5 дней назад
MDR Analyst (Unit 42)
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
Текст:
TL;DR
MDR Analyst (Unit 42) (Cybersecurity/Cortex XDR): Monitoring customers, investigating security alerts, and managing incident response through remediation and communication with an accent on threat hunting, EDR/SIEM/NGFW analysis, and adversary TTPs. Focus on determining root cause, coordinating with security research and threat intelligence teams, and improving detection and remediation capabilities.
Location: Remote role associated with Warsaw, Masovian, Poland
Company
Cybersecurity organization focused on protecting digital environments through security products, threat research, and incident response services.
What you will do
- Manage security incidents from initial detection and analysis through remediation and customer communication.
- Investigate alerts generated by the Cortex XDR platform and determine root cause and response actions.
- Perform customer security monitoring, threat hunting, and incident response.
- Collaborate with global customers and Security Research, Threat Intelligence, and Threat Hunting teams.
- Provide feedback to product, research, and engineering teams to improve security detection and remediation.
Requirements
- At least 2 years of experience in a multi-tiered SOC or incident response role.
- Experience with EDR, SIEM, and next-generation firewall technologies.
- Familiarity with cyberattack trends and adversary tactics, techniques, and procedures.
- Excellent written and verbal English communication skills.
Nice to have
- Hands-on experience with Palo Alto Networks Cortex XDR or Cortex XSOAR.
- GIAC, CompTIA CySA+, Certified Ethical Hacker, or similar security certifications.
- Basic static or dynamic malware analysis experience.
Culture & Benefits
- Remote work with collaboration across geographies.
- Work in a cybersecurity team focused on solving complex security challenges.
- Immigration sponsorship is available for the role.
- Commitment to diversity, inclusion, and reasonable workplace accommodations.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →
Похожие вакансии
12 дней назад
SOC Analyst (Cybersecurity)
11 дней назад
Information Security Analyst - Security Operations Centre (Cybersecurity)
1 день назад
SOC Analyst - US
1 день назад
SOC Engineer (Cybersecurity)
10 дней назад
Senior SOC Analyst (Cloud Security)
6 дней назад