Blackpoint Cyber is hiring a
Senior MDR Analyst

Logo of Blackpoint Cyber

Blackpoint Cyber

πŸ’΅ ~$177k-$266k
πŸ“Remote - Worldwide

Summary

The job is for a cybersecurity professional with at least 5 years of experience in an information security role. The role involves threat hunting, analysis, incident response, and some automation work in a 24x7 Security Operation Center (SOC) environment. The company values high-quality execution, ownership, and strong morals.

Requirements

  • Five (5+) years of experience in an information security role. Progressive relevant training and/or certification may be substituted for one (1) year of the experience requirement
  • Deep knowledge on assessing threat indicators in a Windows Environment (e.g. Malware/Malicious Anomalies/Abnormal network Activity/Root Level Compromise, Forensic Artifacts, etc.)
  • Robust understanding of at least two of the following: Windows, Linux or OSX
  • Familiarity with ELK stack (Dashboards, Logstash Config, Searching) Scripting / Programming with Powershell, Python, and Go
  • Familiarity with AWS services such as EC2, S3 and IAM and Azure/M365
  • Experience in developing, refining, and performing leadless threat hunting analysis to uncover new or potential incidents and report on results
  • Ability to work shifts if required (night, weekends, and day)
  • Excellent problem solving, critical thinking, and analytical skills with the ability to deconstruct issues (hunting anomalous pattern detection)
  • Excellent communication skills to effectively summarize and present findings

Responsibilities

  • Analyze and evaluate anomalous network and system events in a 24x7 Security Operation Center (SOC) environment via conducting lead-less threat hunting
  • Collaborate with MDR Analysts to research and investigate emerging cyber security threats; become an escalation point of contact for advanced intrusion analysis
  • Develop Incident analysis reports and work across business units and customers to bring issues to a close
  • Help design and build automation to reduce operational tasks of SOC processes
  • Provide actionable threat and vulnerability analysis based on security events for many independent customer environments
  • Build test lab environments to research emerging techniques and make contributions to the internal and external knowledge development of threat operations
  • Review sandbox technologies for additional IOCs uncovered from artifacts uncovered during analysis

Preferred Qualifications

  • Experience working in a Security Operations Center (SOC), Threat Hunting, or Digital Forensics and Incident Response (DFIR), preferred
  • Two (2+) years of experience with triaging endpoint events from EDR, NGAV, and supporting the Incident Response (IR) process

Benefits

Blackpoint Cyber offers competitive Health, Vision, Dental, and Life Insurance plans, a robust 401k plan, Discretionary Time Off, and other minor perks

Share this job:

Disclaimer: Please check that the job is real before you apply. Applying might take you to another website that we don't own. Please be aware that any actions taken during the application process are solely your responsibility, and we bear no responsibility for any outcomes.

Similar Jobs

Please let Blackpoint Cyber know you found this job on JobsCollider. Thanks! πŸ™