{"id":2237147,"url":"https://alion.io/job/acronis-managed-detection-and-response-analyst","title":"Managed Detection and Response Analyst","company":{"id":54327,"name":"Acronis","domain":"acronis.com","url":"https://alion.io/company/acronis","size_band":"1001-5000","is_staffing_agency":false,"employer_type":"direct","is_intermediary":false,"listed_via":null,"ats_vendor":"Workday","truth_index":null},"role":"Security","role_family":"Security","seniority":null,"employment_type":null,"work_mode":"hybrid","remote_scope":null,"remote_scope_basis":null,"remote_working_hours":null,"hiring_geo_confidence":"structured","locations":["Brazil","Colombia","Argentina","Mexico"],"countries":["BR","AR","MX"],"hiring_countries":[],"hiring_countries_total":0,"salary":null,"salary_estimate":{"min_usd":41000,"max_usd":121000,"period":"year","method":null,"sample_n":4370},"experience_years_min":null,"visa_sponsorship":false,"relocation_package":false,"has_equity":false,"technologies":[{"name":"Active Directory","optional":false},{"name":"AI Agents","optional":false},{"name":"Kibana","optional":false},{"name":"Linux","optional":false},{"name":"MITRE ATT&CK","optional":false},{"name":"SIEM","optional":false},{"name":"Windows","optional":false}],"status":"live","first_seen_at":"2026-09-09T00:00:00Z","employer_posted_date":"2026-09-09","last_verified_at":"2026-10-11T19:04:57Z","board_verified":true,"closed_at":null,"days_open":32,"trust":{"level":"ok","repost_count":null,"flags":[],"days_open":32},"description":"Acronis is a global leader in cyber protection, delivering AI-powered protection for productive MSPs in a single, natively integrated platform that unifies operations management, cybersecurity, and data protection. Driven by our mission to protect, manage and automate every workload that businesses and lives depend on, we’ve built the industry’s only all-in-one solution.We are looking for an MDR Analyst to join our mission of protecting the digital world.\nThe MDR Analyst is responsible for investigating and triaging EDR/XDR incidents within the Acronis MDR service. This role focuses on investigating adversary activity, execution and aiding in remediation, and providing clear customer communication, while contributing to continuous service improvement.\nThe analyst will work closely with senior team members and the AI engineering team to enhance automation and integrate Agentic AI capabilities into the MDR workflow. This is a growth-oriented role, with opportunities to contribute to many areas, including proactive threat hunting and advanced incident response.\nWHAT YOU'LL DO\nInvestigateincoming EDR/XDR incidents, focusing on accurate triage and severity assessment\n\nExecute remediation actions such as workload isolation, following established playbooks\n\nDocument investigation steps and maintain complete case records\n\nCollaborate with AI engineering to test and refine automated triage and response processes\n\nOwnthe incident from the detection to the resolution, with assistance from senior staff if required\n\nSupport development and refinement ofdocumentation, automation, and incident correlation logic\n\nCommunicate clearly with customers via email and phone about incident status and recommendations\n\nStay informed about current security threats and attacker techniques\n\nWork 5-day/8-hour schedulein office hours, withrotationalweekend coverage\n\nWHO WE’RE LOOKING FOR\nExperience in SOC, MDR, or IT security operations\n\nStrong understanding of EDR/XDR operations and security incident workflows\n\nStrong understanding of common attacker's TTPs and MITRE ATT&CK framework\n\nKnowledge of Windows OS, Active Directory, Linux, Networking\n\nFamiliar with logs analysis in tools like Kibana or manual reviews.\n\nExperience working with security tools (EDR, SIEM, SOAR) and interest in automation technologies\n\nAbility to follow structured processes and accurately document findings\n\nGrowth mindset\n\nStrong communication skills and attention to details\n\nSolid English written and verbal communication skills (B2 or higher)\n\n*Please submit your resume and application in English\nWHO WE ARE\nA Swiss company foundedin Singapore in2003, Acronis offers over twenty years of innovation with 15 offices worldwideandemployees in 50+ countries. Acronis Cyber Protect is available in 26 languages in 150 countries and is used by over 21,000 service providers to protectmore than750,000 businesses.\nOur corporate culture centers on innovation, accountability, and impact. We encourage our people to think boldly, challenge conventional approaches, and take ownership of outcomes. As a member of our global “A-Team,”you’lloperatein a high-growth, fast-paced environment where resilience, adaptability, and a commitment to continuous improvement drive success.\nOUR INTERVIEW PRACTICES\nTo ensure a fair and genuine hiring process, candidates are expected toparticipatein interviews without the use of AI tools, automated prompts, or third-partyassistance. Interviews are designed to assess individual skills, experience, and communication style,and we value authentic, real-time interaction.\nUse of AI or externalassistanceduring live interviews may result in disqualification. For roles where AI skills are being evaluated,permitteduse of AI tools will be clearly communicated in advance. Candidates may be asked to disable virtual backgrounds orparticipatein in-person interviews. All employment offers are contingent upon successful completion of applicable criminal,educationand identity background checks\nAcronis is an equalopportunityemployer. All qualified applicants will receive consideration for employment without regard to age, ancestry, color, marital status, national origin, physical or mental disability, medical condition, protectedveteran status, race, religion, sex (including pregnancy), sexual orientation, gender identity or expression, or any other characteristic protected by applicable laws, regulations and ordinances.","description_format":"text","description_chars":4440,"description_truncated":false,"requirements":{"experience_years_min":null,"management_years_min":null,"team_size_min":null,"manages_managers":false,"education":null,"security_clearance":false,"languages":[{"language":"English","level":"All levels","optional":false}]},"benefits":[],"hiring_locations":[{"name":"Brazil","iso":"BR","kind":"country"}],"hiring_excludes":[],"relocation_offered":false,"industries":["Managed Security","Custom Software Development","Backup & Disaster Recovery"],"lifecycle":[{"event":"open","at":"2026-10-10T23:58:20Z"}],"visa":[],"liveness":{"score":20,"band":"cold","label":"Long shot","p_open":1,"p_active":0.452,"p_room":0.45,"age_days":32,"expected_fill_days":20,"reasons":["conf:3","win:tail"],"computed_at":"2026-10-11T22:18:02Z"},"pay":null,"html_url":"https://alion.io/job/acronis-managed-detection-and-response-analyst","json_url":"https://alion.io/job/acronis-managed-detection-and-response-analyst.json","meta":{"generated_at":"2026-10-11T22:18:02Z","cache_seconds":300,"methodology":"https://alion.io/methodology","terms":"https://alion.io/terms","contact":"https://alion.io/contact","api":"https://alion.io/developers","about":"Alion is a live layer of people, companies and AI agents: who they are, whether they are real and active right now, what they do and how to work with them, readable by people and by agents and paid per call.","catalog":"https://alion.io/catalog.json","usage":{"tier":"crawler_verified","counted_by":"address","units_charged":1,"used_today":11973,"day_limit":null,"remaining_today":null,"minute_limit":300,"resets_at":"2026-10-12T00:00:00Z"}},"offers":[{"id":"company.slices","title":"One company in depth, by slice","status":"live","price":{"credits":0.02,"usd":0.002,"plus_per_slice":{"credits":0.05,"usd":0.005}},"unit":"per company, plus each slice with data","note":"the employer in depth","call":{"mcp_tool":"get_company","arguments":{"id":54327},"rest":"https://alion.io/mcp/rest/get_company?id=54327"},"human":"https://alion.io/catalog?offer=company.slices&for=job%2Facronis-managed-detection-and-response-analyst"},{"id":"market.stats","title":"A market slice: pay, demand and time to fill","status":"live","price":{"credits":1,"usd":0.1},"unit":"per slice","note":"pay, demand and time to fill for this role and place","call":{"mcp_tool":"market_stats"},"human":"https://alion.io/catalog?offer=market.stats&for=job%2Facronis-managed-detection-and-response-analyst"},{"id":"job.search","title":"Open jobs by role, technology, place, pay and visa","status":"live","price":{"credits":0.02,"usd":0.002},"unit":"per posting in a list","note":"similar open postings","call":{"mcp_tool":"search_jobs"},"human":"https://alion.io/catalog?offer=job.search&for=job%2Facronis-managed-detection-and-response-analyst"},{"id":"company.verify","title":"Is this company real and active right now","status":"pilot","price":null,"unit":"per company","request":{"url":"https://alion.io/catalog/request","method":"POST","body":"{\"offer\": \"company.verify\", \"for\": \"job/acronis-managed-detection-and-response-analyst\", \"note\": \"what you need it for\"}"},"human":"https://alion.io/catalog?offer=company.verify&for=job%2Facronis-managed-detection-and-response-analyst"}]}