The Senior Cyber Threat Analyst leads cybersecurity incident investigations, coordinates teams, authors runbooks, mentors analysts, and communicates findings to various stakeholders.
Join a dynamic team at the pulse of global markets, where we deliver innovative software and service solutions for essential financial reporting and capital markets transactions. At DFIN, we are a values-driven organization that empowers you to build a fulfilling career while bringing your authentic self to work every day. Our "Win as One" mentality ensures that our team's success is directly linked to Client, Shareholder and Employee Satisfaction.
Recognized as one of AMERICA'S MOST LOVED WORKPLACES® for five consecutive years and a Built In Best Places to Work for six years, we are committed to our employees' total well-being. Enjoy competitive compensation, a flexible workplace, comprehensive benefits, and opportunities for professional growth. Bring your passion and talents to DFIN - because being YOU thrives here.
Summary:
The Senior Cyber Threat Analyst will lead efforts to investigate cybersecurity incidents from end-to-end, engaging and coordinating peer teams, stakeholders, and external entities as necessary. This person will play a role of subject matter expert in the areas of incident response, threat hunting, and forensics. The Senior Cyber Threat Analyst will author incident response runbooks and mentor cyber threat analysts in incident response and digital forensics methodologies.
Responsibilities:
Qualifications:
Preferred Qualifications:
It is the policy of Donnelley Financial Solutions to select, place, and manage all its employees without discrimination based on race, color, national origin, gender, age, religion, actual or perceived disability, veteran status, actual or perceived sexual orientation, genetic information or any other protected status.
If you are a qualified individual w ith a disability or a disabled veteran, you have the right to request a reasonable accommodation if you are unable or limited in your ability to use or access jobs.dfinsolutions.com as a result of your disability. You can request a reasonable accommodation by sending an email to [email protected] .
At DFIN, protecting your identity is a top priority. Please be aware of scammers impersonating DFIN recruiters. DFIN recruiters will never request personal information via email or text. You will only receive a text from us if you've already been in contact. All automated messages will come from [email protected] . If you ever have doubts about the legitimacy of any communication from us, please do not hesitate to reach out for verification via [email protected] (this email is for general TA questions and is not used for updates on your application status). #BI-Remote
Recognized as one of AMERICA'S MOST LOVED WORKPLACES® for five consecutive years and a Built In Best Places to Work for six years, we are committed to our employees' total well-being. Enjoy competitive compensation, a flexible workplace, comprehensive benefits, and opportunities for professional growth. Bring your passion and talents to DFIN - because being YOU thrives here.
Summary:
The Senior Cyber Threat Analyst will lead efforts to investigate cybersecurity incidents from end-to-end, engaging and coordinating peer teams, stakeholders, and external entities as necessary. This person will play a role of subject matter expert in the areas of incident response, threat hunting, and forensics. The Senior Cyber Threat Analyst will author incident response runbooks and mentor cyber threat analysts in incident response and digital forensics methodologies.
Responsibilities:
- Lead incident response activities to identify, assess, contain, mitigate all observed threats and document all investigational efforts for multiple audiences
- Develop and operationalize incident response runbooks with an emphasis on automation and ability to measure incident response effectiveness (Develop/track KPIs)
- Document and track incident response investigations, including observed IOCs and TTPs, system(s) impacted, criticality and scope of any data exposure, lessons learned, follow-up items
- Act as a liaison between a diverse group of teams including engineering, security, and network & system operations to ensure effective adoption of incident response requirements and operational considerations
- Act as incident manager for all declared cyber security incidents
- Conduct traditional forensic and data acquisition activities utilizing industry standard commercial and open-source toolsets
- Identify, analyze, and interpret trends or patterns in complex data sets
- Work with the functional business areas as needed during incident response investigations
- Develop, customize, and maintain reporting around key metrics related to investigational and threat hunting activities
- Serve as a trusted advisor to the team Lead, Manger, and the SVP, and CISO on sensitive matters warranting confidentiality
- Communicate and present issues/investigation results to peer and executive-level audiences
- Demonstrate subject matter expertise across most technology domains
- Perform other duties as assigned
Qualifications:
- Bachelor's degree with 8+ years of relevant experience or 10+ years of equivalent experience through work and education
- 8+ years of cybersecurity investigation and incident response experience
- Strong understanding of operating systems (Windows, macOS, Linux, Unix, mobile)
- Experience investigating incidents in cloud environments (SaaS, PaaS, and other cloud platforms)
Preferred Qualifications:
- Security certifications (e.g., CISSP, GSEC, GCFA, GCFE)
- Strong analytical and problem-solving skills
- Knowledge across cybersecurity domains, including firewalls, IDS, and network security platforms
- Experience leveraging threat intelligence in security operations
- Advanced knowledge of cyber attack techniques and mitigation strategies
- Ability to assess risk using qualitative and quantitative methods
- Strong communication skills for technical and leadership audiences
- Proven ability to handle confidential data and follow procedures
- Ability to perform effectively in fast-paced, high-pressure environments
- Expertise in incident response, digital forensics, network traffic, log, and malware analysis
- Familiarity with MITRE ATT&CK and ATLAS frameworks
- Experience with SIEM, SOAR, and EDR tools for detection and response
It is the policy of Donnelley Financial Solutions to select, place, and manage all its employees without discrimination based on race, color, national origin, gender, age, religion, actual or perceived disability, veteran status, actual or perceived sexual orientation, genetic information or any other protected status.
If you are a qualified individual w ith a disability or a disabled veteran, you have the right to request a reasonable accommodation if you are unable or limited in your ability to use or access jobs.dfinsolutions.com as a result of your disability. You can request a reasonable accommodation by sending an email to [email protected] .
At DFIN, protecting your identity is a top priority. Please be aware of scammers impersonating DFIN recruiters. DFIN recruiters will never request personal information via email or text. You will only receive a text from us if you've already been in contact. All automated messages will come from [email protected] . If you ever have doubts about the legitimacy of any communication from us, please do not hesitate to reach out for verification via [email protected] (this email is for general TA questions and is not used for updates on your application status). #BI-Remote
Similar Jobs at DFIN
Fintech • Software
Own full sales cycle to grow Venue customers across investment banks, private equity, law and corporate accounts. Prospect, network, run demos, execute territory plans, collaborate with cross-functional teams, update Salesforce, and close deals while organizing events and attending conferences to drive revenue and client satisfaction.
Top Skills:
LinkedInSalesforceVenue
Fintech • Software
Partner with sales leadership to improve forecast accuracy, analyze pipeline health, build quota and territory models, create KPI dashboards, optimize GTM processes, and present data-driven recommendations to executives to drive revenue and operational efficiency in a SaaS environment.
Top Skills:
AnaplanPower BISalesforceTableau
Fintech • Software
As a Manager of Strategic Partnerships and Alliances, you will drive revenue through partnership development, collaboration with stakeholders, and implementation of go-to market strategies. Your responsibilities include identifying new partnerships, negotiating deals, and managing multiple projects to enhance market presence.
What you need to know about the San Francisco Tech Scene
San Francisco and the surrounding Bay Area attracts more startup funding than any other region in the world. Home to Stanford University and UC Berkeley, leading VC firms and several of the world’s most valuable companies, the Bay Area is the place to go for anyone looking to make it big in the tech industry. That said, San Francisco has a lot to offer beyond technology thanks to a thriving art and music scene, excellent food and a short drive to several of the country’s most beautiful recreational areas.
Key Facts About San Francisco Tech
- Number of Tech Workers: 365,500; 13.9% of overall workforce (2024 CompTIA survey)
- Major Tech Employers: Google, Apple, Salesforce, Meta
- Key Industries: Artificial intelligence, cloud computing, fintech, consumer technology, software
- Funding Landscape: $50.5 billion in venture capital funding in 2024 (Pitchbook)
- Notable Investors: Sequoia Capital, Andreessen Horowitz, Bessemer Venture Partners, Greylock Partners, Khosla Ventures, Kleiner Perkins
- Research Centers and Universities: Stanford University; University of California, Berkeley; University of San Francisco; Santa Clara University; Ames Research Center; Center for AI Safety; California Institute for Regenerative Medicine

