The Senior Cyber Threat Analyst leads cybersecurity incident investigations, coordinates teams, authors runbooks, mentors analysts, and communicates findings to various stakeholders.
Join a dynamic team at the pulse of global markets, where we deliver innovative software and service solutions for essential financial reporting and capital markets transactions. At DFIN, we are a values-driven organization that empowers you to build a fulfilling career while bringing your authentic self to work every day. Our "Win as One" mentality ensures that our team's success is directly linked to Client, Shareholder and Employee Satisfaction.
Recognized as one of AMERICA'S MOST LOVED WORKPLACES® for five consecutive years and a Built In Best Places to Work for six years, we are committed to our employees' total well-being. Enjoy competitive compensation, a flexible workplace, comprehensive benefits, and opportunities for professional growth. Bring your passion and talents to DFIN - because being YOU thrives here.
Summary:
The Senior Cyber Threat Analyst will lead efforts to investigate cybersecurity incidents from end-to-end, engaging and coordinating peer teams, stakeholders, and external entities as necessary. This person will play a role of subject matter expert in the areas of incident response, threat hunting, and forensics. The Senior Cyber Threat Analyst will author incident response runbooks and mentor cyber threat analysts in incident response and digital forensics methodologies.
Responsibilities:
Qualifications:
Preferred Qualifications:
It is the policy of Donnelley Financial Solutions to select, place, and manage all its employees without discrimination based on race, color, national origin, gender, age, religion, actual or perceived disability, veteran status, actual or perceived sexual orientation, genetic information or any other protected status.
If you are a qualified individual w ith a disability or a disabled veteran, you have the right to request a reasonable accommodation if you are unable or limited in your ability to use or access jobs.dfinsolutions.com as a result of your disability. You can request a reasonable accommodation by sending an email to [email protected] .
At DFIN, protecting your identity is a top priority. Please be aware of scammers impersonating DFIN recruiters. DFIN recruiters will never request personal information via email or text. You will only receive a text from us if you've already been in contact. All automated messages will come from [email protected] . If you ever have doubts about the legitimacy of any communication from us, please do not hesitate to reach out for verification via [email protected] (this email is for general TA questions and is not used for updates on your application status). #BI-Remote
Recognized as one of AMERICA'S MOST LOVED WORKPLACES® for five consecutive years and a Built In Best Places to Work for six years, we are committed to our employees' total well-being. Enjoy competitive compensation, a flexible workplace, comprehensive benefits, and opportunities for professional growth. Bring your passion and talents to DFIN - because being YOU thrives here.
Summary:
The Senior Cyber Threat Analyst will lead efforts to investigate cybersecurity incidents from end-to-end, engaging and coordinating peer teams, stakeholders, and external entities as necessary. This person will play a role of subject matter expert in the areas of incident response, threat hunting, and forensics. The Senior Cyber Threat Analyst will author incident response runbooks and mentor cyber threat analysts in incident response and digital forensics methodologies.
Responsibilities:
- Lead incident response activities to identify, assess, contain, mitigate all observed threats and document all investigational efforts for multiple audiences
- Develop and operationalize incident response runbooks with an emphasis on automation and ability to measure incident response effectiveness (Develop/track KPIs)
- Document and track incident response investigations, including observed IOCs and TTPs, system(s) impacted, criticality and scope of any data exposure, lessons learned, follow-up items
- Act as a liaison between a diverse group of teams including engineering, security, and network & system operations to ensure effective adoption of incident response requirements and operational considerations
- Act as incident manager for all declared cyber security incidents
- Conduct traditional forensic and data acquisition activities utilizing industry standard commercial and open-source toolsets
- Identify, analyze, and interpret trends or patterns in complex data sets
- Work with the functional business areas as needed during incident response investigations
- Develop, customize, and maintain reporting around key metrics related to investigational and threat hunting activities
- Serve as a trusted advisor to the team Lead, Manger, and the SVP, and CISO on sensitive matters warranting confidentiality
- Communicate and present issues/investigation results to peer and executive-level audiences
- Demonstrate subject matter expertise across most technology domains
- Perform other duties as assigned
Qualifications:
- Bachelor's degree with 8+ years of relevant experience or 10+ years of equivalent experience through work and education
- 8+ years of cybersecurity investigation and incident response experience
- Strong understanding of operating systems (Windows, macOS, Linux, Unix, mobile)
- Experience investigating incidents in cloud environments (SaaS, PaaS, and other cloud platforms)
Preferred Qualifications:
- Security certifications (e.g., CISSP, GSEC, GCFA, GCFE)
- Strong analytical and problem-solving skills
- Knowledge across cybersecurity domains, including firewalls, IDS, and network security platforms
- Experience leveraging threat intelligence in security operations
- Advanced knowledge of cyber attack techniques and mitigation strategies
- Ability to assess risk using qualitative and quantitative methods
- Strong communication skills for technical and leadership audiences
- Proven ability to handle confidential data and follow procedures
- Ability to perform effectively in fast-paced, high-pressure environments
- Expertise in incident response, digital forensics, network traffic, log, and malware analysis
- Familiarity with MITRE ATT&CK and ATLAS frameworks
- Experience with SIEM, SOAR, and EDR tools for detection and response
It is the policy of Donnelley Financial Solutions to select, place, and manage all its employees without discrimination based on race, color, national origin, gender, age, religion, actual or perceived disability, veteran status, actual or perceived sexual orientation, genetic information or any other protected status.
If you are a qualified individual w ith a disability or a disabled veteran, you have the right to request a reasonable accommodation if you are unable or limited in your ability to use or access jobs.dfinsolutions.com as a result of your disability. You can request a reasonable accommodation by sending an email to [email protected] .
At DFIN, protecting your identity is a top priority. Please be aware of scammers impersonating DFIN recruiters. DFIN recruiters will never request personal information via email or text. You will only receive a text from us if you've already been in contact. All automated messages will come from [email protected] . If you ever have doubts about the legitimacy of any communication from us, please do not hesitate to reach out for verification via [email protected] (this email is for general TA questions and is not used for updates on your application status). #BI-Remote
Similar Jobs at DFIN
Fintech • Software
As a Principal Software Engineer, you will write scalable SaaS solutions, optimize performance, and address technical debt while collaborating across teams.
Top Skills:
.NetAksAzureAzure DevopsC#DockerJavaJavaScriptKubernetesNode.jsPostgresReactRestful ApisSQL ServerTypescript
Fintech • Software
The Principal Data Platform Engineer leads the design of data architectures, implements data platform patterns, and optimizes system performance, ensuring data strategy operates at scale.
Top Skills:
Azure FabricData FactoryDelta LakeDockerKubernetesOnelakePower BIPysparkPythonSQL
Fintech • Software
The Payroll Manager oversees U.S. and Canadian payroll operations, ensuring accuracy and compliance. They handle payroll processing, tax scenarios, and internal audits while driving process improvements.
Top Skills:
AdpPayroll SystemsTime And Attendance Platforms
What you need to know about the Seattle Tech Scene
Home to tech titans like Microsoft and Amazon, Seattle punches far above its weight in innovation. But its surrounding mountains, sprinkled with world-famous hiking trails and climbing routes, make the city a destination for outdoorsy types as well. Established as a logging town before shifting to shipbuilding and logistics, the Emerald City is now known for its contributions to aerospace, software, biotech and cloud computing. And its status as a thriving tech ecosystem is attracting out-of-town companies looking to establish new tech and engineering hubs.
Key Facts About Seattle Tech
- Number of Tech Workers: 287,000; 13% of overall workforce (2024 CompTIA survey)
- Major Tech Employers: Amazon, Microsoft, Meta, Google
- Key Industries: Artificial intelligence, cloud computing, software, biotechnology, game development
- Funding Landscape: $3.1 billion in venture capital funding in 2024 (Pitchbook)
- Notable Investors: Madrona, Fuse, Tola, Maveron
- Research Centers and Universities: University of Washington, Seattle University, Seattle Pacific University, Allen Institute for Brain Science, Bill & Melinda Gates Foundation, Seattle Children’s Research Institute

