Detection Analyst
Core
Analyze EDR telemetry, alerts, and log sources across Endpoint, Identity, Network, and Cloud domains to identify and publish threats for Managed Detection and Response customers.
Role type
Detection Analyst (SOC)
Builds
High-fidelity threat analysis and actionable communication for customers
Domain
Cybersecurity / Threat Detection
Deliverable
production ML models | product features | dashboards & analysis
Required skills
EDR telemetry analysis, query languages (SQL, Lucene), threat identification, workflow orchestration, automation, customer communication
Preferred skills
AI-driven tool application, automated workflows, Red Team/offensive security experience, Infosec community engagement
Technologies
EDR platforms, SQL, Lucene
Responsibilities
Analyze EDR telemetry and alerts across multiple detection domains; Publish threats with concise communication; Improve detection workflows through orchestration and automation
Seniority
Individual Contributor