Senior MDR Analyst

Posted 7 Days Ago
Be an Early Applicant
Hiring Remotely in Canada
Remote
108K-135K Annually
Senior level
Information Technology • Cybersecurity
The Role
Conduct advanced threat hunting and intrusion analysis in a 24/7 SOC environment. Investigate endpoint and network events, support incident response, analyze threats across customer environments, produce incident reports, and serve as an escalation point for complex cyber incidents. The role also develops SOC processes, builds research lab environments, evaluates sandbox technologies, and communicates technical findings to technical and non-technical audiences.
Summary Generated by Built In

Blackpoint Cyber is the leading provider of world-class cybersecurity threat hunting, detection and remediation technology. Founded by former National Security Agency (NSA) cyber operations experts who applied their learnings to bring national security-grade technology solutions to commercial customers around the world, Blackpoint Cyber is in hyper-growth mode,  fueled by a recent $190m series C round. 

Company Culture

On this team, we value high-quality execution, ownership, and strong morals. With us, principles are never tested, and we are proud to always do right by our customers. If you’re a driven professional with a passion for learning and contributing towards the best, then Blackpoint welcomes you. Our team is energetic and collaborative, maintaining a high-performance culture and enabling growth through overcoming challenges in the modern cyberthreat landscape.

 

Shift Requirement

This is a Monday through Friday day shift position


How You'll Make an Impact:

  • Analyze and evaluate anomalous network and system events in a 24x7x365 Security Operation Center (SOC) environment via conducting lead-less threat hunting.

  • Collaborate with MDR Analysts to research and investigate emerging cyber security threats; become an escalation point of contact for advanced intrusion analysis.

  • Develop Incident analysis reports and work across business units and customers to bring issues to a close.

  • Help design and build operational processes and procedures to improve overall SOC efficiency.

  • Provide actionable threat and vulnerability analysis based on security events for many independent customer environments.

  • Build test lab environments to research emerging techniques and make contributions to the internal and external knowledge development of threat operations.

  • Review sandbox technologies for additional IOCs uncovered from artifacts uncovered during analysis.

What you'll Bring:

  • Five (5+) years of experience in an information security role. Progressive relevant training and/or certification may be substituted for one (1) year of the experience requirement

  • Experience working in a Security Operations Center (SOC)

  • Two (2+) years of experience with triaging endpoint events from EDR, NGAV, and supporting the Incident Response (IR) process

  • Deep knowledge on assessing threat indicators in a Windows Environment (e.g. Malware/Malicious Anomalies/Abnormal network Activity/Root Level Compromise, Forensic Artifacts, etc.)

  • Robust understanding of at least two of the following: Windows, Linux or OSX;

  • Familiarity with ELK stack (Dashboards, Logstash Config, Searching) Scripting / Programming with Powershell, Python, and Go

  • Familiarity with AWS services such as EC2, S3 and IAM and Azure/M365

  • Experience in developing, refining, and performing leadless threat hunting analysis to uncover new or potential incidents and report on results

  • Excellent problem solving, critical thinking, and analytical skills with the ability to deconstruct issues (hunting anomalous pattern detection)

  • Excellent written and verbal communication skills to effectively summarize and present technical findings to both technical and non-technical audiences

Bonus:

  • Bachelor’s Degree in Computer Science or related technical discipline

  • Network/System Administration and/or Engineering

  • Deep forensic knowledge of Windows, Mac OS and/or Linux

  • Experience in Digital Forensics and Incident Response a plus

  • Malware Analysis (Behavioral and/or Static analysis- IDA, Cuckoo Sandbox, x86/x64 Debugging) Pentesting/Red/Blue Team

  • Capture The Flag (CTF) Development

Blackpoint Cyber welcomes and encourages applications from qualified individuals of all races, colors, religions, sex, sexual orientation, gender identity or expression, national origin, age, marital status, or any other legally protected status. We are committed to equality of opportunity in all aspects of employment.

For eligible employees in the US, Blackpoint offers competitive Health, Vision, Dental, and Life Insurance plans, a robust 401k plan, Discretionary Time Off, and other minor perks. International employees receive competitive benefits in accordance with local market standards and applicable country requirements.

Blackpoint believes all employees should share in the company’s success – equity participation is available to employees globally, with program details varying by location and employment structure.

Skills Required

  • Five or more years of experience in an information security role, with relevant training or certifications substituting for up to one year
  • Experience working in a Security Operations Center
  • Two or more years of experience triaging endpoint events from EDR and NGAV platforms and supporting incident response
  • Deep knowledge of threat indicators and forensic artifacts in Windows environments
  • Robust understanding of at least two of Windows, Linux, or macOS
  • Familiarity with the ELK Stack, including dashboards, Logstash configuration, and searching
  • Scripting or programming experience with PowerShell, Python, and Go
  • Familiarity with AWS EC2, S3, IAM, Azure, and Microsoft 365
  • Experience developing, refining, and performing leadless threat hunting analysis
  • Strong problem-solving, critical-thinking, analytical, written, and verbal communication skills
  • Bachelor's degree in Computer Science or a related technical discipline
  • Network or system administration and/or engineering experience
  • Deep forensic knowledge of Windows, macOS, and/or Linux
  • Digital Forensics and Incident Response experience
  • Malware analysis experience, including behavioral or static analysis, IDA, Cuckoo Sandbox, or x86/x64 debugging
  • Pentesting or Red Team/Blue Team experience
  • Capture The Flag development experience
Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
HQ: Denver, Colorado
187 Employees
Year Founded: 2014

What We Do

Blackpoint Cyber is a technology-driven cybersecurity company headquartered in Denver, Colorado. Founded in 2014 by former U.S. Department of Defense and intelligence security experts, Blackpoint leverages decades of real-world experience and deep knowledge of malicious tradecraft to provide proactive, nation-state-grade cybersecurity to organizations worldwide. Our mission is clear: to deliver 24/7, human-powered Managed Detection, Response, and Remediation (MDR) services, empowering IT professionals with the industry’s fastest threat elimination and risk mitigation capabilities. Blackpoint’s proprietary technology and active Security Operations Center (SOC) work together to stop cyber threats in real-time, ensuring organizations of all sizes remain protected in a constantly evolving threat landscape. At Blackpoint, we are a passionate team of cybersecurity professionals dedicated to helping Managed Service Providers (MSPs) become the heroes modern businesses rely on. By arming MSPs with cutting-edge technology, relentless 24/7 support, and a trusted partnership, we help them safeguard their clients and combat cyber threats with confidence and precision. At Blackpoint Cyber, we believe sophisticated cybersecurity should be accessible to all. That’s why we remain deeply committed to the growth and success of the Managed IT and Security community, offering cutting-edge solutions that empower IT professionals to combat cyber threats with confidence. Strike first and secure fast with Blackpoint Cyber.

Similar Jobs

Atlassian Logo Atlassian

Software Engineer

Cloud • Information Technology • Productivity • Security • Software • App development • Automation
Remote
Canada
11000 Employees
118K-154K Annually

Samsara Logo Samsara

Customer Success Manager

Artificial Intelligence • Cloud • Computer Vision • Hardware • Internet of Things • Software
Easy Apply
Remote or Hybrid
Canada
4000 Employees
78K-101K Annually

Sprout Social Logo Sprout Social

Product Manager

Marketing Tech • Social Media • Software • Analytics • Business Intelligence
Easy Apply
Remote or Hybrid
Canada
1400 Employees
145K-218K Annually

Affirm Logo Affirm

Staff Software Engineer

Big Data • Fintech • Mobile • Payments • Financial Services
Easy Apply
Remote
Canada
2200 Employees
181K-241K Annually

Similar Companies Hiring

Axle Health Thumbnail
Artificial Intelligence • Healthtech • Information Technology • Logistics
Santa Monica, CA
25 Employees
NODA AI Thumbnail
Artificial Intelligence • Information Technology • Software • Cybersecurity
Sydney, AU
54 Employees
Golden Pet Brands Thumbnail
Digital Media • eCommerce • Information Technology • Marketing Tech • Pet • Retail • Social Media
El Segundo, California
178 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account