Threat Analyst
Core
Investigate, identify, and neutralize cyber threats across endpoint, network, cloud, and identity environments for enterprise clients.
Role type
Mid-level IC MDR Threat Analyst
Builds
24/7 managed detection and response (MDR) services
Domain
Cybersecurity / Threat Intelligence / Incident Response
Deliverable
client delivery
Required skills
EDR/SIEM investigation, ransomware analysis, malware deobfuscation, threat hunting, Windows/Linux log analysis, network traffic analysis (TCP/IP, DNS, HTTP/S), scripting (PowerShell, Python), MITRE ATT&CK framework knowledge
Preferred skills
Security+, CySA+, GCIH certifications
Technologies
EDR, SIEM, Active Directory, cloud platforms
Responsibilities
Investigate escalated security alerts and incidents; perform structured analysis to determine root cause and attack scope; support ransomware investigations; deobfuscate suspicious scripts and malware; conduct proactive threat hunts; investigate authentication activity and privilege escalation; correlate data across EDR, SIEM, and cloud logs; document findings and provide remediation guidance; contribute to detection tuning and response playbooks
Seniority
Mid-level, hands-on IC