Cyber Defense Forensics Analyst
$87.7k - $164kErnst & Young
At EY, you'll have the chance to build a career as unique as you are, with the global scale, support, inclusive culture and technology to become the best version of you. And we're counting on your unique voice and perspective to help EY become even better. Join us and build an exceptional experience for yourself, and a better working world for all.
The exceptional EY experience. It's yours to build.
EY focuses on high-ethical standards and integrity among its employees and expects all candidates to demonstrate these qualities.
Today's world is fuelled by vast amounts of information. Data is more valuable than ever before. Protecting data and information systems is central to doing business, and everyone in EY Information Security has a critical role to play. Join a global team of almost 950 people who collaborate to support the business of EY by protecting EY and client information assets! Our Information Security professionals enable EY to work securely and deliver secure products and services, as well as detect and quickly respond to security events as they happen. Together, the efforts of our dedicated team helps protect the EY brand and build client trust.
Within Information Security we blend risk strategy, digital identity, cyber defense, application security and technology solutions as we consider the entire security lifecycle. You will join a team of hardworking, security-focused individuals dedicated to supporting, protecting and enabling the business through innovative, secure solutions that provide speed to market and business value.
The opportunity
Cyber Triage and Forensics (CTF) Incident Analyst will work as a senior member of the technical team responsible for security incident response for EY. The candidate will work as an escalation point for suspect or confirmed security incidents. Responsibilities include performing digital forensic analysis, following security incident response standard methodologies, malware analysis, identify indicators of compromise, support remediation or coordinate remediation efforts of a security incident, and develop documentation to support the security incident response process.
Your key responsibilities
Investigate, coordinate, bring to resolution, and report on security incidents as they are brought up or identified
Forensically analyze end user systems and servers found to have possible indicators of compromise
Analysis of artifacts collected during a security incident/forensic analysis
Identify security incidents through 'Hunting' operations within a SIEM and other relevant tools
Interface and connect with server owners, system custodians, and IT contacts to pursue security incident response activities, including: obtaining access to systems, digital artifact collection, and containment and/or remediation actions
Provide consultation and assessment on perceived security threats
Maintain, manage, improve and update security incident process and protocol documentation
Regularly provide reporting and metrics on case work
Resolution of security incidents by identifying root cause and solutions
Analyze findings in investigative matters, and develop fact based reports
Be on-call to deliver global incident response
Skills and attributes for success
Resolution of security incidents by identifying root cause and solutions
Analyze findings in investigative matters, and develop fact-based reports
Proven integrity and judgment within a professional environment
Ability to appropriately balance work/personal priorities
To qualify for the role you must have
Bachelors or Masters Degree in Computer Science, Information Systems, Engineering or a related field
5+ years experience in incident response, computer forensics analysis and/or malware reverse engineering;
Understanding of security threats, vulnerabilities, and incident response;
Understanding of electronic investigation, forensic tools, and methodologies, including: log correlation and analysis, forensically handling electronic data, knowledge of the computer security investigative processes, malware identification and analysis;
Be familiar with legalities surrounding electronic discovery and analysis;
Experience with SIEM technologies (i.e. Splunk);
Deep understanding of both Windows and Unix/Linux based operating systems;
Ideally, you'll also have
Hold or be willing to pursue related professional certifications such as GCFE, GCFA or GCIH
Background in security incident response in Cloud-based environments, such as Azure
Programming skills in PowerShell, Python and/or C/C++ Understanding of the best security practices for network architecture and server configuration
What we look for
Demonstrated integrity in a professional environment
Ability to work independently
Have a global mind-set for working with different cultures and backgrounds
Knowledgeable in business industry standard security incident response process, procedures, and life cycle
Excellent teaming skills
Excellent social, communication, and writing skills
What we offer you
The compensation ranges below are provided in order to comply with United States pay transparency laws. Other geographies will follow their local salary guidelines, which may not be a direct conversion of published US salary range/s. At EY, we'll develop you with future-focused skills and equip you with world-class experiences. We'll empower you in a flexible environment, and fuel you and your extraordinary talents in a diverse and inclusive culture of globally connected teams. Learn more .
We offer a comprehensive compensation and benefits package where you'll be rewarded based on your performance and recognized for the value you bring to the business. The base salary range for this job in all geographic locations in the US is $87,700 to $164,000. The salary range for New York City Metro Area, Washington State and California (excluding Sacramento) is $105,200 to $186,400. Individual salaries within those ranges are determined through a wide variety of factors including but not limited to education, experience, knowledge, skills and geography. In addition, our Total Rewards package includes medical and dental coverage, pension and 401(k) plans, and a wide range of paid time off options. Join us in our team-led and leader-enabled hybrid model. Our expectation is for most people in external, client serving roles to work together in person 40-60% of the time over the course of an engagement, project or year. Under our flexible vacation policy, you'll decide how much vacation time you need based on your own personal circumstances. You'll also be granted time off for designated EY Paid Holidays, Winter/Summer breaks, Personal/Family Care, and other leaves of absence when needed to support your physical, financial, and emotional well-being.
Are you ready to shape your future with confidence? Apply today.
EY accepts applications for this position on an on-going basis.
For those living in California, please click here for additional information.
EY focuses on high-ethical standards and integrity among its employees and expects all candidates to demonstrate these qualities.
EY | Building a better working world
EY is building a better working world by creating new value for clients, people, society, and the planet, while building trust in capital markets.
Enabled by data, AI and advanced technology, EY teams help clients shape the future with confidence and develop answers for the most pressing issues of today and tomorrow.
EY teams work across a full spectrum of services in assurance, consulting, tax, strategy, and transactions. Fueled by sector insights, a globally connected, multi-disciplinary network and diverse ecosystem partners, EY teams can provide services in more than 150 countries and territories.
EY provides equal employment opportunities to applicants and employees without regard to race, color, religion, age, sex, sexual orientation, gender identity/expression, pregnancy, genetic information, national origin, protected veteran status, disability status, or any other legally protected basis, including arrest and conviction records, in accordance with applicable law.?
EY is committed to providing reasonable accommodation to qualified individuals with disabilities including veterans with disabilities. If you have a disability and either need assistance applying online or need to request an accommodation during any part of the application process, please call 1-800-EY-HELP3, select Option 2 for candidate related inquiries, then select Option 1 for candidate queries and finally select Option 2 for candidates with an inquiry which will route you to EY's Talent Shared Services Team (TSS) or email the TSS at View email address on click.appcast.io .
$87.7k - $164k
Ernst & Young Oman is looking for a Cyber Triage and Forensics Incident Analyst to join their team in Hartford, Connecticut. This key role involves security incident response, digital forensic analysis, and malware investigation. The ideal candidate will possess at least...Cyber- A technology solutions company is seeking a Cyber Security Threat Analyst/IT Security Specialist in Hartford, CT. The role focuses on monitoring and analyzing security threats using tools like Tanium, Splunk, and ArcSight. Candidates should possess a Bachelor's degree in...CyberContract work
- ...is seeking a Cybersecurity Technologist in Hartford, Connecticut. In this role, you will be responsible for analyzing and managing cyber-related risks associated with third-party vendors. You will need a Bachelor’s Degree in a STEM field and five years of relevant cybersecurity...Cyber
- Travelers is hiring a Cybersecurity Technologist in Hartford, Connecticut. You will engage with third parties to assess cybersecurity risks and provide operational support for security processes. The ideal candidate will have a Bachelor's Degree in a STEM field, five years...Cyber
- ...Guidewire Admitted Cyber Project Business Analyst The project is working on the Guidewire Admitted Cyber project which is a very large initiative. We already have 2 Sr. Client on the project but we need one additional BA to work on the Integrations track of the project...CyberWork experience placement
- ...areas covering Artificial Intelligence, Cloud Migration, Custom Software Development, Data Analytics Infrastructure & Cloud Solutions, Cyber Security Services, etc. We make reasonable accommodations for clients and employees and we do not discriminate based on any...CyberWork at office
$140k - $150k
...the contract by the client. The Work The Experimentation Analyst is responsible for supporting the planning, integration, execution... ...range targeting, maritime operations, electronic warfare, space/cyber, and integrated multi-domain command and control. Receive,...CyberFull timeContract workTemporary workLocal areaImmediate startRemote workFlexible hours$82k - $102.5k
...Job Title: Senior Analyst - GIS Location: East Hartford, CT Work type: Office (on-site) The salary range for this position... ...employees that will work in electric transmission, operations, and cyber security business areas in Connecticut, Maine, Massachusetts,...CyberWork experience placementWork at officeLocal area$96.4k - $120.5k
...Department: Gas Engineering & Operations Job Title: Senior Analyst - Meter & Services Location: East Hartford, CT Work Model... ...employees that will work in electric transmission, operations, and cyber security business areas in Connecticut, Maine, Massachusetts,...CyberContract workWork at officeLocal area$68.9k - $131.1k
...Time & Labor Management Auditor RTX Corporation is an Aerospace and Defense company that provides advanced systems and services for commercial, military and government customers worldwide. It comprises three industry-leading businesses Collins Aerospace Systems, Pratt...Temporary workWork experience placementWorldwideFlexible hours$175.1k - $334.75k
CVS Health in Connecticut is seeking an Executive Director of Defense Operations to lead their Cyber Defense organization. The role focuses on defining a multi-year strategy for security operations and managing a 24x7 cyber security team. Candidates should have extensive...Cyber$50k - $52k
...General Job Title: Catastrophe Analyst Division: Exposure Management; General Management Reports To: As per Beazley's organisation... ...specialist insurer. Our products are wide ranging, from cyber & tech insurance to marine, healthcare, financial institutions...CyberTemporary workWork at officeImmediate startHome officeFlexible hours$76.4k - $138.6k
...Information Security we blend risk strategy, digital identity, cyber defense, application security and technology solutions as we consider... ...business value. The opportunity As an Offensive Security Analyst on the Attack Surface Management team, you will play a key...CyberSummer holidayLocal areaFlexible hours- ...Senior Cybersecurity Analyst Anywhere Type: Contract-to-Hire Category: Security... ...Cybersecurity Analyst to lead proactive defense, guide security architecture, and drive incident... ...and drive decisions. Identify gaps in cyber operations and implement improvements....CyberHourly payPermanent employmentContract workLocal areaRemote work
$152.7k - $294k
...to support their most critical business needs. Across Information Security, we integrate risk strategy, digital identity, cyber defense, application security, business continuity, and technology solutions to protect services throughout their lifecycle. Our work enables...CyberSummer holidayLocal areaFlexible hours$132.4k - $251.6k
Overview RTX Corporation is an Aerospace and Defense company that provides advanced systems and services for commercial, military, and government... ...with internal stakeholders (partnership peers, legal, finance, cyber) to align contract terms with company objectives. Manage vendor...CyberContract workTemporary workWorldwideRelocation package$68.9k - $131.1k
RTX Corporation is an Aerospace and Defense company that provides advanced systems and services for commercial, military and government... ...dynamic, customer‑focused, proactive, and collaborative Senior Analyst to join its Total Rewards Operations shared service function....Temporary workWorldwideFlexible hours$57.2k - $108.8k
...Job Title RTX Corporation is an Aerospace and Defense company that provides advanced systems and services for commercial, military and government customers worldwide. What You Will Do Analyze and interpret contracts and modifications for input into SAP. Prepare...Contract workTemporary workWork experience placementWorldwideFlexible hours$91k - $321.5k
...technology managed services - IT infrastructure, cloud, data analytics, application delivery maintenance application managed services, (3) cyber managed services, or (4) risk & regulatory managed services - regulatory compliance and enterprise risk programs; - Exercising an...CyberFull timeContract workH1b$140k - $180k
...Culbertson, a leading national law firm, seeks an attorney to join its Defense Litigation practice group. This position offers the opportunity... ..., construction defect, personal and advertising injury, cyber liability, and excess liability matters. Position Requirements...CyberWork at officeRemote work$94.1k - $150k
Position Overview The Cyber Threat Hunter proactively protects enterprise environments from... ..., and procedures to strengthen cyber defense and incident response operations. This role... ...accuracy. Collaborate closely with SOC analysts and detection engineers to recommend new...CyberContract workWork at office- ...Risk Analyst Enterprise Risk Management (ERM) operates as an independent second line of defense, responsible for maintaining and enforcing Talcott's risk management framework across all subsidiaries. One of our key accountabilities is to monitor key exposures across...Work at office
- ...Senior Risk Analyst Enterprise Risk Management (ERM) operates as an independent second line of defense, responsible for maintaining and enforcing Talcott's risk management framework across all subsidiaries. One of our key accountabilities is to monitor key exposures...Work at office
$115k - $130k
...coverage analyses Monitoring litigation/suits and managing local defense counsel & relationship Continually assessing exposures and... ...a broad portfolio of commercial products, including technology, cyber & data risk, multiple professional liability lines, media,...CyberTemporary workPrivate practiceWork at officeLocal area$175.1k - $334.75k
...simplify health care one person, one family and one community at a time. Job Description The Executive Director of Defense Operations, within the Cyber Defense organization, is responsible for defining and executing a multi‑year, enterprise‑wide strategy for the Security...CyberHourly payFull timeTemporary workLocal area- ...projects serving emerging technologies in aerospace, automotive and defense. Requirements ~ BS in accounting or finance with 15... ...Help protect company assets against physical/virtual/cyber threats. Help oversee and administer disaster prevention and recovery...CyberPermanent employmentContract workFor contractorsWork at office
$28.37 - $30.53 per hour
...better, faster. This multi‑dimensional approach enables us to solve the most critical and large‑scale challenges across the aerospace & defense, automotive, energy, hi‑tech, healthcare, medical devices, rail and semiconductor industries. Responsibilities Ensure all...Temporary work$15.68 - $71.3 per hour
...the art as they provide services and solutions in the areas of defense, security, intelligence, infrastructure, and environmental. We promote... ...5 years of experience, Parsons is uniquely qualified to deliver cyber/converged security, technology-based intellectual property, and...CyberContract workFor contractorsFor subcontractorLocal areaWorldwideRelocationFlexible hours- Prattwhitney is seeking a Cybersecurity & Compliance Leader (CCL) to partner with business domains, ensuring cybersecurity priorities are understood and enforced. This hybrid role involves guiding cybersecurity integration into business plans, leading risk governance, and...Cyber
- A leading insurance firm based in Connecticut is seeking a senior leader for their Cybersecurity organization. This role involves advancing the Cybersecurity Zero Trust architecture, managing a team of Cybersecurity Architects, and collaborating with senior leaders to innovate...CyberFlexible hours
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Cyber Defense Forensics Analyst. Be the first to apply!
- remote cyber security analyst Hartford, CT
- cyber security analyst Hartford, CT
- information security consultant Hartford, CT
- cyber Hartford, CT
- defense analyst Hartford, CT
- defense Hartford, CT
- defense attorney Hartford, CT
- defense security service Hartford, CT
- insurance defense paralegal Hartford, CT
- insurance defense attorney Hartford, CT

