Security Operations Analyst
Core
Triage, investigate, respond to, and remediate intrusions and alerts from the Huntress platform, including malware analysis and M365 investigations.
Role type
Security Operations Center (SOC) Analyst
Builds
Threat detection and response capabilities for Huntress's enterprise-grade cybersecurity products
Domain
Cybersecurity / Threat Intelligence / Incident Response
Deliverable
production ML models | product features | dashboards & analysis | client delivery | infrastructure
Required skills
Alert triage, incident response, malware analysis (static/dynamic), Windows/Linux/MacOS forensics, Microsoft 365 investigation, Active Directory administration, network fundamentals, web technologies (OWASP)
Preferred skills
MSP/MSSP/MDR experience, scripting (PowerShell/Python/Bash), cloud platform investigation (Azure/AWS/GCP), CTF participation
Technologies
Huntress platform, EDR telemetry, Microsoft 365, Active Directory, PowerShell, Python, Bash, Azure, AWS, GCP
Responsibilities
Triage and investigate alerts from the Huntress platform; Perform tactical review of EDR telemetry and forensic artifacts; Perform malware analysis; Investigate suspicious Microsoft 365 activity; Assist in escalations from Product Support; Contribute to detection engineering creation and tuning
Seniority
Mid-level, hands-on IC