747,982open jobs
45,228companies
108,339added this week
Browse all
Salary
$90k – $116k per year
Location
In office (Colchester)
Seniority
Junior · 2+ years exp

Confirmed on the employer's own hiring board on Sep 25, 2026. First seen by Alion on Aug 24, 2026.

Overview
Company
Impact
Profile match
From hyper-growth startups to Fortune 500 companies, NuHarbor Security is the leading cybersecurity company helping organizations to make cyber easier.

Cybersecurity for the public good.

At nuHarbor, we help organizations navigate an increasingly complex cybersecurity landscape with confidence. By combining expert guidance, innovative technology, and trusted partnerships, we make security stronger, more effective, and easier to understand. We're looking for talented individuals who are passionate about solving meaningful challenges, helping clients succeed, and continuously improving alongside a team that values curiosity, collaboration, and impact.

The Opportunity

The Security Analyst, MxDR, is a core member of nuHarbor’s MxDR delivery team, responsible for the full-lifecycle triage, investigation, and disposition of security alerts and incidents across our supported MxDR environments. The Analyst drives each case to a defensible, evidence-based disposition, escalating per defined criteria and documenting findings clearly enough for the next person in the chain to act on. This is not a passive alert-monitoring role: it demands sound investigative judgement under time pressure, disciplined documentation, and good calibration on when to escalate versus resolve.

This role operates within a 24x7 service delivery model, where high severity incidents require rapid response at any time and analysts are expected to manage a dynamic queue of concurrent alerts across multiple client environments while meeting defined response time objectives.

Shift

Monday - Friday, 3:30pm - 12:00 ET

What Success Looks Like 

In this role, you will focus on: 

  • Security Monitoring & Investigation
    • Review, analyze and investigate security alerts and incidents in Microsoft Defender and Sentinel environments.
    • Identify and assess indicators of compromise (IOC) and attack (IOA) across client environments
    • Drive incidents through full lifecycle: triage -> investigation -> disposition -> escalation or closure
    • Accurately triage and classify alerts, minimizing false positives while preserving visibility into real threats and document outcomes to support continuous improvement and quality review.
  • Incident Response & Escalation
    • Execute incident response procedures aligned to defined playbooks and client escalation plans
    • Escalate incidents that meet client escalation criteria with documented evidence, impacted entities, and investigation summary.
    • Support containment actions (e.g., isolate endpoints, kill processes) when access allows
    • Partner with client SOC or IT teams when additional enrichment or remediation is required
    • Actively balance accuracy vs. urgency in escalation decisions
  • SLO Operations
    • Meet defined SLOs for alert triage start, investigation updates, and case closure, with elevated response standards for high-severity and 24x7 priority incidents.
    • Prioritize and respond to high severity incidents during second shift, in alignment with 24x7 response requirements and defined SLOs. Reprioritize and update investigations when incident severity changes, ensuring timely escalation and accurate documentation
  • Detection Tuning & Continuous Improvement
    • Evaluate alert quality and recommend tuning or suppression of non-actionable detections
    • Review and improve analytics rules, queries, and detection logic
    • Identify gaps in visibility, logging, or detection coverage
    • Contribute to development of playbooks, automation, and operational processes
  • Client Communication & Reporting
    • Document all investigations, findings, and actions in service desk systems
    • Provide timely updates through ticketing platforms and escalation channels
    • Support regular reporting on: Incident trends, Environment health, Open cases and outcomes
    • Participate in client calls, reviews, and quarterly business reviews as needed
  • Autonomy & Ownership
    • Operate independently in a fast-paced environment, managing multiple investigations simultaneously
    • Make informed decisions with incomplete data and limited client context
    • Proactively identify risks, gaps, and opportunities for improvement
    • Take ownership of your queue, your clients, and the quality of your work

Your Foundation

We're looking for someone who brings these minimum qualifications:

  • Bachelor’s Degree and two (2) years of experience in cybersecurity, SOC, MDR or incident response.
    • In lieu of a degree, two (2) years of experience in a related technology field and relevant industry certifications are required.
  • Demonstrated experience with SIEM solutions, SOC operations, executing security event triaging and tuning.
  • Experience working in SIEM/XDR tools including specifically Microsoft Sentinel or Defender.
  • Proven ability to independently investigate and triage security events.
  • Experience with security event analysis, log correlation, and threat detection.
  • Experience with KQL or similar query languages.
  • Familiarity with common endpoint security concepts.
  • Demonstrated knowledge of security log, infrastructure design and networking fundamentals.
  • Understanding of Identity and Access threats.
  • Strong investigative mindset with attention to detail.
  • Ability to anticipate problems, communicate them, and resolve appropriately.
  • Demonstrated verbal and written communication skills for various internal and external audiences.
  • Must be a citizen of the United States.

Stand out With

You may stand out if you have experience with:

  • Bachelor’s Degree and five (5) or more years in the Information Technology field.
  • Holds relevant industry certifications
    • CompTIA Security+, CySA+, CISSP, etc.
    • Microsoft Security Operations Analyst (SC-200)
    • Azure Security Engineer (AZ-500)
  • Proven experience in a MSSP or multi-client environment
  • Ability to conduct multi-step breach and investigative analysis to trace dynamic activities associated with advanced threats.
  • Exhibit advanced understanding of, and ability to communicate, security technologies that can be used to mitigate cyber risks.
  • Strong understanding of Incident Response phases and demonstrated experience responding to security incidents.
  • Attention to detail and a methodical approach to standard operating procedures.
  • Ability to explain simple hardening methods for network and process detections.
  • Ability to manage multiple concurrent objectives or activities and effectively make judgments.
  • Understanding of common network services and attacks against them.

Why nuHarbor?

At nuHarbor, you'll find more than a job - you'll find a team committed to helping each other grow, solve meaningful problems, and make a measurable impact.

You can expect:

  • A collaborative, high-performing team environment
  • Leaders who are invested in your success and development
  • Meaningful work that helps organizations protect critical services and missions
  • The encouragement to bring your authentic self to work every day
  • Competitive pay, performance-based bonus opportunities, generous paid time off, and comprehensive benefits

Compensation

This position has an anticipated base salary range of $90,000-$116,000 annually and is eligible for a shift premium. Plus, this position is eligible for nuHarbor's annual bonus program with a target opportunity of 10%.

Actual compensation is based on factors including experience, skills, certifications, and geographic location.

Join Us

At nuHarbor, we believe great security starts with great people. We're looking for curious problem-solvers, trusted advisors, and continuous learners who are passionate about helping clients win.

If you're ready to make an impact while growing alongside a team that values people as much as technology, we'd love to hear from you.

AAP/EEO Statement

The Equal Employment Opportunity Policy of nuHarbor is to provide a fair and equal employment opportunity for all associates and job applicants regardless of race, color, religion, national origin, gender, sexual orientation, age, marital status or disability. nuHarbor hires and promotes individuals solely based on their qualifications for the job to be filled.

nuHarbor believes that employees should be provided with a working environment which enables each associate to be productive and to work to the best of his or her ability. We do not condone or tolerate an atmosphere of intimidation or harassment based on race, color, religion, national origin, gender, sexual orientation, age, marital status, or disability.  We expect and require the cooperation of all employees in maintaining a discrimination and harassment-free atmosphere.

Free account
Stop reading job ads. Get the ones that fit.
One free account turns this page into a shortlist built around your stack, your level and your pay.
Match on every job. Stack, seniority, pay and location, scored against your profile.
747,982 open roles. Read straight off company career pages, refreshed every day.
Unlimited applications. Every one you send is tracked in one place, on-site or on a company board.
3 tailored CVs a month. Rewritten for the exact job you are applying to. Included free.
Create a free account Continue with Google
Free forever. No card. Under a minute.

Your match

How well do you fit this role?
Two answers are enough for a real match. No account needed.
Check my fit
Answers stay in this browser until you create an account.

Recommended for you based on this role

Security
Similar stack
Same company
Colchester
In office • Bengaluru
Python
AI/ML
Copilot
Cursor
Function Calling
LLM
Knowledge Graph
Tool Use
DevOps
GCP
GitHub Actions
Azure
CI/CD
Jenkins
AWS
Docker
Kubernetes
Shift-Left
AppDynamics
Cybersecurity
Burp Suite
Snyk
OWASP ZAP
Prisma Cloud
Semgrep
OWASP Top 10
Shift-Left Security
Threat Modeling
SLSA
OWASP
Apply
≈ $32k – $77k per year (Estimated) • Remote (India) • 3+ years exp
Python
AI/ML
Knowledge Graph
DevOps
Terraform
GCP
AWS
Kubernetes
AppDynamics
IAM
Cybersecurity
ISO 27001
PCI DSS
SOC 2
Apply
Security Engineer 1 hour ago
≈ $52k – $118k per year (Estimated) • In office • Full-Time • 5+ years exp • Barcelona
Python
PowerShell
DevOps
Splunk
Azure
AWS
Cybersecurity
SIEM
DLP
Apply
≈ $43k – $116k per year (Estimated) • In office • Full-Time • Tokyo
Apply
≈ $76k – $157k per year (Estimated) • In office • Secret • Full-Time • 3+ years exp • Huntsville
Python
PowerShell
Bash
DevOps
Splunk
GitHub Actions
GitLab CI
Azure
CI/CD
Jenkins
AWS
Docker
Kubernetes
Windows
Cybersecurity
Nessus
Zero Trust
SIEM
Apply
$90k – $158k per year • In office • Full-Time • Bachelor's Degree • Quincy
Python
SQL
DevOps
Splunk
Azure
AWS
Cybersecurity
Crowdstrike
Qualys Cloud Platform
MITRE ATT&CK
Tanium
SIEM
Analytics
Tableau
Power BI
Microsoft Excel
Apply
≈ $73k – $138k per year (Estimated) • Hybrid • Full-Time • 7+ years exp • Bachelor's Degree • Toronto
Python
Go
JavaScript
Rust
TypeScript
PowerShell
Databases
Snowflake
Databricks
Delta Lake
Apache Kafka
AI/ML
LangGraph
AutoGen
LangChain
Spark
Embeddings
AI Agents
Semantic Kernel
CrewAI
LLM
RAG
Semantic Search
LLMOps
Context Engineering
Semantic Search
LLM Guardrails
Agentic Workflows
Tool Use
Machine Learning
DevOps
GCP
Azure
CI/CD
ArgoCD
Jenkins
AWS
Kubernetes
Spinnaker
Cybersecurity
SIEM
Apply
≈ $17k – $38k per year (Estimated) • In office • Full-Time • 3+ years exp • Bachelor's Degree • Bengaluru • Hyderabad
AI/ML
Copilot
Claude
LLM
RAG
DevOps
Azure
AWS
SLI/SLO/SLA
Management
ServiceNow
Apply
≈ $33k – $73k per year (Estimated) • Hybrid • Full-Time • 5+ years exp • High School Diploma • Bengaluru
Python
PowerShell
DevOps
Rest API
Splunk
Terraform
GCP
Azure
CI/CD
AWS
IAM
Cybersecurity
Okta
Crowdstrike
CyberArk
Qualys Cloud Platform
Zero Trust
Microsoft Entra ID
Active Directory
LDAP
Management
ServiceNow
Apply
≈ $150k – $282k per year (Estimated) • Hybrid • 7+ years exp • Home
TypeScript
C#
C#
.NET
AI/ML
Copilot
Cursor
Claude Code
Model Context Protocol
AI Agents
LLM
RAG
OpenAI Codex
LLM Guardrails
DevOps
Azure
CI/CD
Cybersecurity
ISO 27001
SOC 2
Apply
$90k – $116k per year • Remote (United States, ET hours) • 2+ years exp • Bachelor's Degree
DevOps
Splunk
SLI/SLO/SLA
Cybersecurity
Crowdstrike
Microsoft Sentinel
Microsoft Defender
SIEM
Apply
$110k – $135k per year • Remote (United States) • 5+ years exp • Bachelor's Degree
Python
PowerShell
AI/ML
Anomaly Detection
DevOps
Splunk
Windows
Cybersecurity
Crowdstrike
Microsoft Sentinel
Microsoft Defender
SIEM
Apply
$120k – $150k per year • Remote (likely United States) • 7+ years exp • Bachelor's Degree
Apply
$120k – $150k per year • In office • 7+ years exp • Bachelor's Degree • Washington
Apply
$120k – $150k per year • In office • 7+ years exp • Bachelor's Degree • Philadelphia
Apply
$38k per year • In office • Full-Time • High School Diploma • Colchester
Apply
$36k per year • In office • Full-Time • High School Diploma • Colchester
Apply
In office • Full-Time • Colchester
Apply
$150k – $200k per year • In office • Full-Time • 1+ year exp • Colchester
Apply
Attending Physician 14 days ago
$250k – $300k per year • In office • Full-Time • Colchester
Apply
See all jobs
This is one of many
747,982 more open roles from verified company boards, updated every day.