Sophos
Sophos
Sophos dezvoltă soluții de securitate cibernetică care ajută organizațiile să se apere împotriva ransomware-ului, a amenințărilor avansate și a altor atacuri informatice. Portofoliul său include protecția dispozitivelor endpoint și a rețelelor, securitatea cloud și servicii gestionate de detectare și răspuns, susținute de cercetarea amenințărilor, instruire în domeniul securității și expertiză operațională. Sophos Central reunește aceste capabilități într-o platformă centralizată, concepută să funcționeze cu mediile IT existente. Compania deservește organizații din sectoare precum finanțe, sănătate, administrație publică, producție și retail.

Threat Analyst III, Canada (Remote)

Monitor, investigate, and respond to cyber threats for Sophos’s managed detection and response service. Conduct threat hunting, incident response, and customer case management across protected environments.

Descriere

  • Monitor and respond to alerts from the Sophos security stack, including EDR and XDR tools
  • Guide junior analysts through escalated investigations
  • Analyze suspicious activity end to end to determine scope, impact, and risk
  • Detect and address cyber threats in customer environments using approved playbooks and tools
  • Record investigative findings, actions, and outcomes in the MDR case management platform
  • Perform threat hunting across MDR customer environments
  • Investigate phishing messages, suspicious binaries, and unusual behavior
  • Identify recurring false positives and recommend detection improvements
  • Research threat actors, MITRE ATT&CK techniques, intelligence reports, emerging indicators of compromise, active exploits, and vulnerabilities
  • Maintain internal knowledge resources and contribute to continuous improvement
  • Work scheduled shifts and provide thorough handovers to global teams
  • Assist with active security incidents
  • Open cases, monitor progress, and follow up with customers through resolution
  • Communicate with customers through chat, phone, and ticketing systems
  • Help improve Security Operations processes, playbooks, and tools

Cerințe

  • At least three years of hands-on experience in a Security Operations Center, managed detection and response environment, or cybersecurity-focused IT role
  • Proficiency with endpoint and network security technologies, including EDR, IDS/IPS, and malware detection platforms
  • Working knowledge of Windows workstations and servers, as well as Linux or macOS environments
  • Ability to interpret Windows event logs and other telemetry
  • Understanding of TCP/IP, networking protocols, routing, and traffic analysis
  • Experience supporting real-time incident response and threat investigations
  • Familiarity with threat hunting methods and attacker behavior
  • Experience containing, mitigating, and recovering from security incidents
  • Understanding of persistence, privilege escalation, lateral movement, and defense evasion techniques
  • Familiarity with incident response procedures and security operations practices
  • Strong analytical, troubleshooting, and detail-oriented skills
  • Clear communication skills for both technical and non-technical audiences
  • Professional, customer-focused approach
  • Bachelor’s degree in information technology, computer science, cybersecurity, or a related field, or equivalent practical experience
  • Availability for rotating shifts, including nights, weekends, and holidays
  • Authorization to work in Canada without employer sponsorship

Beneficii

  • Eligibility for bonus compensation
  • Comprehensive benefits package
  • Remote-first work model
  • Employee-led diversity and inclusion networks
  • Annual charity and fundraising programs
  • Volunteer days
  • Global employee sustainability programs
  • Global fitness and trivia competitions
  • Global wellbeing days
  • Monthly wellbeing webinars and training

Locuri de muncă similare

Nivoda

Senior AI/ML Engineer, Remote in the United States

Nivoda

Develop ranking, recommendation, and multimodal search systems for Nivoda’s global jewellery marketplace and jeweller storefronts. Build production machine learning capabilities across search, product discovery, and image matching.

Deschide
CET Logistics

Business Engagement Specialist – CET Logistics

CET Logistics

Connect businesses and institutions with CET’s waste reduction and energy efficiency programs. Build referral networks, qualify leads, coordinate handoffs, and support carbon reduction efforts.

Deschide
FHI 360

Associate Director of Procurement, Administration and Logistics

FHI 360

Leads procurement, administration, logistics, and operations for FHI 360’s country office in the Democratic Republic of the Congo. Supervises functional leads and maintains compliance with donor, government, and supply chain requirements.

Deschide