The analyst will work extensively in Proofpoint and Outlook, triage reported phishing emails, support incident response, and help improve how we detect and respond to email-based threats. The ideal ...
The analyst will work extensively in Proofpoint and Outlook, triage reported phishing emails, support incident response, and help improve how we detect and respond to email-based threats. The ideal ...
Cyber Security Analyst
Columbus, OH · On-site
Must know the difference between a SPAM and Phishing email and ability to investigate appropriately ... Knowledge of malware analysis, phishing tactics, vulnerability exploitation, and MITRE.
Cyber Security Analyst
Columbus, OH · On-site
Must know the difference between a SPAM and Phishing email and ability to investigate appropriately ... Knowledge of malware analysis, phishing tactics, vulnerability exploitation, and MITRE.
Technical Service Specialist I
Clive, IA · On-site
Assists with security-related user reports, including phishing email analysis and response. Essential Functions: Customer Service Technical Support: Serve as the primary point of contact for ...
Technical Service Specialist I
Clive, IA · On-site
Assists with security-related user reports, including phishing email analysis and response. Essential Functions: Customer Service Technical Support: Serve as the primary point of contact for ...
Technical Service Specialist I
Clive, IA · On-site
Assists with security-related user reports, including phishing email analysis and response. Essential Functions: Customer Service Technical Support: Serve as the primary point of contact for ...
Technical Service Specialist I
Clive, IA · On-site
Assists with security-related user reports, including phishing email analysis and response. Essential Functions: Customer Service Technical Support: Serve as the primary point of contact for ...
Proofpoint Email Security Analyst
Mckinney, TX · On-site
$65/hr
Triage and investigate email threats including phishing, business email compromise (BEC ... Strong analytical skills, attention to detail, sound judgment, and clear communication with both ...
Proofpoint Email Security Analyst
Mckinney, TX · On-site
$65/hr
Triage and investigate email threats including phishing, business email compromise (BEC ... Strong analytical skills, attention to detail, sound judgment, and clear communication with both ...
Proofpoint Email Security Analyst
Mckinney, TX · On-site
$130K/yr
Triage and investigate email threats including phishing, business email compromise (BEC ... Strong analytical skills, attention to detail, sound judgment, and clear communication with both ...
Proofpoint Email Security Analyst
Mckinney, TX · On-site
$130K/yr
Triage and investigate email threats including phishing, business email compromise (BEC ... Strong analytical skills, attention to detail, sound judgment, and clear communication with both ...
CIRT Tier 1 Analyst / Active Secret
Beltsville, MD · On-site
$80K - $128K/yr
Identify and triage benign, spam, exercise, and malicious phishing email. * Perform binary artifact ... Coordinate and collaborate with Department teams as needed to analyze and respond to events and ...
CIRT Tier 1 Analyst / Active Secret
Beltsville, MD · On-site
$80K - $128K/yr
Identify and triage benign, spam, exercise, and malicious phishing email. * Perform binary artifact ... Coordinate and collaborate with Department teams as needed to analyze and respond to events and ...
Phishing Analysts have a keen eye for detail and a natural ability to spot social engineering ... You will be responsible for reviewing suspicious emails, performing open-source research, and ...
Phishing Analysts have a keen eye for detail and a natural ability to spot social engineering ... You will be responsible for reviewing suspicious emails, performing open-source research, and ...
Independently follow detailed operational process and procedures to appropriately analyze, escalate, and assist in remediation of critical information security incidents. Triage phishing emails and ...
Independently follow detailed operational process and procedures to appropriately analyze, escalate, and assist in remediation of critical information security incidents. Triage phishing emails and ...
CIRT Tier 1 Analyst / Active Secret
$80K - $128K/yr
Identify and triage benign, spam, exercise, and malicious phishing email. * Perform binary artifact ... Coordinate and collaborate with Department teams as needed to analyze and respond to events and ...
CIRT Tier 1 Analyst / Active Secret
$80K - $128K/yr
Identify and triage benign, spam, exercise, and malicious phishing email. * Perform binary artifact ... Coordinate and collaborate with Department teams as needed to analyze and respond to events and ...
Email Administrator
New Orleans, LA · On-site
... analyze, contain, and remediate email‑borne security incidents such as phishing campaigns, business email compromise (BEC), account takeovers, and malware distribution. Performs threat hunting and ...
Email Administrator
New Orleans, LA · On-site
... analyze, contain, and remediate email‑borne security incidents such as phishing campaigns, business email compromise (BEC), account takeovers, and malware distribution. Performs threat hunting and ...
Analyze endpoint, network, email, identity, and security telemetry to support investigations ... Improve phishing detection and threat monitoring through security automation and enhanced detection ...
Analyze endpoint, network, email, identity, and security telemetry to support investigations ... Improve phishing detection and threat monitoring through security automation and enhanced detection ...
Email Administrator
New Orleans, LA · On-site
... analyze, contain, and remediate email-borne security incidents such as phishing campaigns, business email compromise (BEC), account takeovers, and malware distribution. Performs threat hunting and ...
Email Administrator
New Orleans, LA · On-site
... analyze, contain, and remediate email-borne security incidents such as phishing campaigns, business email compromise (BEC), account takeovers, and malware distribution. Performs threat hunting and ...
CIRT Tier 1 Analyst / Active Secret
Beltsville, MD · On-site
$80K - $128K/yr
Identify and triage benign, spam, exercise, and malicious phishing email. * Perform binary artifact ... Coordinate and collaborate with Department teams as needed to analyze and respond to events and ...
CIRT Tier 1 Analyst / Active Secret
Beltsville, MD · On-site
$80K - $128K/yr
Identify and triage benign, spam, exercise, and malicious phishing email. * Perform binary artifact ... Coordinate and collaborate with Department teams as needed to analyze and respond to events and ...
CIRT Tier 1 Analyst / Active Secret
Beltsville, MD · On-site
$80K - $128K/yr
Identify and triage benign, spam, exercise, and malicious phishing email. * Perform binary artifact ... Coordinate and collaborate with Department teams as needed to analyze and respond to events and ...
CIRT Tier 1 Analyst / Active Secret
Beltsville, MD · On-site
$80K - $128K/yr
Identify and triage benign, spam, exercise, and malicious phishing email. * Perform binary artifact ... Coordinate and collaborate with Department teams as needed to analyze and respond to events and ...
CIRT Tier 1 Analyst / Active Secret
$80K - $128K/yr
Identify and triage benign, spam, exercise, and malicious phishing email. * Perform binary artifact ... Coordinate and collaborate with Department teams as needed to analyze and respond to events and ...
CIRT Tier 1 Analyst / Active Secret
$80K - $128K/yr
Identify and triage benign, spam, exercise, and malicious phishing email. * Perform binary artifact ... Coordinate and collaborate with Department teams as needed to analyze and respond to events and ...
CIRT Tier 1 Analyst / Active Secret
Beltsville, MD · On-site
$80K - $128K/yr
Identify and triage benign, spam, exercise, and malicious phishing email. * Perform binary artifact ... Coordinate and collaborate with Department teams as needed to analyze and respond to events and ...
CIRT Tier 1 Analyst / Active Secret
Beltsville, MD · On-site
$80K - $128K/yr
Identify and triage benign, spam, exercise, and malicious phishing email. * Perform binary artifact ... Coordinate and collaborate with Department teams as needed to analyze and respond to events and ...
CIRT Tier 1 Analyst / Active Secret
Beltsville, MD · On-site
$80K - $128K/yr
Identify and triage benign, spam, exercise, and malicious phishing email. * Perform binary artifact ... Coordinate and collaborate with Department teams as needed to analyze and respond to events and ...
CIRT Tier 1 Analyst / Active Secret
Beltsville, MD · On-site
$80K - $128K/yr
Identify and triage benign, spam, exercise, and malicious phishing email. * Perform binary artifact ... Coordinate and collaborate with Department teams as needed to analyze and respond to events and ...
The Anti-Phishing manager will be responsible for leading a team of passionate individuals, who ... email messages abuse Strong written and verbal communication skills Demonstrated analytical and ...
The Anti-Phishing manager will be responsible for leading a team of passionate individuals, who ... email messages abuse Strong written and verbal communication skills Demonstrated analytical and ...
The Anti-Phishing manager will be responsible for leading a team of passionate individuals, who ... email messages abuse Strong written and verbal communication skills Demonstrated analytical and ...
The Anti-Phishing manager will be responsible for leading a team of passionate individuals, who ... email messages abuse Strong written and verbal communication skills Demonstrated analytical and ...
Phishing Email Analyst information
See salary details
$31K - $40K
11% of jobs
$40K - $49K
9% of jobs
$52.1K is the 25th percentile. Wages below this are outliers.
$49K - $58K
15% of jobs
$58K - $67K
15% of jobs
The median wage is $67.3K / yr.
$67K - $76K
18% of jobs
$82.5K is the 75th percentile. Wages above this are outliers.
$76K - $85K
11% of jobs
$85K - $94K
7% of jobs
$94K - $103K
5% of jobs
$103K - $112K
4% of jobs
$112K - $121K
2% of jobs
$121K - $130K
3% of jobs
$31K
$73.3K
$130K
How much do phishing email analyst jobs pay per year?
What is a phishing email analyst?
What skills and qualifications are needed to be a phishing email analyst?
What challenges do phishing email analysts face in identifying sophisticated phishing attempts?
What is the difference between Phishing Email Analyst vs Security Analyst?
| Aspect | Phishing Email Analyst | Security Analyst |
|---|---|---|
| Credentials | Certifications like CompTIA Security+, CEH often preferred | Certifications like CISSP, Security+ common |
| Work Environment | Focus on email security, threat detection, and analysis | Broader security responsibilities including network, system, and data protection |
| Employer & Industry | Financial institutions, tech companies, cybersecurity firms | All industries, including finance, healthcare, government |
| Search & Comparison Intent | Understanding specific email threat roles | Broader cybersecurity roles and responsibilities |
The Phishing Email Analyst specializes in identifying and mitigating email-based threats, focusing on phishing attacks and email security. In contrast, a Security Analyst has a broader scope, covering various security domains beyond email. Both roles require similar certifications and are vital in protecting organizational assets, but their focus areas differ significantly.
What cities are hiring for Phishing Email Analyst jobs?
Cities with the most Phishing Email Analyst job openings:
What states have the most Phishing Email Analyst jobs?
States with the most job openings for Phishing Email Analyst jobs include:
What are popular job titles related to Phishing Email Analyst jobs?
For Phishing Email Analyst jobs, the most frequently searched job titles are:

Email Security and Social Engineering Analyst
Memphis, TN • On-site
Other
Posted 13 days ago
Key responsibilities
Use Proofpoint tools to review and manage email traffic, alerts, quarantines, and threat activity.
Lead day-to-day phishing response by monitoring, triaging, investigating, containing, and documenting suspicious emails.
Support incident response activities related to email security, including evidence collection, containment, escalation, and documentation.
Job description
Business Area: Information Security - Security Operations
Posting Type: Internal Applicants
Work Arrangement: On-site preferred (Memphis, New Orleans, other sites to be considered)
SummaryWe are seeking an associate to join the Security Operations team as an Email Security Analyst. This role will help protect the organization, our associates, and our customers by managing email security controls and investigating suspicious messages. The analyst will work extensively in Proofpoint and Outlook, triage reported phishing emails, support incident response, and help improve how we detect and respond to email-based threats.
The ideal candidate brings a healthy sense of paranoia: someone who notices when details do not add up, verifies assumptions, follows evidence, and remains appropriately skeptical without losing sight of business context. Just as important, this associate must communicate clearly and calmly with technical teams, business partners, leaders, and end users.
Why Consider This Opportunity?This position is a great opportunity to be on the front line of threats impacting our associates and customers. You will see firsthand—and help defend against—cybersecurity and social engineering threats while gaining hands‑on experience with enterprise email security, phishing response, digital risk protection, threat analysis, incident response, and security operations. You will also partner with teams across the company to investigate issues, contain threats, and protect the organization.
Essential Duties and Responsibilities- Use the Proofpoint Secure Email Gateway and related Proofpoint tools to review and manage email traffic, alerts, quarantines, and threat activity.
- Lead day-to-day phishing response by monitoring, triaging, investigating, containing, and documenting suspicious emails reported by associates and customers.
- Address ServiceNow tickets related to phishing, email security, email delivery, and other assigned security issues within established service-level expectations.
- Troubleshoot email delivery issues by reviewing message tracking, filtering decisions, quarantines, authentication results, policy routes, allow and block controls, and other relevant data.
- Analyze message headers, sender behavior, URLs, attachments, redirects, and message context to determine whether an email is legitimate, suspicious, or malicious.
- Investigate social engineering activity, including phishing, impersonation, business email compromise, credential theft, malicious links, and fraudulent requests.
- Support digital risk protection activities by identifying, reviewing, and escalating external threats such as brand impersonation, fraudulent domains, malicious websites, and other risks targeting the organization, its associates, or its customers.
- Perform Tier 1 phishing triage and elevate confirmed threats or complex investigations as appropriate.
- Use sandboxing, threat intelligence, endpoint, identity, and logging tools to validate findings and determine potential impact.
- Support email authentication and protection controls, including DMARC, SPF, DKIM, policy routes, and email firewall rules.
- Search for related messages, contain threats, remove malicious emails, and support affected-user response actions.
- Support incident response for compromised user accounts and devices, including evidence collection, scoping, containment, escalation, remediation coordination, and documentation.
- Work with Identity, Endpoint, Security Operations, and other response teams to protect affected users, reset or secure access, isolate devices when appropriate, and confirm that threats have been contained.
- Document investigations, evidence, decisions, and actions accurately and consistently.
- Communicate findings and recommended actions to associates in clear, professional, and timely language.
- Partner with Security Operations, Threat Management, Security Engineering, Messaging, Identity, and other teams during investigations and incidents.
- Identify recurring patterns, control gaps, and opportunities to improve phishing detection, email delivery support, digital risk protection, and incident response processes.
- Participate in an after-hours rotation or respond outside normal business hours when required.
- Perform other duties as assigned.
- You are naturally curious and willing to investigate beyond the first obvious answer.
- You maintain a healthy sense of paranoia while making evidence-based, practical decisions.
- You can distinguish unusual activity from normal business behavior and know when to ask more questions.
- You communicate with empathy and confidence, especially when an associate may be worried about a suspicious message or possible compromise.
- You remain organized and accurate while managing a queue of time-sensitive work.
- You explain technical findings in plain language and tailor your message to the audience.
- You take ownership, follow through, and elevate promptly when risk or impact is unclear.
- Current associate in good standing with demonstrated reliability, sound judgment, and attention to detail.
- Strong written and verbal communication skills, including the ability to interact effectively with associates, leaders, technical teams, and external contacts.
- Ability to analyze incomplete or conflicting information, recognize patterns, and make well-reasoned decisions.
- Ability to follow procedures while adapting to new attack techniques and changing business conditions.
- Comfort handling sensitive information and maintaining confidentiality.
- Ability to manage competing priorities and work independently in a fast-paced environment.
- General proficiency with Microsoft Office and collaboration tools.
- Education and experience sufficient to perform the responsibilities of the role; relevant internal experience and transferable skills will be considered.
- Experience in Information Security, fraud, investigations, technology support, risk management, compliance, customer service, operations, or another role requiring careful review and sound judgment.
- Familiarity with phishing, business email compromise, social engineering, malware, or common email threats.
- Experience with Proofpoint, Microsoft 365 email security, Splunk, endpoint detection and response tools, ticketing systems, and/or security sandboxes.
- Understanding of email headers, URLs, domains, DNS, DMARC, SPF, or DKIM.
- Experience documenting investigations or communicating findings to non-technical audiences.
- Relevant security training or certificates, including Security+, CySA+, or Proofpoint certifications.
This position has no supervisory responsibilities.