A complete application in a minute — tailored resume and cover letter, ready to send.
Bloomberg’s Cyber Security Operations Center (CSOC) Threat Hunting, Intelligence & Incident Response team seeks a Senior Incident Response & Digital Forensics Analyst in New York. You will lead end-to-end security investigations, analyze disk/memory forensics, malware, and attacker behavior across Windows, Linux, and macOS, while shaping forensic capabilities and detection coverage.
You will mentor others, contribute to tooling and processes, and collaborate with cross-functional teams to ensure
Location
New York
Business Area
Legal, Compliance, and Risk
Ref #
10054249
Cyber Security Operations Center — Threat Hunting, Intelligence & Incident Response
The Role
Bloomberg’s Cyber Security Operations Center (CSOC) protects the organization by identifying, investigating, and responding to cyber threats. Working closely with Engineering, Legal, Compliance, and other teams across Bloomberg, CSOC provides security monitoring, incident response, threat hunting, and forensic expertise across a complex global technology environment.
As a Senior Incident Response & Digital Forensics Analyst within the Threat Hunting, Intelligence & Incident Response (THIR) team, you will lead the technical investigation of our most complex security incidents and escalations.
You will take ambiguous events where the answer is not immediately apparent and drive them to a defensible conclusion. This includes analyzing host, memory, network, and log evidence; acquiring and examining forensic images; investigating suspicious binaries; and reconstructing attacker activity to determine what happened, how it happened, and the extent of impact.
During significant incidents, you will help establish ground truth quickly, maintain technical ownership of the investigation, and work with stakeholders across Bloomberg to support an effective response.
This role also carries an important leadership expectation: raising the analytical capability of the wider team. Through hands‑on mentoring, incident pairing, playbooks, procedures, and structured knowledge sharing, you will help build deeper expertise in areas such as malware analysis, memory forensics, and log‑based threat hunting.
You will also help shape Bloomberg’s forensic capabilities by contributing to tooling, workflows, investigative standards, and the conversion of lessons learned from incidents into repeatable processes and durable detection coverage.
THIS is a globally distributed team across New York, EMEA, and APAC. Our follow‑the‑sun model allows investigations and operational work to transition between regions rather than routinely requiring teams to work outside normal hours.
The role is shift‑oriented, and significant incidents may occasionally require support outside standard working hours. When that happens, the team works together globally to manage the response.
Bloomberg operates in a fast‑moving, collaborative environment where people are encouraged to contribute ideas regardless of title. We value high standards, trust, curiosity, teamwork, and giving back to the communities in which we operate.
If this sounds like an environment where you would thrive, we would like to hear from you.
Bloomberg is an equal opportunities employer. We value diversity and do not discriminate on the basis of race, religion, color, national origin, gender, sexual orientation, age, marital status, veteran status, disability status, or other protected characteristics.
Salary Range = 190,000-260,000 USD Annual+ Benefits + Bonus
We offer one of the most comprehensive and generous benefits plans available and offer a range of total rewards that may include
among others.
The Company does not provide benefits directly to contingent workers/contractors and interns.
Discover what makes Bloomberg unique - watch our podcast series for an inside look at our culture, values, and the people behind our success.