
Threat Analyst
Sophos
full-time
Posted on:
Location Type: Remote
Location: Philippines
Visit company websiteExplore more
Tech Stack
About the role
- Perform security threat analysis of various malware and web attacks
- Tuning a customer wide event stream consisting of events from all major security platforms
- Work with customers to remediate security related issues based on operational needs
- Provide exceptional information security services to include real-time threat analysis
- First point of contact for customer interactions
- Coordination and collaboration with Incident Response, Product Support and other roles within Sophos and the customer environment
- Provide Advanced Intrusion Analysis
Requirements
- At least 3 to 4 years of experience working in a SOC environment or computer security team in an IT environment
- Endpoint and network security experience required; IDS, IPS, EDR, ATP, Malware defenses and monitoring experience
- Experience with threat hunting
- Experience administering and supporting Windows and Unix bases Operating Systems, including both workstations and servers
- Knowledge of common adversary tactics and techniques, e.g., obfuscation, persistence, defense evasion, etc.
- Fundamental understanding of network traffic analysis including TCP/IP, routing, switching, protocols, etc.
- Strong understanding of Windows event log analysis
- Experience with basic Python scripts (reading and understanding)
- Working knowledge of incident response procedures
- Excellent troubleshooting and analytical thinking skills
- Must be able to thrive within a team environment as well as on an individual basis
- Customer service-oriented with strong documentation and communication skills
- Passion for all things information technology and information security
- Natural curiosity and ability to learn new skills quickly
- Ability to think outside the box
- Innovative mindset and driven to contribute to a team providing a best-in-class cybersecurity service
- Bachelors in Information Technology, Computer Science or a related field; or relevant commensurate work experience
- Willingness to participate in rotating weekend and holiday coverage (our MDR service is 24x7x365)
Benefits
- Sophos operates a remote-first working model, making remote work the primary option for most employees.
- Employee-led diversity and inclusion networks that build community and provide education and advocacy
- Annual charity and fundraising initiatives and volunteer days for employees to support local communities
- Global employee sustainability initiatives to reduce our environmental footprint
- Global fitness and trivia competitions to keep our bodies and minds sharp
- Global wellbeing days for employees to relax and recharge
- Monthly wellbeing webinars and training to support employee health and wellbeing
Applicant Tracking System Keywords
Tip: use these terms in your resume and cover letter to boost ATS matches.
Hard skills
security threat analysismalware analysisweb attacksevent stream tuningendpoint securitynetwork securityIDSIPSEDRPython
Soft skills
troubleshootinganalytical thinkingcustomer servicedocumentationcommunicationteamworkinnovationcuriosityadaptabilityproblem-solving