Analyst, Cybersecurity DFIR
Listed on 2026-02-16
-
IT/Tech
Cybersecurity, Information Security
Job Purpose The ICE Cybersecurity Digital Forensics and Incident Response (DFIR) team is responsible for defending critical financial infrastructure from Global Cyber threats. We leverage an evolving arsenal of controls that require technical proficiency as well as tenacity, professionalism, and strong communication skills.
Overview The ICE Cybersecurity Digital Forensics and Incident Response (DFIR) team is responsible for defending critical financial infrastructure from Global Cyber threats. We leverage an evolving arsenal of controls that require technical proficiency as well as tenacity, professionalism, and strong communication skills.
Responsibilities- Security Analytics - Efficiently distill actionable information from large data sets for reporting, hunting, and anomaly detection
- Incident Management – Detect, document, investigate, and resolve security incidents in an efficient manner
- Endpoint Forensics - Construct meaningful incident timelines from forensic artifact analysis
- Counter Measures - Ability to design and implement preventative and corrective controls to counteract emerging threats
- Proactive Threat Hunting - Develop and execute focused plans to discover advanced threats that evade traditional security controls
- Behavioral Analysis - Develop and implement criteria to identify anomalous user behavior leading indicating insider threat activity
- Intrusion Detection - Develop and tune network anomaly control capability to produce reliable actionable data
- University degree in related discipline or minimum one year in an Information Security Role
- Understanding of networking and its application
- Hands on experience with Windows and Linux
Intercontinental Exchange, Inc. is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to legally protected characteristics.
#J-18808-Ljbffr(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).