Security Engineer III, Exploitation Analyst / Incident Responder (TS Clearance)
Indexed description
Cyber threats continue to evolve, and organizations need professionals who can identify, analyze, and respond to exploitation activity before it disrupts business operations. As a Cyber Exploitation Analyst, you will support cyber defense efforts by analyzing threat activity, investigating incidents, assessing vulnerabilities, and help strengthen security posture across enterprise environments. This role is well suited for professionals with experience in threat intelligence, incident response, exploit analysis, and technical reporting. You will work with cross-functional teams to turn technical findings into actionable recommendations.
Work you'll do
As a Cyber Exploitation Analyst/Incident Responder on the Cyber Defense & Resilience team, you will be responsible for...
- Monitor networks, systems, and applications for indicators of compromise and analyze threat data to identify malicious activity.
- Investigate security incidents, collect and analyze logs, memory artifacts, network traffic, and support containment, eradication, and recovery activities.
- Identify and assess vulnerabilities in systems, networks, and applications and recommend remediation actions based on risk and exploitability.
- Analyze malware, exploits, and adversary tools, including reverse engineering malicious code and simulating adversary techniques in controlled environments.
- Prepare technical reports, briefings, and documentation that summarize findings, methodologies, and recommendations for stakeholders.
- Ability to work independently and collaborate as part of a team
- Effective written and verbal communication skills
- Meticulous attention to detail and quality of work product
- Ability to build and sustain professional relationships
- Ability to lead projects or workstreams
- Ability to manage and prioritize multiple tasks in a fast-paced and dynamic environment
- Strong interpersonal skills and professional demeanor
- Ability to meet deadlines
- Ability to provide clear guidance to others
Qualifications
Required:
- Bachelor's degree in Cybersecurity, Computer Science, Information Systems, Engineering, or a related technical field
- Active Top-Secret Clearance
- 2+ years of experience within the following:
- Cyber exploitation analysis, threat intelligence, or incident response
- Experience analyzing advanced persistent threats (APTs), malware, exploitation techniques, and reverse engineering tools such as IDA Pro or Ghidra
- Experience performing vulnerability assessments, penetration testing, or red team activities
- Experience with network traffic analysis, log analysis, digital forensics, Windows, Linux, macOS, common network protocols, scripting languages such as Python, PowerShell, or Bash, and security monitoring tools such as security information and event management (SIEM), intrusion detection systems (IDS), intrusion prevention systems (IPS), or endpoint detection and response (EDR)
- Ability to travel up to 20%, on average, based on the work you do and the clients and industries/sectors you serve.
- Must be willing to work at client onsite or Deloitte office for up to 5 days a week
- Industry certifications such as Global Information Assurance Certification (GIAC), Certified Information Systems Security Professional (CISSP) or CompTIA Security+ is required.
- Must be legally authorized to work in the United States without the need for employer sponsorship, now or at any time in the future.
- Experience supporting incident response in government, defense, intelligence, or large enterprise environments
- Experience analyzing packet captures, memory dumps, and host-based forensic artifacts
- Experience mapping threat activity to the MITRE ATT&CK framework
- Experience developing or tuning detections for SIEM or EDR platforms
- Industry certifications such as Global Information Assurance Certification (GIAC), Certified Information Systems Security Professional (CISSP), or CompTIA Security+
You may also be eligible to participate in a discretionary annual incentive program, subject to the rules governing the program, whereby an award, if any, depends on various factors, including, without limitation, individual and organizational performance.
Create a free Caio profile to unlock more results and save your role and location preferences.
Unlock free search