Logo of Huzzle

Detection & Response Analyst - MDR

image

Rapid7

1mo ago

  • Job
    Full-time
    Mid & Senior Level
  • Data
    IT & Cybersecurity
  • Melbourne

AI generated summary

  • You need problem-solving skills, a passion for cybersecurity, knowledge of Windows/Linux, and experience in forensic investigations, malware analysis, and endpoint detection.
  • You will deliver threat detection, assist in incident response, capture attack methodologies, drive research initiatives, and provide input to product development while working in a shift-based team.

Requirements

  • Problem solving, critical thinking, and ingenuity
  • A passion for cybersecurity and a keen curiosity and excitement to learn
  • Knowledge of Windows and/or Linux operating systems
  • Experience with forensic network investigations, endpoint investigations, malware analysis, incident response, threat hunting, or any other job functions normally found within a SOC
  • The ability to identify processes in need of improvement and implement solutions.
  • Endpoint detection experience

Responsibilities

  • Deliver world-class threat detection services using traditional threat intelligence-based detection and user behavior analytics
  • Work on shift as part of a threat detection team in the Rapid7 SOC
  • Conduct or assist with Rapid7 incident response investigations
  • Assist in capturing and deploying knowledge of attack methodologies
  • Drive research initiatives to further threat detection capabilities and brand reputation through media interaction, public speaking, and blogs
  • Provide continuous input to Rapid7 product development teams

FAQs

What is the primary responsibility of a Detection & Response Analyst at Rapid7?

The primary responsibility includes investigating and triaging high priority security events, conducting threat hunting, and producing detailed Findings Reports based on investigations of security incidents.

What skills are required for this position?

Required skills include problem solving, critical thinking, knowledge of Windows and/or Linux operating systems, experience with forensic investigations, incident response, threat hunting, and endpoint detection.

What kind of team will I be working with as an MDR Analyst?

You will be working as part of a dynamic team in the Rapid7 SOC, collaborating with fellow analysts, including Senior and Lead Analysts, as well as Customer Advisors for direct communication with customers.

Is experience in cybersecurity necessary for this role?

Yes, a background in cybersecurity, particularly experience related to forensic network investigations, malware analysis, and threat detection is crucial for success in this role.

What opportunities for growth does the position offer?

The role offers opportunities for career development and expertise building within a globally recognized cybersecurity company, as well as involvement in research initiatives that enhance threat detection capabilities.

Will I be required to work shifts?

Yes, as an MDR Analyst, you will be required to work shifts as part of the 24/7 threat detection team in the Rapid7 SOC.

Does Rapid7 encourage continued education and innovation within the SOC?

Yes, Rapid7 encourages personal and technical innovation, providing avenues for research initiatives and interaction with product development teams.

What is the work environment at Rapid7 like?

The work environment at Rapid7 is dynamic and collaborative, aimed at pushing boundaries in cybersecurity while fostering personal growth and learning.

How does Rapid7 handle incident response investigations?

Rapid7 conducts incident response investigations as needed, with MDR Analysts playing a key role in tracking threat actor actions and examining forensic artifacts associated with security events.

What does the company value in its employees?

Rapid7 values tenacity, passion, collaboration, and diverse experiences in its employees, aiming to reflect a variety of backgrounds and professional experiences within their teams.

Technology
Industry
1001-5000
Employees
2000
Founded Year

Mission & Purpose

Organizations around the globe rely on Rapid7 technology, services, and research to securely advance. The visibility, analytics, and automation delivered through our Insight cloud simplifies the complex and helps security teams reduce vulnerabilities, monitor for malicious behavior, investigate and shut down attacks, and automate routine tasks.