- information security consultant Raleigh, NC
- remote cyber security analyst Raleigh, NC
- cyber Raleigh, NC
- cyber sales Raleigh, NC
- insurance defense paralegal Raleigh, NC
- insurance defense Raleigh, NC
- defense contract Raleigh, NC
- insurance defense attorney Raleigh, NC
- criminal defense Raleigh, NC


