Cyber Triage and Forensics Shift Lead Supervising Associate at EY | Alpharetta, GA, US | Rezi

Cyber Triage and Forensics Shift Lead Supervising Associate at EY

Cyber Triage and Forensics Shift Lead Supervising Associate

EY · Alpharetta, GA, US

Yesterday

Cyber Triage and Forensics Shift Lead Supervising Associate

EY · Alpharetta, GA, US

a day ago
Resume preview

Impress employers and recruiters.
Choose from hundreds of resume examples.

Target Resume Now

About the Role

The CTF Shift Lead at EY plays a critical role in maintaining the efficiency and effectiveness of the Cyber Triage and Forensics team's daily operations. This position ensures that the team responds swiftly to threats and manages case queues effectively. The Shift Lead's involvement in analysis and triage, combined with their responsibility for setting performance expectations and providing technical leadership, is essential for upholding high standards of cybersecurity practices. Reporting to the global leadership team, the Shift Lead's insights and updates are vital for informed decision-making and strategic alignment within the organization's cybersecurity efforts.

Responsibilities

  • Detect and respond to information security incidents.
  • Develop, maintain, and follow procedures for security event alerting.
  • Participate in security investigations.
  • Perform tasks including monitoring, research, classification and analysis of security events that occur on the network or endpoint.
  • Manage day-to-day operations and performance of the CTF Analysts.
  • Ensure prompt and efficient response to email and case queues.
  • Distribute workload among the threat hunting team and oversee their activities.
  • Participate in the analysis and triage of security events.
  • Provide technical leadership and mentorship to junior analysts.
  • Set clear performance expectations and manage team performance.
  • Report case status and significant incident updates to the global lead.
  • Update Standard Operating Procedures (SOPs) and drive continuous improvement within the team.
  • Coordinate with the Technical Lead for incident and investigation support as needed.

Requirements

  • A Bachelor's degree in Computer Science, Information Systems, Information Security, or equivalent work experience (3-4 years).
  • A minimum of 4-5 years of experience in a Security Monitoring/Security Operations Center environment (SOC), investigating security events, threats, and/or vulnerabilities.
  • Understanding of electronic investigation and log correlation with proficiency in the latest intrusion detection platforms.
  • Working knowledge of Linux and/or Windows systems administration, including Active Directory.
  • Scripting or programming skills (Shell scripting, Python, PowerShell, Perl, Java, etc.).

Skills

  • Familiarity with the principles of network and endpoint security, current threat and attack trends, and a basic understanding of the OSI model.
  • Working knowledge of Defense in Depth strategies.
  • Understanding Information Security Principles, Technologies, and Practices.
  • Demonstrable experience with multiple security event detection platforms.
  • Thorough understanding of TCP/IP and basic IDS/IPS rules to identify and/or prevent malicious activity.
  • Demonstrated integrity in a professional environment.
  • Good social, communication, and technical writing skills.
  • Comfortable navigating and troubleshooting Linux and Windows system issues.
  • Desired certifications such as SSCP, CEH, GCIH, GCFA, GCIA, GSEC, GIAC, Security+.
  • Previous leadership experience as a team lead or supervisor.

Work Type

  • Hybrid

Education Level

  • Bachelor's degree in Computer Science, Information Systems, Information Security, or equivalent work experience (3-4 years).

Salary/Compensations

  • US base salary range: $91,100 to $170,400.
  • New York City Metro Area, Washington State and California (excluding Sacramento) base salary range: $109,300 to $193,600.

Benefits

  • Medical and dental coverage.
  • Pension and 401(k) plans.
  • Wide range of paid time off options.
  • Flexible vacation policy.
  • Time off for designated EY Paid Holidays, Winter/Summer breaks, Personal/Family Care, and other leaves of absence.

About the Company

  • EY is building a better working world by creating new value for clients, people, society and the planet, while building trust in capital markets.
  • Enabled by data, AI and advanced technology, EY teams help clients shape the future with confidence and develop answers for the most pressing issues of today and tomorrow.
  • EY teams work across a full spectrum of services in assurance, consulting, tax, strategy and transactions.
  • Fueled by sector insights, a globally connected, multi-disciplinary network and diverse ecosystem partners, EY teams can provide services in more than 150 countries and territories.

Equal Opportunity

  • EY provides equal employment opportunities to applicants and employees without regard to race, color, religion, age, sex, sexual orientation, gender identity/expression, pregnancy, genetic information, national origin, protected veteran status, disability status, or any other legally protected basis, including arrest and conviction records, in accordance with applicable law.
  • EY is committed to providing reasonable accommodation to qualified individuals with disabilities including veterans with disabilities.