Security Analyst

EY

5–10 yrs Kochi Full Time Hybrid (office + remote)
EY logo
Posted : today
Actively hiring

Job description

Embark on a career at EY, a place where you can cultivate a career as unique as you are. Leverage global scale, support, an inclusive culture, and cutting-edge technology to become your best self. Your distinct perspective is invaluable to EY's continued growth and success. Join us to build an exceptional personal experience and contribute to a better working world.

In today's information-driven world, data is paramount. Protecting data and information systems is critical for business operations, and every member of EY's Information Security team plays a vital role. Become part of a global team of nearly 950 professionals dedicated to safeguarding EY and client information assets. Our Information Security experts ensure EY operates securely, delivers secure products and services, and can swiftly detect and respond to security events, thereby protecting the EY brand and fostering client trust.

Our Information Security division integrates risk strategy, digital identity, cyber defense, application security, and technology solutions, encompassing the entire security lifecycle. You'll join a team of diligent, security-conscious individuals committed to supporting, protecting, and enabling the business through innovative and secure solutions that accelerate market entry and deliver business value.

Responsibilities

As a Senior Specialist in Internal Investigations Services (IIS), you will be a lead technical investigator responsible for gathering, analyzing, and reporting on information crucial to digital forensic investigations. The IIS team addresses cybersecurity incidents and events caused by EY Personnel, Contractors, and Associates worldwide. This scope also includes conducting computer forensic reviews and managing eDiscovery requests to support the General Counsel.

Your primary responsibilities will include:

- Leading security investigations and eDiscovery initiatives. - Generating fact-based technical reports that detail events over specific periods for investigative purposes, sharing these findings with stakeholders for action. - Providing expert advice and assistance to stakeholders regarding the relevance of information sourced internally and externally for information security matters, digital forensic inquiries, and investigative work. - Identifying and proposing enhancements for IIS processes and procedures.

Qualifications

To excel in this role, you should possess:

- In-depth technical knowledge of IT infrastructure, forensic tools, and methodologies. - A strong investigative and analytical mindset, coupled with excellent problem-solving skills. - The ability to synthesize comprehensive insights from correlating data across various sources. - Proficiency in multitasking within time-sensitive environments, with a keen awareness of confidentiality and local privacy laws. - Adaptability to handle multiple demands, ambiguity, and rapid changes. - A global perspective for collaborating with diverse cultures and backgrounds. - Exceptional teaming and communication skills, facilitating understanding and compliance with security policies. - Familiarity with current and emerging legal issues in information security, such as data privacy. - Proven integrity and sound judgment in a professional setting. - The capacity to work effectively in a global, virtual team environment across multiple jurisdictions. - Experience in investigation case management. - A robust information security background, enabling effective communication with both technical and non-technical teams. - The ability to balance work and personal priorities effectively. - An understanding of the Big 4 workplace culture and business structure. - Interviewing skills with an investigative focus, providing technical support to the GCO.

Additional Requirements: - Willingness to work some weekends.

Required Qualifications: Education: Bachelor's or Master's Degree in Computer Science or a related field. Experience: 5-10 years in Information Security, focusing on investigative units and incident response, or a deep understanding of cyber investigation, forensic tools, and methodologies. This includes log correlation, electronic data handling, and computer security investigative processes. Familiarity with legal aspects of discovery and analysis of electronically stored information is also essential.

Technical Proficiency: - Experience with forensic tools such as Nuix, Axiom, and others. - Experience with Microsoft Defender and other monitoring tools. - Familiarity with the Microsoft environment (Exchange, SharePoint, Purview, Sentinel, Azure). - Subject Matter Expert knowledge of Microsoft Purview. - Experience with PowerShell. - Proven experience in reporting to Senior Leadership.

Certification Requirements: Candidates must hold or be actively pursuing relevant professional certifications like CISSP, Security+, EnCE, ACE, GCFE, GCIA. Ability to obtain and maintain Security Clearance is required if assigned in the US.

Ideally, you should also have: - Certifications that demonstrate interest and development in Soft Skills.

Essential Skills

IT infrastructureforensic toolsforensic methodologiesinvestigative reportingeDiscoverylog correlation and analysiselectronic data handlingcomputer security investigationdata privacyMicrosoft Defendermonitoring toolsMicrosoft environmentMicrosoft PurviewSentinelAzurePowerShellCISSPSecurity+EnCEACEGCFEGCIA

Good to Have

NuixAxiomExchangeSharePointPurview

Highlights

  • Actively hiring

More Details

RoleSecurity Analyst
IndustryFinancial Services
DepartmentCybersecurity, Risk Management
Employment TypeFull Time, Hybrid (office + remote)

About the Company

EY Global Delivery Services ( EY GDS) logo

EY Global Delivery Services ( EY GDS)

Financial Services

Security Analyst at EY | SkillMX | SkillMX