Jobs · Ohio

Cyber Triage and Forensics Shift Lead Supervising Associate

EY · Cleveland, OH · 2 days ago
Hybrid$91k–$170k/yrFull-time

About the role

The CTF Shift Lead at EY plays a critical role in maintaining the efficiency and effectiveness of the Cyber Triage and Forensics team's daily operations. This position involves managing the performance of Junior and Senior Triage Analysts, ensuring swift responses to threats, and managing case queues efficiently.

Responsibilities

  • Work collaboratively to detect and respond to information security incidents
  • Develop, maintain, and follow procedures for security event alerting
  • Participate in security investigations
  • Perform tasks including monitoring, research, classification, and analysis of security events
  • Manage day-to-day operations and performance of the CTF Analysts
  • Ensure prompt and efficient response to email and case queues
  • Distribute workload among the threat hunting team and oversee their activities
  • Participate in the analysis and triage of security events
  • Provide technical leadership and mentorship to junior analysts
  • Set clear performance expectations and manage team performance
  • Report case status and significant incident updates to the global lead
  • Update Standard Operating Procedures (SOPs) and drive continuous improvement within the team
  • Cook with Technical Lead for incident and investigation support as needed

Requirements

  • A Bachelor's degree in Computer Science, Information Systems, Information Security, or equivalent work experience (3-4 years)
  • A minimum of 4-5 years of experience in a Security Monitoring/Security Operations Center environment (SOC), investigating security events, threats, and/or vulnerabilities
  • Understanding of electronic investigation and log correlation with proficiency in the latest intrusion detection platforms
  • Working knowledge of Linux and/or Windows systems administration, including Active Directory
  • Scripting or programming skills (Shell scripting, Python, PowerShell, Perl, Java, etc.)

Skills and Attributes

  • Familiarity with the principles of network and endpoint security, current threat and attack trends, and a basic understanding of the OSI model
  • Working knowledge of Defense in depth strategies
  • Understanding Information Security Principles, Technologies, and Practices
  • Demonstrable experience with multiple security event detection platforms
  • Thorough understanding of TCP/IP and basic IDS/IPS rules to identify and/or prevent malicious activity
  • Demonstrated integrity in a professional environment
  • Good social, communication, and technical writing skills
  • Comfortable navigating and troubleshooting Linux and Windows system issues

What We Offer

  • Compensation range: $91,100 to $170,400
  • Flexible vacation policy
  • Health and dental coverage
  • Pension plan
  • 401(k) plan
  • Hybrid work model with in-person collaboration 40-60% of the time
  • Additional benefits including paid time off for holidays, family care, and other leaves of absence

Similar jobs