Cyber Defense Forensics Analyst
EY · Jacksonville, FL · 1 mo ago
On-siteInformation Technology$88k–$164k/yrFull-time
About the role
The Cyber Triage and Forensics (CTF) Incident Analyst will work as a senior member of the technical team responsible for security incident response for EY. The candidate will work as an escalation point for suspect or confirmed security incidents.
Responsibilities
- Investigate, coordinate, bring to resolution, and report on security incidents as they are brought up or identified
- Forensically analyze end user systems and servers found to have possible indicators of compromise
- Identify security incidents through 'Hunting' operations within a SIEM and other relevant tools
- Interface and connect with server owners, system custodians, and IT contacts to pursue security incident response activities, including: obtaining access to systems, digital artifact collection, and containment and/or remediation actions
- Provide consultation and assessment on perceived security threats
- Maintain, manage, improve and update security incident process and protocol documentation
- Regularly provide reporting and metrics on case work
- Resolution of security incidents by identifying root cause and solutions
- Analyze findings in investigative matters, and develop fact-based reports
Requirements
- Bachelor's or Master's Degree in Computer Science, Information Systems, Engineering or a related field
- 5+ years experience in incident response, computer forensics analysis and/or malware reverse engineering
- Understanding of security threats, vulnerabilities, and incident response
- Understanding of electronic investigation, forensic tools, and methodologies, including: log correlation and analysis, forensically handling electronic data, knowledge of the computer security investigative processes, malware identification and analysis
- Experience with SIEM technologies (i.e. Splunk)
- Deep understanding of both Windows and Unix/Linux based operating systems
Qualifications
- Hold or be willing to pursue related professional certifications such as GCFE, GCFA or GCIH
Skills and Attributes
- Resolution of security incidents by identifying root cause and solutions
- Analyze findings in investigative matters, and develop fact-based reports
- Proven integrity and judgment within a professional environment
- Ability to appropriately balance work/personal priorities
What We Look For
- Demonstrated integrity in a professional environment
- Ability to work independently
- Knowledgeable in business industry standard security incident response process, procedures, and life cycle
- Excellent teaming skills
- Excellent social, communication, and writing skills
What We Offer
- Cumulative compensation and benefits package
- Comprehensive compensation and benefits package
- Base salary range for this job in all geographic locations in the US is $87,700 to $164,000
- Salary range for New York City Metro Area, Washington State and California (excluding Sacramento) is $105,200 to $186,400
- Individual salaries within those ranges are determined through a wide variety of factors including but not limited to education, experience, knowledge, skills and geography
- Total Rewards package includes medical and dental coverage, pension and 401(k) plans, and a wide range of paid time off options
- Flexible vacation policy
- EY is committed to providing reasonable accommodation to qualified individuals with disabilities including veterans with disabilities