Cyber Defense Analyst
$128.1k - $239.6kErnst & Young
At EY, we're all in to shape your future with confidence.
We'll help you succeed in a globally connected powerhouse of diverse teams and take your career wherever you want it to go. Join EY and help to build a better working world.
Today's world is fueled by vast amounts of information. Data is more valuable than ever before. Protecting data and information systems is central to doing business, and everyone in EY Information Security has a critical role to play. Join a global team of almost 950 people who collaborate to support the business of EY by protecting EY and client information assets! Our Information Security professionals enable EY to work securely and deliver secure products and services, as well as detect and quickly respond to security events as they happen. Together, the efforts of our dedicated team helps protect the EY brand and build client trust.
Within Information Security we blend risk strategy, digital identity, cyber defense, application security and technology solutions as we consider the entire security lifecycle. You will join a team of hardworking, security-focused individuals dedicated to supporting, protecting and enabling the business through innovative, secure solutions that provide speed to market and business value.
The opportunity
As a Red Team Operator within the Attack Surface Management team, you will emulate advanced threat actors through offensive security testing and adversary emulation. You will identify vulnerabilities, demonstrate business and operational risks, and provide actionable recommendations to improve defenses.
Your key responsibilities
Plan, execute, and lead red team operations and adversary emulation, including reconnaissance, initial access, execution, persistence, lateral movement, exfiltration, and impact.
Conduct advanced penetration testing across environments: external/internal networks, web/cloud applications, APIs, Active Directory, identity systems, and hybrid/cloud infrastructures.
Perform social engineering (e.g., phishing) as part of integrated engagements.
Identify, validate, exploit, and chain vulnerabilities to demonstrate realistic attack paths and business risks.
Collaborate in Purple Team exercises with defensive teams to improve detection, response, and resilience.
Produce high-quality deliverables: detailed technical reports, executive summaries, risk assessments, and remediation recommendations.
Mentor junior team members, provide technical oversight, and contribute to methodology improvements and tooling (e.g., custom exploits, automation scripts).
Stay current with emerging threats, TTPs, exploits, and defensive countermeasures through research, conferences, and self-development.
Skills and attributes for success
Deep expertise in offensive security tools and frameworks (e.g., Metasploit, Cobalt Strike / custom C2, Empire, BloodHound, Nmap, Burp Suite, and others).Demonstrated ability to thinking critically
Strong knowledge of networking, operating systems (Windows/Linux), Active Directory, cloud platforms (AWS/Azure/GCP), web app security, and common protocols.
Proficiency in scripting/programming (Python, PowerShell, Bash, etc.) for automation and custom tooling.
Ability to translate complex technical findings into clear business risk language for executives and non-technical stakeholders.
Ability to accurately build out attack paths and threat models relevant to current infrastructure and threat intelligence.
Independently research and stay knowledgeable of Threat Actor TTP's and how they may be leveraged.
Excellent analytical, problem-solving, and technical writing skills.
Strong teamwork, independence, and communication skills.
To qualify for the role you must have
6-8 years of hands-on experience in penetration testing, red teaming, or offensive security.
Demonstrated experience executing red team or advanced penetration testing engagements.
Relevant certifications including OSCP, CPTS (or equivalents such as GPEN, CRTO, OSEP, OSCE).
Ability to work effectively in a fully remote environment.
Ideally, you'll also have
Experience with threat intelligence-driven adversary emulation (e.g., MITRE ATT&CK framework, TIBER-EU).
Prior consulting or client-facing experience (where applicable).
Knowledge of purple teaming, security operations (SOC), incident response, and detection engineering.
Creation of, or contributions to open-source tools or projects, CTF participation, or public research/blogging.
What we look for
We are looking for a senior operator that can operate autonomously and bring new, strategic approaches to discovering and evaluating the firm's attack surface to improve the overall security posture. We are seeking a seasoned operator to improve the organization's ability to reduce the attack surface while enabling the business. The ideal candidate will seek to improve others while continuously learning and identifying ways to strengthen the organization.
What we offer you
The compensation ranges below are provided in order to comply with United States pay transparency laws. Other geographies will follow their local salary guidelines, which may not be a direct conversion of published US salary ranges. At EY, we'll develop you with future-focused skills and equip you with world-class experiences. We'll empower you in a flexible environment, and fuel you and your extraordinary talents in a diverse and inclusive culture of globally connected teams. Learn more .
We offer a comprehensive compensation and benefits package where you'll be rewarded based on your performance and recognized for the value you bring to the business. The base salary range for this job in all geographic locations in the US is $128,100 to $239,600. The base salary range for New York City Metro Area, Washington State and California (excluding Sacramento) is $153,800 to $272,300. Individual salaries within those ranges are determined through a wide variety of factors including but not limited to education, experience, knowledge, skills and geography. In addition, our Total Rewards package includes medical and dental coverage, pension and 401(k) plans, and a wide range of paid time off options.
Join us in our team-led and leader-enabled hybrid model. Our expectation is for most people in external, client serving roles to work together in person 40-60% of the time over the course of an engagement, project or year.
Under our flexible vacation policy, you'll decide how much vacation time you need based on your own personal circumstances. You'll also be granted time off for designated EY Paid Holidays, Winter/Summer breaks, Personal/Family Care, and other leaves of absence when needed to support your physical, financial, and emotional well-being.
Are you ready to shape your future with confidence? Apply today.
EY accepts applications for this position on an on-going basis.
For those living in California, please click here for additional information.
EY focuses on high-ethical standards and integrity among its employees and expects all candidates to demonstrate these qualities.
EY | Building a better working world
EY is building a better working world by creating new value for clients, people, society and the planet, while building trust in capital markets.
Enabled by data, AI and advanced technology, EY teams help clients shape the future with confidence and develop answers for the most pressing issues of today and tomorrow.
EY teams work across a full spectrum of services in assurance, consulting, tax, strategy and transactions. Fueled by sector insights, a globally connected, multi-disciplinary network and diverse ecosystem partners, EY teams can provide services in more than 150 countries and territories.
EY provides equal employment opportunities to applicants and employees without regard to race, color, religion, age, sex, sexual orientation, gender identity/expression, pregnancy, genetic information, national origin, protected veteran status, disability status, or any other legally protected basis, including arrest and conviction records, in accordance with applicable law.?
EY is committed to providing reasonable accommodation to qualified individuals with disabilities including veterans with disabilities. If you have a disability and either need assistance applying online or need to request an accommodation during any part of the application process, please call 1-800-EY-HELP3, select Option 2 for candidate related inquiries, then select Option 1 for candidate queries and finally select Option 2 for candidates with an inquiry which will route you to EY's Talent Shared Services Team (TSS) or email the TSS at View email address on click.appcast.io .
$87.7k - $164k
...Information Security we blend risk strategy, digital identity, cyber defense, application security and technology solutions as we consider... ...The opportunity Cyber Triage and Forensics (CTF) Incident Analyst will work as a senior member of the technical team responsible...SuggestedSummer holidayLocal areaFlexible hours- ...make an impact every day? Serco is the place for you! Join our Defense team supporting our CNIC program in this exciting role based out... ...Degree with Technical training related to Information Technology, Cyber Security, Computer Science, or related discipline Or a High...SuggestedFull timeContract workPart timeInterim roleLocal areaFlexible hours
$102.17k
...Job Description Join the Trinnex Security Team as a Senior Cyber Security Analyst, where you will operate at the intersection of cybersecurity... ...actors and develop forward‑looking threat intelligence and defense strategies. Mentor junior analysts and contribute to team...SuggestedH1b- Trinnex is looking for a Senior Cyber Security Analyst to join their Security Team. This role focuses on safeguarding software systems that support water utilities. You will work on advanced threat detection and ensure applications are resilient against evolving threats...Suggested
$130k
...Maximus is a trusted federal partner supporting mission-critical programs across national security, defense, and public service delivery. Our work focuses on sustaining, operating, and improving essential government systems and services, with proven operational excellence...SuggestedContract workRemote work$50k
...Maximus is a trusted federal partner supporting mission-critical programs across national security, defense, and public service delivery. Our work focuses on sustaining, operating, and improving essential government systems and services, with proven operational excellence...Contract work$80k
...Maximus is a trusted federal partner supporting mission‑critical programs across national security, defense, and public service delivery. Our work focuses on sustaining, operating, and improving essential government systems and services, with proven operational excellence...Contract work$68.4k
...Responsibilities include business/systems analysis, requirements definition and documentation, system design, and problem resolution. The analyst communicates with system end-users to understand issues and implement solutions.? ESSENTIAL RESPONSIBILITIES Plans, designs/...For contractorsWork experience placementWork at officeLocal areaRemote work$59k - $79.6k
...The IT Configuration Analyst, Junior supports configuration management activities that keep the enterprise configuration management database (CMDB) accurate, complete, and reliable across infrastructure and application services. The role focuses on collecting, validating...Contract workWork at office$120k - $150k
...that is passionate about creating transformative change in healthcare. We are seeking a highly skilled and experienced Senior Systems Analyst – Oracle HCM to join our HRIT team. This individual will be a critical member of the Oracle HCM remediation and optimization...$71.2k - $158.2k
...activate, and support the implementation of Oracle Health EHR (Millennium) solutions across Federal agencies including the Department of Defense, United States Coast Guard, Veterans Affairs and Indian Health Service. The Federal Consulting team is a group of hard-working,...Temporary workFlexible hours- ...activate, and support the implementation of Oracle Health EHR (Millennium) solutions across Federal agencies including the Department of Defense, United States Coast Guard, Veterans Affairs and Indian Health Service. The Federal Consulting team is a group of hard-working,...
$115k - $150k
Hagerty Consulting, Inc. (Hagerty) is the nation's leading emergency management and homeland security consulting firm. Known for its public spirit, innovative thinking, problem-solving, and exceptional people, Hagerty is sought after to work on some of the largest and ...Permanent employmentTemporary workLocal areaImmediate startRemote workFlexible hours- Position Overview The Enterprise Architect is responsible for designing, implementing, and supporting enterprise‑scale, multitenant environments centered on Oracle E‑Business Suite (EBS) within Oracle Cloud Infrastructure (OCI). This role operates across the full lifecycle...Contract work
- ...on concepts and theories of supply system analysis to be applied to assignments. Coordinates delivery requirements with other analysts performing larger segments of studies. Maintains inventory control records in an automated system, monitoring usage transactions...Full timeRemote work
- ...Standard Operating Procedures, and process related training). Qualification Summary To qualify for a Supervisory Supply Systems Analyst, GS- 2003-14, your resume and supporting documentation must support: A. Specialized Experience: One year of specialized experience...Full timeWork at officeRemote work
- Responsibilities Implement and maintain vDefend distributed firewall rules and basic micro‑segmentation policies within established design patterns. Configure and maintain NSX security groups, tags, and policy objects for standard workloads. Support Identity Broker configuration...Full timeTemporary workMonday to FridayShift work
$94.1k - $135k
...analyzers, SNMP platforms, flow analysis, and log correlation tools. Experience supporting secure network operations in government, defense, or other highly regulated environments. Proven ability to troubleshoot end-to-end connectivity issues across multiple layers (...Permanent employmentContract workWork at officeRemote workNight shift$88.9k - $160.1k
Overview Do you have a passion for network engineering technologies? Are you looking for the freedom to innovate and help shape the next generation of the network? Join our Network Engineering team! The Network Engineering team designs, automates, and supports the global...Permanent employmentWork experience placementWork from homeHome officeFlexible hours$134.22k
...Internet Security (CIS) Benchmark Security Content Automation Protocol (SCAP) Benchmark NIST Security Configuration Checklist Defense Information System Agency (DISA) Security Technical Implementation Guides (STIGs) Defense Information System Agency (DISA)...Contract workWork experience placementRemote work$75k - $100k
Technical Project Manager Values & Innovation At Under Armour, we are committed to empowering those who strive for more, and the company's values – Act Sustainably, Celebrate the Wins, Fight on Together, Love Athletes and Stand for Equality – serve as both a roadmap for...Work at officeLocal areaRemote workRelocation- Telework Eligible No Major Duties Performs a wide range of duties to include plans, analysis, development, and coordination, as well as evaluation of current NSEP and contingency telecommunications plans (D-16-1). Serves as the primary subject matter technical...Full timeTemporary workRemote work
$35 per hour
Responsibilities Follow instruction from the Lead Technical Proctor, Site-IT, and those responsible for the back‑up wifi Collaborate with administrators, proctors, and on‑site staff Document all technical issues where support was required and backup devices were deployed...Contract workTemporary work- Responsibilities Support design, implementation, and day‑to‑day administration of NSX overlay networking across VCF environments. Implement approved micro‑segmentation policies, distributed firewall rules, and network security changes. Configure and maintain application...Temporary workMonday to FridayShift work
$95k
Overview Cadmus is seeking a Technical Project Manager (TPM) with a passion for delivering high quality projects in a complex, fast paced environment to support a major commercial client in the automotive entertainment space. You will work with data engineering, analytics...Permanent employmentWork experience placementLocal areaWorldwide$84.63k - $112.84k
Lumen is the trusted network for the AI‑powered world, connecting people, data, and applications through our expansive fiber network and connected ecosystem. We enable secure, high‑performance connectivity across cloud, edge, and AI workloads for enterprises, governments...Contract workTemporary work$110k - $140k
About Us Since 1989, SHI International Corp. has helped organizations change the world through technology. We've grown every year since, and today we're proud to be a $16 billion global provider of IT solutions and services. Over 17,000 organizations worldwide rely...Work experience placementWorldwideFlexible hours- ...employees in more than 70 countries across all 7 continents. We are seeking a highly skilled and motivated AI Technology Support Engineer/Analyst to join our dynamic team. The ideal candidate will possess a strong technical background in AI technologies, exceptional problem-...Hourly payContract workLocal area
$78.9k - $123.3k
Position Overview We are seeking a detail-oriented cybersecurity compliance professional to support system authorization and continuous monitoring activities within a Federal environment. This role is responsible for managing the security authorization lifecycle for one...Permanent employmentFull timePart timeWork at officeLocal areaRemote work$134.26k
Job Description The Program Services (PSG) has an immediate need for a Technical Delivery Manager. The Technical Delivery Manager (TDM) is a senior leader within the Technical Services Unit (TSU) dedicated to the delivery of technically superior products and services, staff...H1bLocal areaImmediate start
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Cyber Defense Analyst. Be the first to apply!


