Ankura Logo

Ankura

DFIR Senior Analyst

Posted 11 Days Ago
Be an Early Applicant
In-Office
London, England
Senior level
In-Office
London, England
Senior level
The DFIR Senior Analyst manages cyber incident responses, leads investigations, and communicates with clients while supporting project management and financial aspects.
The summary above was generated by AI

Ankura is a team of excellence founded on innovation and growth.

This position supports the Data & Technology practice - one of six practices focused on client delivery services across the Firm

Practice Overview

Ankura’s Cyber Security and Privacy Practice is a full-service suite of Cyber Security and Privacy solutions, regardless of industry or size.  Our global team of over 100 professionals includes former federal law enforcement personnel, in-house security experts, Big 4 consultants, federal regulators, threat intel and dark web experts, etc. We have helped clients and partners for 10+ years across industries and geographies with the following services:

  • Incident Response, Intelligence, and Investigations.

  • End Point & Managed Detection & Response.

  • Technology, Privacy, and Cyber Risk Advisory.

The EMEA Cyber Security & Privacy practice is growing and has ambitions to expand its capabilities from a strong base in incident response, intelligence and investigations into additional proactive security, AI security and managed detection & response services.

Why Join Ankura

  • Have the opportunity to get involved in challenging client projects with both Proactive and Reactive work.

  • We can support and develop individuals who aspire to be an expert.

  • Vast opportunities for career development, with a formal development process, training programmes and the internal e-learning training platform, Ankura Academy.

  • Work with a collaborative environment, whereby our professionals have the freedom to innovate which promotes curiosity, learning and communication.

Role:

We are seeking a Manager level candidate with Incident Response and project management experience gained in professional services.

Responsibilities:

  • Respond to cyber incidents reported by clients

  • Manage cyber incident responses and incident response teams

  • Lead cyber investigations

  • Understanding of incident analysis workflow and tools

  • Quality control reviews of team members deliverables and work processes

  • Perform project management and engagement risk management activities

  • Support financial management of individual projects and cyber incident response team

  • Manage time, tasks and resources to meet internal and external deadlines.

  • Lead client communications, both written and oral, throughout the lifecycle of the project.

Requirements:

  • Degree in Computer Science or Cyber Security, or related equivalent.

  • Experience at Manager level within management consulting and the Incident Response field is essential

  • Able to communicate effectively and concisely with high level management and C-suite clients on a frequent basis

  • Adept in setting up new engagements to support clients in responding to incidents

  • Capable of managing both short term and long-term projects

  • Understanding of engagement risk

  • Exposure to responding to incidents including Ransomware, ATP attacks, BEC, Cloud etc a plus.

  • Experience of managing teams and performance management of individuals

  • Ability to identify opportunities within existing and potential clients

  • Experience working with non-Windows systems (such as Linux, Unix, Mac)

  • Scripting/programming experience (specifically Python, C#, VBA, or Powershell)

  • Experience working in a consultancy environment

  • Exposure to AI technologies, techniques and approaches within the DFIR domain.

  • Strong desire to work in a team in a collaborative environment to achieve common goals

  • Exceptional organisational skills

  • Passion for Cyber Incident Response, and a desire for continuous improvement in expertise

  • Ability to correlate events from multiple sources to create a timeline analysis across end points of an incident.

  • Understanding of how to leverage existing security applications and appliances to address a compromise or malware/ransomware outbreak

  • Experience working with Enterprise networks

  • Understanding of mitigation and clean-up strategies

  • Proficient in log analysis of multiple types

  • Ability to analyse complex network packet captures

  • Understanding of memory, how to capture, data available and analysis skills

  • Understanding of how to take malware apart from a virtual machine, dynamic malware analysis, and reverse engineering perspective

  • Ability to travel (including occasional international travel) at short notice.

  • Available to be on-call 1 in 4 weekends each month

#LI-RW1

#LI-Hybrid

Ankura is an Affirmative Action and Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, or protected veteran status and will not be discriminated against based on disability. Equal Employment Opportunity Posters, if you have a disability and believe you need a reasonable accommodation to search for a job opening, submit an online application, or participate in an interview/assessment, please email [email protected] or call toll-free +1.312-583-2122. This email and phone number are created exclusively to assist disabled job seekers whose disability prevents them from being able to apply online. Only messages left for this purpose will be returned. Messages left for other purposes, such as following up on an application or technical issues unrelated to a disability, will not receive a response.

Top Skills

C#
Linux
macOS
Powershell
Python
Unix
VBA

Similar Jobs

9 Minutes Ago
Remote or Hybrid
Staines, Surrey, England, GBR
Expert/Leader
Expert/Leader
Artificial Intelligence • Cloud • HR Tech • Information Technology • Productivity • Software • Automation
Provide high-touch executive support including complex calendar management, travel booking (including multi-destination/visa support), expense reconciliation (Concur), meeting coordination across time zones, drafting correspondence and presentations, and proactively optimizing leadership time while mentoring peers.
Top Skills: Zoom,Microsoft Word,Microsoft Excel,Microsoft Powerpoint,Microsoft Outlook,Box,Concur,Google Docs
9 Minutes Ago
Remote or Hybrid
Staines, Surrey, England, GBR
Senior level
Senior level
Artificial Intelligence • Cloud • HR Tech • Information Technology • Productivity • Software • Automation
Provide technical pre-sales support for ServiceNow solutions: lead discovery workshops, deliver demos, answer technical questions, guide strategic account programs, feed product management, and support events to drive sales outcomes.
Top Skills: AICloud SoftwareServicenow
9 Minutes Ago
Remote or Hybrid
Staines, Surrey, England, GBR
Senior level
Senior level
Artificial Intelligence • Cloud • HR Tech • Information Technology • Productivity • Software • Automation
Lead and develop a Solution Consulting demonstration capability and team of early-career presales consultants. Build repeatable demo processes, DemoHub/ DemoCenter programs, video demo assets, and partner with marketing and field teams to drive pipeline and scale capability globally.
Top Skills: Servicenow,Ai,Democenter,Demohub

What you need to know about the London Tech Scene

London isn't just a hub for established businesses; it's also a nursery for innovation. Boasting one of the most recognized fintech ecosystems in Europe, attracting billions in investments each year, London's success has made it a go-to destination for startups looking to make their mark. Top U.K. companies like Hoptin, Moneybox and Marshmallow have already made the city their base — yet fintech is just the beginning. From healthtech to renewable energy to cybersecurity and beyond, the city's startups are breaking new ground across a range of industries.

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account