Cyber Threat Analyst

Posted An Hour Ago
Be an Early Applicant
Hiring Remotely in United States
Remote or Hybrid
Mid level
Fintech • Software
We deliver end-to-end risk and compliance solutions through our software and domain expertise.
The Role
Analyze and correlate security data from multiple systems to detect, investigate, contain, and remediate cyber threats. Build and maintain SIEM rules, support incident response, perform root-cause analysis, develop dashboards and visualizations, and advise security leadership. Use threat intelligence, Mitre ATT&CK, and scripting (SQL/Python) to consolidate data and improve monitoring.
Summary Generated by Built In
Join a dynamic team at the pulse of global markets, where we deliver innovative software and service solutions for essential financial reporting and capital markets transactions. At DFIN, we are a values-driven organization that empowers you to build a fulfilling career while bringing your authentic self to work every day. Our "Win as One" mentality ensures that our team's success is directly linked to Client, Shareholder and Employee Satisfaction.
In 2026, DFIN was named #1 on the 2026 Top 100 Global Most Loved Workplaces® by Best Practice Institute. We have also been recognized as one of America's Most Loved Workplaces® for five consecutive years and a Built In Best Place to Work for six years, reflecting our continued commitment to supporting employees' total well-being. Enjoy competitive compensation, a flexible workplace, comprehensive benefits, and opportunities for professional growth. Bring your passion and talents to DFIN - because being YOU thrives here.
Summary:
The Cyber Threat Analyst will focus on gathering and analyzing data from disparate systems and produce cyber insights as necessary to identify, contain, mitigate, and/or recover from cyber security threats and/or incidents. The Cyber Threat Analyst II will work side-by-side with peers to investigate all cyber threats facing the organization.
Responsibilities:
  • Build, manage, and maintain correlation rules and alarming configurations for various cyber security platforms to include, but not limited to Security Incident & Event Management (SIEM), Security Orchestration, Threat Intelligence, and other platforms
  • Understand common Windows/Linux/Mac operating system functions and vulnerabilities
  • Collect, organize, and analyze data using various cyber security tools such as Common SIEM/event correlation technologies, Radware, firewall platforms, Threat Intel Platforms, and other security analysis platforms
  • Support investigations of suspected cyber security events, system anomalies/misconfigurations, system misuse, compliance reviews as requested
  • Identify, analyze, and interpret trends or patterns in complex data sets
  • Exercise an understanding of the Cyber Kill Chain and Mitre ATT&CK Framework
  • Work with the functional business area to identify, gather, investigate, and document business processes related to incident response, security logging sources and formats, company-wide data architectures, threat modeling, and security best practices
  • Visualize data insights using data visualization tools as necessary to ensure CISO, Security Operations, and other relevant dashboards are current and relevant

Additional Job Responsibilities
  • Perform root-cause analysis to understand data problems and find solutions by understanding user requirements
  • Build an inventory of assets to be monitored in support the DFS Enterprise Security Monitoring program
  • Serve as a trusted advisor to the Director, Security Technologies and/or the SVP-CISO on sensitive matters warranting confidentiality
  • Demonstrate subject matter expertise across technology domains
  • Perform other duties as assigned
  • Consolidate and analyze data from disparate systems using data integration tools or writing custom code in SQL, Python, or other scripting languages

Qualifications:
  • Bachelor degree with 3+ years of relevant work experience OR demonstrated ability to meet the job requirements through a comparable number of years of applicable work experience and education
  • Strong analytical competency
  • Ability to develop, customize, and maintain visualization dashboards utilizing SIEM and other security platforms
  • Strong understanding of cyber security threat modeling
  • Deep insights into threat intelligence tools and techniques
  • Advanced knowledge of cyber-attack techniques, and mitigation strategies
  • Advanced knowledge of firewalls, anti-malware, intrusion detection and/or prevention systems, and other network and systems security platforms
  • Ability to effectively communicate complex topics to engineers and leadership
  • Ability to properly handle confidential data and strictly follow business process and procedure
  • Ability to collaborate in cross-functional teams
  • Excellent attention to detail
  • Ability to operate in high stress situations

It is the policy of Donnelley Financial Solutions to select, place, and manage all its employees without discrimination based on race, color, national origin, gender, age, religion, actual or perceived disability, veteran status, actual or perceived sexual orientation, genetic information or any other protected status.
If you are a qualified individual w ith a disability or a disabled veteran, you have the right to request a reasonable accommodation if you are unable or limited in your ability to use or access jobs.dfinsolutions.com as a result of your disability. You can request a reasonable accommodation by sending an email to [email protected] .
At DFIN, protecting your identity is a top priority. Please be aware of scammers impersonating DFIN recruiters. DFIN recruiters will never request personal information via email or text. You will only receive a text from us if you've already been in contact. All automated messages will come from [email protected] . If you ever have doubts about the legitimacy of any communication from us, please do not hesitate to reach out for verification via [email protected] (this email is for general TA questions and is not used for updates on your application status). #BI-Remote

Skills Required

  • Bachelor's degree with 3+ years relevant experience or equivalent combination of education and experience
  • Experience building, managing, and maintaining correlation rules and alarms for SIEM and security platforms
  • Proficiency with SIEM, SOAR, threat intelligence platforms, Radware, firewalls, IDS/IPS, and anti-malware
  • Strong understanding of Windows, Linux, and Mac operating system functions and vulnerabilities
  • Experience collecting, organizing, and analyzing security event data from disparate systems
  • Ability to consolidate and analyze data using data integration tools or custom code (SQL, Python, other scripting)
  • Ability to develop and maintain visualization dashboards utilizing SIEM and other security platforms
  • Strong analytical competency and attention to detail
  • Deep knowledge of threat intelligence tools, cyber-attack techniques, and mitigation strategies
  • Familiarity with Cyber Kill Chain and MITRE ATT&CK Framework
  • Ability to communicate complex technical topics to engineers and leadership
  • Ability to handle confidential data and follow business processes
  • Ability to collaborate in cross-functional teams and operate in high-stress situations

What the Team is Saying

Stephen
James Menke
Dan Leib
Chris Tanger
Dan Leib
Dan Leib

DFIN Compensation & Benefits Highlights

  • Leave & Time Off Breadth Flexible Paid Time Off (unlimited PTO) for many U.S. salaried employees, plus paid holidays and sick leave, is explicitly adopted. A remote‑first model further supports taking time when needed in eligible roles.
  • Equity Value & Accessibility An Employee Stock Purchase Plan allows eligible employees to buy company stock at a 10% discount, noted in the U.S. with expansion to the U.K. and Canada. This provides accessible ownership alongside cash compensation.
  • Parental & Family Support Company materials cite 12 weeks paid leave for birth mothers and six weeks paid parental leave for all parents, with adoption assistance and IVF coverage also described. These provisions signal meaningful support for growing families.

DFIN Insights

Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
HQ: Chicago, IL
1,750 Employees
Year Founded: 2016

What We Do

DFIN is a leading global risk and compliance solutions company. We provide domain expertise, software and data analytics for every stage of our clients’ business and investment lifecycles. Markets fluctuate, regulations evolve, technology advances, and through it all, DFIN delivers confidence with the right solutions in moments that matter.

Why Work With Us

DFIN is shaping global markets and is an environment where you can bring your whole self to work and do your best work every day. We are a values-based culture in which you can build a rewarding career.

Gallery

Gallery
Gallery
Gallery
Gallery
Gallery
Gallery
Gallery

DFIN Offices

Hybrid Workspace

Employees engage in a combination of remote and on-site work.

We operate in a fully flexible work environment. Our employees can continue to work remotely, our offices remain open and available for collaboration.

Typical time on-site: Flexible
Company Office Image
HQChicago, IL
Located in the heart of downtown Chicago’s financial district, we are steps from all Metra stations, good eats and entertainment.

Similar Jobs

Remote or Hybrid
United States
1750 Employees

DFIN Logo DFIN

Account Executive

Fintech • Software
Remote or Hybrid
United States
1750 Employees

DFIN Logo DFIN

Manager - Sales Operations

Fintech • Software
Remote or Hybrid
United States
1750 Employees
Remote or Hybrid
San Francisco, CA, USA
1750 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account