About this role
About the Role EY Senior (Cyber Threat Intelligence) analysts provide strategic, technical, and operational intelligence leveraging multiple intelligence collection sources and produce finished Cyber Threat Intelligence in support of client requirements, liaising with SOC, Vulnerability Management (VM), Threat Hunting, and other cybersecurity-focused teams. CTI Analysts maintain awareness of the clients’ environments to influence a strong security posture for EY clients as trusted advisors. The CTI Analyst will review open source, third-party, and proprietary threat information and enrich it with contextual analysis that will result in finished strategic intelligence. Significant time will be spent conducting analysis of threats to the client environment to aid senior decision makers. What You'll Do
- Provide strategic, technical, and operational intelligence leveraging multiple intelligence collection sources, and produce finished Cyber Threat Intelligence for clients.
- Analyze and produce finished intelligence in support of client requirements; liaise with EY Services offerings such as Security Operations Center (SOC), Vulnerability Management (VM), Threat Hunting, and other cybersecurity-focused teams.
- Maintain awareness of the clients’ environments to influence a strong security posture for EY clients as trusted advisors.
- Review open source, third-party, and proprietary threat information and enrich it with contextual analysis to generate finished strategic intelligence.
- Spend significant time conducting analysis of threats to the client environment to aid senior decision makers.
- Demonstrate strong technical writing, triage alerts on monitored assets, and compile them into finished intelligence reports for clients. What We're Looking For
- Strong technical writing skills and attention to detail.
- Ability to quickly triage alerts on monitored assets and compile them into finished intelligence reports for clients.
- Experience with analytical tradecraft, critical thinking, identification, and removal of bias from analysis and reporting products.
- Understanding of cybersecurity principles and frameworks such as the Diamond Model of Intrusion Analysis and MITRE ATT&CK.
- Experience conveying complex information in simple, succinct explanations. Compensation & Benefits
- (Not specified in the posting)