← Back to jobs

Cyber Threat Analyst

Company
DFIN
Location
Remote
Work type
Full Time
Posted
2026-08-12

Job description

Summary:
The Cyber Threat Analyst will focus on gathering and analyzing data from disparate systems and produce cyber insights as necessary to identify, contain, mitigate, and/or recover from cyber security threats and/or incidents. The Cyber Threat Analyst II will work side-by-side with peers to investigate all cyber threats facing the organization.
Responsibilities:
Build, manage, and maintain correlation rules and alarming configurations for various cyber security platforms to include, but not limited to Security Incident & Event Management (SIEM), Security Orchestration, Threat Intelligence, and other platforms
Understand common Windows/Linux/Mac operating system functions and vulnerabilities
Collect, organize, and analyze data using various cyber security tools such as Common SIEM/event correlation technologies, Radware, firewall platforms, Threat Intel Platforms, and other security analysis platforms
Support investigations of suspected cyber security events, system anomalies/misconfigurations, system misuse, compliance reviews as requested
Identify, analyze, and interpret trends or patterns in complex data sets
Exercise an understanding of the Cyber Kill Chain and Mitre ATT&CK Framework
Work with the functional business area to identify, gather, investigate, and document business processes related to incident response, security logging sources and formats, company-wide data architectures, threat modeling, and security best practices
Visualize data insights using data visualization tools as necessary to ensure CISO, Security Operations, and other relevant dashboards are current and relevant

Additional Job Responsibilities
Perform root-cause analysis to understand data problems and find solutions by understanding user requirements
Build an inventory of assets to be monitored in support the DFS Enterprise Security Monitoring program
Serve as a trusted advisor to the Director, Security Technologies and/or the SVP-CISO on sensitive matters warranting confidentiality
Demonstrate subject matter expertise across technology domains
Perform other duties as assigned
Consolidate and analyze data from disparate systems using data integration tools or writing custom code in SQL, Python, or other scripting languages

Qualifications:
Bachelor degree with 3+ years of relevant work experience OR demonstrated ability to meet the job requirements through a comparable number of years of applicable work experience and education
Strong analytical competency
Ability to develop, customize, and maintain visualization dashboards utilizing SIEM and other security platforms
Strong understanding of cyber security threat modeling
Deep insights into threat intelligence tools and techniques
Advanced knowledge of cyber-attack techniques, and mitigation strategies
Advanced knowledge of firewalls, anti-malware, intrusion detection and/or prevention systems, and other network and systems security platforms
Ability to effectively communicate complex topics to engineers and leadership
Ability to properly handle confidential data and strictly follow business process and procedure
Ability to collaborate in cross-functional teams
Excellent attention to detail
Ability to operate in high stress situations

Original source