At EY, we are committed to shaping your future with confidence. Join our thriving, globally connected team filled with diverse professionals, and take your career in any direction you desire. Become a part of EY and help us build a better working world.
In today's data-driven environment, securing information and systems is paramount. Here at EY, every individual in Information Security plays a critical role in protecting our operations. Join our global team of nearly 950 professionals dedicated to safeguarding EY and client information assets. As an integral part of our cybersecurity team, you will help us operate securely and deliver reliable products and services while efficiently detecting and responding to security incidents.
The opportunity
As a Senior Cybersecurity Forensic and Incident Response Analyst, you will be a vital team member focusing on security incident response at EY. You will serve as an escalation point for suspicious or confirmed security incidents, engaging in digital forensic analysis, adhering to best practices in incident response, analyzing malware, identifying indicators of compromise, and coordinating remediation efforts. Your expertise will be essential in developing documentation to support our security incident response process.
Your key responsibilities
• Investigate and resolve security incidents, producing thorough reports on findings.
• Conduct forensic analysis of end-user systems and servers indicating potential compromise.
• Analyze artifacts collected during security incidents and forensic investigations.
• Identify security incidents through proactive hunting using SIEM, EDR, and other relevant tools.
• Collaborate with server owners, system custodians, and IT contacts to execute incident response activities, including system access and digital artifact collection for remediation.
• Consult on perceived security threats and recommend assessments.
• Maintain and improve security incident process and protocol documentation.
• Provide regular reporting and metrics on case work.
• Identify root causes of security incidents and propose effective solutions.
• Develop comprehensive fact-based reports on investigative findings.
• Be on-call to deliver global incident response as necessary.
Skills and attributes for success
• Strong ability to resolve security incidents through root cause identification.
• Capable of analyzing investigative findings and formulating fact-based reports.
• Proven integrity and sound judgment in a professional environment.
• Ability to balance work and personal priorities effectively.
• Bachelor's or Master's Degree in Computer Science, Information Systems, Engineering, or a related field.
• 7+ years of experience in incident response, computer forensic analysis, and/or malware reverse engineering.
• Comprehensive understanding of security threats, vulnerabilities, and incident response protocols.
• Knowledge of electronic investigation methods, forensic tools, and methodologies.
• Familiarity with legal requirements concerning electronic discovery and analysis.
• Proficiency with EDR and SIEM technologies, such as Splunk.
• Deep knowledge of Windows and Unix/Linux operating systems.
Ideally, you'll also have
• Professional certifications such as GCFE, GCFA, or GREM.
• Experience in security incident response within cloud environments (e.g., Azure).
• Programming skills in PowerShell, Python, or C/C++. Familiarity with best security practices for network architecture and server configuration.
What we look for
• Demonstrated integrity in a professional setting.
• Ability to work both independently and collaboratively.
• A global mindset to engage with diverse cultures and backgrounds.
• Knowledge of industry-standard security incident response processes and life cycles.
• A positive attitude paired with excellent teamwork skills.
• Strong social, communication, and writing skills.
• Good presentation abilities.
• Exceptional investigative, analytical, and problem-solving capabilities.
What we offer you
At EY, we will develop your future-focused skills and offer you world-class experiences. We empower you in a flexible work environment, fueling your unique talents in a diverse and inclusive culture with globally connected teams.
• We provide a comprehensive benefits package, rewarding you based on performance and recognizing the value you bring to the organization. The base salary range for this role in the US is $128,100 to $239,600, with higher ranges for specific metro areas. Salaries are determined by various factors, including education, experience, knowledge, and location.
• Join us in a hybrid model promoting teamwork, requiring in-person collaboration 40-60% of the time.
• Our flexible vacation policy allows you to determine your vacation needs, along with designated paid holidays and supportive leave options for your well-being.
Are you ready to step into a future filled with confidence? Apply today.
EY welcomes applications for this position continuously.
For candidates in California, please refer to additional information available.
Our focus on high ethical standards and integrity is paramount; we expect all candidates to embody these qualities.
EY | Building a better working world
At EY, we create new value for our clients, people, society, and the planet while fostering trust in capital markets. Our teams leverage data, AI, and advanced technology, helping clients navigate today's and tomorrow's most pressing issues.
With services across assurance, consulting, tax, strategy, and transactions, EY operates in over 150 countries and territories, fueled by insights and a globally connected, multi-disciplinary network.
EY is an equal opportunity employer and values diversity. We welcome all applicants, regardless of race, color, religion, age, sex, sexual orientation, gender identity/expression, pregnancy, genetic information, national origin, protected veteran status, disability status, or any other legally protected basis.
We are committed to providing reasonable accommodations to qualified individuals with disabilities, including veterans. If you require assistance applying or need accommodation during the application process, please reach out for support.