In 2026, DFIN was named #1 on the 2026 Top 100 Global Most Loved Workplaces® by Best Practice Institute. We have also been recognized as one of America's Most Loved Workplaces® for five consecutive years and a Built In Best Place to Work for six years, reflecting our continued commitment to supporting employees' total well-being. Enjoy competitive compensation, a flexible workplace, comprehensive benefits, and opportunities for professional growth. Bring your passion and talents to DFIN - because being YOU thrives here.
Summary:
The Cyber Threat Analyst will focus on gathering and analyzing data from disparate systems and produce cyber insights as necessary to identify, contain, mitigate, and/or recover from cyber security threats and/or incidents. The Cyber Threat Analyst II will work side-by-side with peers to investigate all cyber threats facing the organization.
Responsibilities:
- Build, manage, and maintain correlation rules and alarming configurations for various cyber security platforms to include, but not limited to Security Incident & Event Management (SIEM), Security Orchestration, Threat Intelligence, and other platforms
- Understand common Windows/Linux/Mac operating system functions and vulnerabilities
- Collect, organize, and analyze data using various cyber security tools such as Common SIEM/event correlation technologies, Radware, firewall platforms, Threat Intel Platforms, and other security analysis platforms
- Support investigations of suspected cyber security events, system anomalies/misconfigurations, system misuse, compliance reviews as requested
- Identify, analyze, and interpret trends or patterns in complex data sets
- Exercise an understanding of the Cyber Kill Chain and Mitre ATT&CK Framework
- Work with the functional business area to identify, gather, investigate, and document business processes related to incident response, security logging sources and formats, company-wide data architectures, threat modeling, and security best practices
- Visualize data insights using data visualization tools as necessary to ensure CISO, Security Operations, and other relevant dashboards are current and relevant
Additional Job Responsibilities
- Perform root-cause analysis to understand data problems and find solutions by understanding user requirements
- Build an inventory of assets to be monitored in support the DFS Enterprise Security Monitoring program
- Serve as a trusted advisor to the Director, Security Technologies and/or the SVP-CISO on sensitive matters warranting confidentiality
- Demonstrate subject matter expertise across technology domains
- Perform other duties as assigned
- Consolidate and analyze data from disparate systems using data integration tools or writing custom code in SQL, Python, or other scripting languages
Qualifications:
- Bachelor degree with 3+ years of relevant work experience OR demonstrated ability to meet the job requirements through a comparable number of years of applicable work experience and education
- Strong analytical competency
- Ability to develop, customize, and maintain visualization dashboards utilizing SIEM and other security platforms
- Strong understanding of cyber security threat modeling
- Deep insights into threat intelligence tools and techniques
- Advanced knowledge of cyber-attack techniques, and mitigation strategies
- Advanced knowledge of firewalls, anti-malware, intrusion detection and/or prevention systems, and other network and systems security platforms
- Ability to effectively communicate complex topics to engineers and leadership
- Ability to properly handle confidential data and strictly follow business process and procedure
- Ability to collaborate in cross-functional teams
- Excellent attention to detail
- Ability to operate in high stress situations
It is the policy of Donnelley Financial Solutions to select, place, and manage all its employees without discrimination based on race, color, national origin, gender, age, religion, actual or perceived disability, veteran status, actual or perceived sexual orientation, genetic information or any other protected status.
If you are a qualified individual w ith a disability or a disabled veteran, you have the right to request a reasonable accommodation if you are unable or limited in your ability to use or access jobs.dfinsolutions.com as a result of your disability. You can request a reasonable accommodation by sending an email to [email protected] .
At DFIN, protecting your identity is a top priority. Please be aware of scammers impersonating DFIN recruiters. DFIN recruiters will never request personal information via email or text. You will only receive a text from us if you've already been in contact. All automated messages will come from [email protected] . If you ever have doubts about the legitimacy of any communication from us, please do not hesitate to reach out for verification via [email protected] (this email is for general TA questions and is not used for updates on your application status). #BI-Remote
Skills Required
- Bachelor's degree with 3+ years relevant experience or equivalent combination of education and experience
- Experience building, managing, and maintaining correlation rules and alarms for SIEM and security platforms
- Proficiency with SIEM, SOAR, threat intelligence platforms, Radware, firewalls, IDS/IPS, and anti-malware
- Strong understanding of Windows, Linux, and Mac operating system functions and vulnerabilities
- Experience collecting, organizing, and analyzing security event data from disparate systems
- Ability to consolidate and analyze data using data integration tools or custom code (SQL, Python, other scripting)
- Ability to develop and maintain visualization dashboards utilizing SIEM and other security platforms
- Strong analytical competency and attention to detail
- Deep knowledge of threat intelligence tools, cyber-attack techniques, and mitigation strategies
- Familiarity with Cyber Kill Chain and MITRE ATT&CK Framework
- Ability to communicate complex technical topics to engineers and leadership
- Ability to handle confidential data and follow business processes
- Ability to collaborate in cross-functional teams and operate in high-stress situations
DFIN Compensation & Benefits Highlights
-
Leave & Time Off Breadth — Flexible Paid Time Off (unlimited PTO) for many U.S. salaried employees, plus paid holidays and sick leave, is explicitly adopted. A remote‑first model further supports taking time when needed in eligible roles.
-
Equity Value & Accessibility — An Employee Stock Purchase Plan allows eligible employees to buy company stock at a 10% discount, noted in the U.S. with expansion to the U.K. and Canada. This provides accessible ownership alongside cash compensation.
-
Parental & Family Support — Company materials cite 12 weeks paid leave for birth mothers and six weeks paid parental leave for all parents, with adoption assistance and IVF coverage also described. These provisions signal meaningful support for growing families.
DFIN Insights
What We Do
DFIN is a leading global risk and compliance solutions company. We provide domain expertise, software and data analytics for every stage of our clients’ business and investment lifecycles. Markets fluctuate, regulations evolve, technology advances, and through it all, DFIN delivers confidence with the right solutions in moments that matter.
Why Work With Us
DFIN is shaping global markets and is an environment where you can bring your whole self to work and do your best work every day. We are a values-based culture in which you can build a rewarding career.
Gallery
DFIN Offices
Hybrid Workspace
Employees engage in a combination of remote and on-site work.
We operate in a fully flexible work environment. Our employees can continue to work remotely, our offices remain open and available for collaboration.












