Talent.com
No longer accepting applications
Cyber Defense - Cyber Triage and Forensic Analyst

Cyber Defense - Cyber Triage and Forensic Analyst

ConfidentialIndia, Thiruvananthapuram / Trivandrum
2 days ago
Job description

At EY, you'll have the chance to build a career as unique as you are, with the global scale, support, inclusive culture and technology to become the best version of you. And we're counting on your unique voice and perspective to help EY become even better, too. Join us and build an exceptional experience for yourself, and a better working world for all.

Supervising Security Analyst - Cyber Triage and Forensics

Today's world is fueled by vast amounts of information. Data is more valuable than ever before. Protecting data and information systems is central to doing business, and everyone in EY Information Security has a critical role to play. Join a global team of almost 950 people who collaborate to support the business of EY by protecting EY and client information assets! Our Information Security professionals enable EY to work securely and deliver secure products and services, as well as detect and quickly respond to security events as they happen. Together, the efforts of our dedicated team helps protect the EY brand and build client trust.

Within Information Security we blend risk strategy, digital identity, cyber defense, application security and technology solutions as we consider the entire security lifecycle. You will join a team of hardworking, security-focused individuals dedicated to supporting, protecting and enabling the business through innovative, secure solutions that provide speed to market and business value.

The opportunity

The Senior Security Analyst in Cyber Defense CTF (Cyber Triage and Forensics) plays a

pivotal role in enhancing EY's security posture by vigilantly monitoring, assessing, and managing incidents effectively. In collaboration with the team and leadership, to ensure strong security oversight and contribute to joint security monitoring and incident response initiatives.

Key duties include triage, detailed investigations, clear communication, and comprehensive reporting, all contributing to the integrity and resilience of the EY's cyber defenses.

Essential Functions of the Job :

  • You will work collaboratively to detect and respond to information security incidents, develop, maintain, and follow procedures for security event alerting, and participate in security investigations.
  • Engage in proactive threat hunting and provide expert security assessments, utilizing EDR, SIEM, and other tools to understand and counteract the cybercrime landscape
  • Communicate with IT stakeholders during incident response activities, ensuring effective containment, remediation, and accurate identification of compromise indicators
  • Report on incident metrics, analyse findings, and develop reports to ensure comprehensive resolution and understanding of security events
  • Act as an escalation point for incident response, shift lead, mentor junior team members, and contribute to team skill enhancement
  • Analyse security events, provide feedback on security controls, and drive process improvements to strengthen the organization's security posture
  • Maintain and improve security incident processes, protocols, and standard operating procedures to reflect best practices in security incident response

Skills And Attributes For Success

  • Proficient in Cyber investigation including evidence management in line with best practices and using advanced tools for threat detection and incident management including advanced querying with KQL
  • Proficient in analyzing varied data sets, identifying malware, and conducting comprehensive security event analysis from network traffic attributes and host-based attributes to detect information security incidents and latent threats.
  • Proficient in conducting detailed forensic investigations across various operating systems, with a keen eye for obfuscation and the ability to clearly communicate findings
  • In-depth understanding of Active Directory security, with strong scripting abilities to automate response measures and improve operational effectiveness
  • To qualify for the role, you must have

  • Undergraduate or Postgraduate Degree in Computer Science, Engineering, or a related field (MCA / MTech / BTech / BCA / BSc CS or BSc IT)
  • At least 7 years of overall experience with a minimum of 5 years specialized in incident response, computer forensics, and Security Operations.
  • Proficiency in operating within a Security Monitoring / Security Operations Center (SOC) environment, including experience with CSIRT and CERT operations
  • Demonstrated experience in investigating security events, threats, and vulnerabilities
  • Strong understanding of electronic investigation and forensic methodologies, including log correlation, electronic data handling, investigative processes, and malware analysis
  • In-depth knowledge of Windows and Unix / Linux operating systems, and experience with EDR solutions for threat detection and response
  • Ideally, you'll also

  • Desired certifications such as SSCP, CEH, GCIH, GCFA, GCIA, GSEC, GIAC, Security+.
  • Experience with security incident response in cloud environments, including Azure.
  • Knowledge of legal considerations in electronic discovery and analysis
  • Proficiency in scripting or programming (e.g., Shell scripting, PowerShell, C, C#, Python)
  • Solid understanding of security best practices for network architecture and server configuration
  • What We Look For

  • Demonstrates integrity in a professional environment
  • Strong ethical behavior
  • Ability to work independently
  • Possesses a global mindset for working with diverse cultures and backgrounds
  • Knowledgeable in industry-standard security incident response processes, procedures, and lifecycle
  • Positive attitude and Excellent teaming skills
  • Excellent social, communication, and writing skills
  • Good presentation skills
  • Excellent investigative, analytical, and problem-solving skills
  • Supervising Responsibilities :

  • Coordinate escalations and collaborate with internal technology teams to ensure timely resolution of issues
  • Provide mentoring and training to other team members as required, supporting their development and ensuring consistent team performance
  • Other Requirements :

  • Should be willing to work in shifts
  • What We Offer

    As part of this role, you will work in a highly coordinated, globally diverse team with the opportunity and tools to grow, develop and drive your career forward. Here, you can combine global opportunity with flexible working. The EY benefits package goes above and beyond too, focusing on your physical, emotional, financial and social well-being. Your recruiter can talk to you about the benefits available in your country. Here's a snapshot of what we offer :

  • Continuous learning : You will develop the mindset and skills to navigate whatever comes next.
  • Success as defined by you : We will provide the tools and flexibility, so you can make a significant impact, your way.
  • Transformative leadership : We will give you the insights, coaching and confidence to be the leader the world needs.
  • Diverse and inclusive culture : You will be accepted for who you are and empowered to use your voice to help others find theirs.
  • We ensure that individuals with disabilities are provided reasonable accommodations to participate in the job application or interview process, to perform essential job functions and to receive other benefits and privileges of employment. Please contact us to request accommodation.

    EY is committed to being an inclusive employer, and we are happy to consider flexible working arrangements. We strive to achieve the right balance for our people, enabling us to deliver excellent client service whilst allowing you to build your career without sacrificing your personal priorities. While our client-facing professionals can be required to travel regularly, and at times be based at client sites, our flexible working arrangements can help you to achieve a lifestyle balance.

    If you can confidently demonstrate that you meet the criteria above, please contact us as soon as possible.

    Make your mark.

    Apply now

    EY | Building a better working world

    EY exists to build a better working world, helping to create long-term value for clients, people and society and build trust in the capital markets.

    Enabled by data and technology, diverse EY teams in over 150 countries provide trust through assurance and help clients grow, transform and operate.

    Working across assurance, consulting, law, strategy, tax and transactions, EY teams ask better questions to find new answers for the complex issues facing our world today.

    Skills Required

    Incident Management, forensic investigations

    Create a job alert for this search

    Cyber • India, Thiruvananthapuram / Trivandrum

    Related jobs
    • Promoted
    • New!
    Cyber Security Analyst (IAM / PAM) - Bangalore(Onsite)

    Cyber Security Analyst (IAM / PAM) - Bangalore(Onsite)

    ideaHelixKollam, IN
    Cyber Security Analyst – IAM / PAM.The ideal candidate will ensure secure access management, reduce identity-related risks, and support compliance with internal and regulatory standards.Bachelor’s de...Show moreLast updated: 3 hours ago
    • Promoted
    • New!
    Security Operations Center Analyst

    Security Operations Center Analyst

    Insight GlobalKollam, IN
    SOC or cybersecurity operations role.Proficiency with Secureworks Taegis and Microsoft Defender (Endpoint, Identity, Cloud), including rule tuning, log analysis, and case management.Splunk, QRadar,...Show moreLast updated: 3 hours ago
    • Promoted
    Forward Deployed Analyst (Ex-IB / PE / HF / Buyside)

    Forward Deployed Analyst (Ex-IB / PE / HF / Buyside)

    ArcanaKollam, IN
    Forward-Deployed Analyst – Portfolio Intelligence.Arcana builds institutional-grade analytics for leading hedge funds and asset managers. We’re hiring exceptional analysts to partner with portfolio ...Show moreLast updated: 30+ days ago
    • Promoted
    • New!
    Lead Cyber Security Analyst - Presales / Solutioning

    Lead Cyber Security Analyst - Presales / Solutioning

    Talent ToppersKollam, IN
    Growing IT solutions and services company specializing in software development, cloud enablement, and digital transformation. The company focuses on building scalable, secure, and innovative technol...Show moreLast updated: 3 hours ago
    • Promoted
    Cyber Security Specialist

    Cyber Security Specialist

    Tiger AdvisoryKollam, Kerala, India
    Senior Associate - Cyber Risk Location : Remote Duration : 6 months with potential for extension Job Description Tiger Advisory provides premier cybersecurity consulting services, helping clients ...Show moreLast updated: 30+ days ago
    • Promoted
    • New!
    Senior Security Analyst (TRPM) - Bengaluru (Onsite)

    Senior Security Analyst (TRPM) - Bengaluru (Onsite)

    ideaHelixKollam, IN
    Required Skills & Qualifications.Bachelor’s degree in Information Security, Computer Science, or related field.Strong understanding of security frameworks : . ISO 27001, NIST, SOC2, CIS Controls, GDPR...Show moreLast updated: 3 hours ago
    • Promoted
    • New!
    Security Analyst

    Security Analyst

    GMGKollam, IN
    GMG is a global well-being company retailing, distributing and manufacturing a portfolio of leading international and home-grown brands across sport, everyday goods, health and beauty, properties a...Show moreLast updated: 3 hours ago
    • Promoted
    Cyber Security Trainer

    Cyber Security Trainer

    Veherekollam, kerala, in
    Vehere is seeking a Cybersecurity Trainer to design, develop, and deliver world-class training for our customers, partners, and internal teams. You will play a key role in enabling users to master V...Show moreLast updated: 18 days ago
    • Promoted
    Senior Cyber Security Analyst

    Senior Cyber Security Analyst

    Eltropykollam, India
    Senior Cybersecurity Analyst | 100% Remote | Eltropy (Product based fintech SaaS firm).Senior Cybersecurity Analyst – GRC (Governance, Risk, and Compliance). This individual will help manage third-p...Show moreLast updated: 5 days ago
    • Promoted
    • New!
    CyberArk implementation Lead

    CyberArk implementation Lead

    AtosThiruvananthapuram, IN
    Have a strong knowledge of CyberArk privileged Account Management solutions- CyberArk components like Vault, CPM, PSM, PSMP, PVWA, AAM, PTA. Have worked on CyberArk Application upgrades / releases and...Show moreLast updated: 3 hours ago
    • Promoted
    Cyber Security Specialist

    Cyber Security Specialist

    Innefu LabsKollam, IN
    We are seeking experienced and detail-oriented professionals for the role.The selected candidates will be responsible for assisting cybercrime investigations by collecting and analysing digital evi...Show moreLast updated: 5 days ago
    • Promoted
    • New!
    TC-CS-Cyber Detection And Response-Cyber Threat Intelligence-Senior

    TC-CS-Cyber Detection And Response-Cyber Threat Intelligence-Senior

    ConfidentialThiruvananthapuram / Trivandrum, India
    At EY, you'll have the chance to build a career as unique as you are, with the global scale, support, inclusive culture and technology to become the best version of you. And we're counting on your u...Show moreLast updated: 1 hour ago
    • Promoted
    • New!
    Senior Analyst CyberArk PAM [T500-21352]

    Senior Analyst CyberArk PAM [T500-21352]

    MUFGThiruvananthapuram, IN
    Japan’s premier bank, with a global network spanning in more than 40 markets.Outside of Japan, the bank offers an extensive scope of commercial and investment banking products and services to busin...Show moreLast updated: 3 hours ago
    • Promoted
    • New!
    Cybersecurity Testing- C2H

    Cybersecurity Testing- C2H

    Maneva Consulting Pvt. Ltd.Thiruvananthapuram, IN
    Work Mode : 3 days per week from office.Overall experience – 8+ years in Computer System Validation Expert.Experience in medical device projects with cyber security testing.Cybersecurity in medical ...Show moreLast updated: 3 hours ago
    • Promoted
    • New!
    Cyber Defense - Cyber Triage and Forensic Analyst

    Cyber Defense - Cyber Triage and Forensic Analyst

    ConfidentialThiruvananthapuram / Trivandrum, India
    At EY, you'll have the chance to build a career as unique as you are, with the global scale, support, inclusive culture and technology to become the best version of you. And we're counting on your u...Show moreLast updated: 1 hour ago
    • Promoted
    Cyber Security Instructor | Part Time | Remote

    Cyber Security Instructor | Part Time | Remote

    ThinkcloudlyKollam, IN
    Remote
    IT learning platform dedicated to helping individuals begin their journey to becoming IT professionals.We focus on upskilling our students by providing specialized courses that enhance their employ...Show moreLast updated: 6 days ago
    • Promoted
    • New!
    Network Analyst

    Network Analyst

    CentrilogicThiruvananthapuram, IN
    We are seeking a skilled and detail-oriented.This role is critical in maintaining the security and stability of our clients’ network infrastructures by ensuring timely and effective patching of net...Show moreLast updated: 3 hours ago
    • Promoted
    • New!
    SOC Analyst L2 / L3 - SIEM,IBM Qradar,SOAR,Threat hunting,Forensics - 4+ Years - Mumbai

    SOC Analyst L2 / L3 - SIEM,IBM Qradar,SOAR,Threat hunting,Forensics - 4+ Years - Mumbai

    Innova ESIKollam, IN
    Please refer to the job description below for your kind reference : .SOC Analyst – Level 2 (L2) / Level 3 (L3).Deep-dive investigation of escalated incidents. Conduct root cause analysis and threat co...Show moreLast updated: 3 hours ago