577,120open jobs
24,628companies
79,541added this week
Browse all
Salary
$19k – $49k per year (Estimated)
Location
Remote (India)
Seniority
Middle · 4+ years exp
Employment
Full-Time
Overview
Company
Impact
Profile match
Sophos is a global leader in cybersecurity, providing businesses and individuals with a comprehensive range of solutions to protect against a wide range of cyber threats. Our products include endpoint protection, network security, and cloud security. Sophos is committed to providing our customers with the highest level of security and protection, and we are always innovating to stay ahead of the latest threats.

Role Summary

As an MDR Threat Analyst, you will work with enterprise systems, log analysis systems, and endpoint collection systems to facilitate the investigation, identification and neutralization of cyber threats. You will work alongside and contribute to a team of analysts with the objective of providing best in class monitoring, detection and response services.

This role offers an opportunity to grow investigative expertise, work closely with senior analysts, and participate in real-world threat response while helping strengthen the organization’s overall security posture .

What you will do

  • Investigate escalated security alerts and incidents across endpoint, network, cloud, and identity environments.
  • Perform structured analysis to determine root cause, attack scope, lateral movement, and potential impact.
  • Support ransomware investigations by analysing attacker activity, credential abuse, persistence mechanisms, and malware behaviour.
  • Deobfuscate suspicious scripts, malware samples, and other indicators to identify malicious activity.
  • Conduct proactive threat hunts based on defined hypotheses and emerging threat intelligence.
  • Investigate suspicious authentication activity, privilege escalation, and identity misuse.
  • Perform investigations on both Windows and Linux systems, including log and process analysis.
  • Correlate data across multiple sources, including EDR, SIEM, cloud logs, and identity platforms.
  • Document investigative findings clearly and provide actionable remediation guidance to clients.
  • Collaborate with senior analysts during high-severity or complex incidents.
  • Contribute to detection tuning and improvement of response playbooks based on investigation outcomes.
  • Participate in a rotational schedule supporting a 24x7x365 MDR environment.

What you will bring

  • 4-6 years of experience in a SOC, MDR, Incident Response, or related cybersecurity operations role.
  • Experience investigating endpoint and network security alerts using EDR and SIEM platforms.
  • Working knowledge of ransomware attack patterns and common intrusion techniques.
  • Hands-on experience investigating Linux and Windows systems.
  • Experience analysing obfuscated scripts, malware behaviour, and performing deobfuscation to identify malicious activity.
  • Familiarity with adversary tactics and techniques, and practical exposure to the MITRE ATT&CK framework.
  • Experience analysing Windows Event Logs, Linux logs, and Active Directory fundamentals.
  • Basic understanding of cloud and identity security investigations, including suspicious authentication activity and privileged account misuse.
  • Ability to analyse network traffic, including TCP/IP, DNS, and HTTP/S.
  • Scripting knowledge, including PowerShell; Python or other languages is mandatory.
  • Strong documentation skills and attention to investigative detail.
  • Security certifications such as Security+, CySA+, GCIH, or equivalent are a plus. Bachelor’s degree in Information Technology, Computer Science, or related field, or equivalent professional experience.
  • Strong analytical and troubleshooting skills.
  • Ability to manage multiple investigations in a fast-paced environment.
  • Clear written and verbal communication skills.
Free account
Stop reading job ads. Get the ones that fit.
One free account turns this page into a shortlist built around your stack, your level and your pay.
Match on every job. Stack, seniority, pay and location, scored against your profile.
577,120 open roles. Read straight off company career pages, refreshed every day.
Unlimited applications. Every one you send is tracked in one place, on-site or on a company board.
3 tailored CVs a month. Rewritten for the exact job you are applying to. Included free.
Create a free account Continue with Google
Free forever. No card. Under a minute.

Your match

How well do you fit this role?
Two answers are enough for a real match. No account needed.
Check my fit
Answers stay in this browser until you create an account.

Recommended for you based on this role

Similar stack
Same company
In your city
$17k – $38k per year (Estimated) • In office • Full-Time • 3+ years exp • Bachelor's Degree • India
Python
SQL
PowerShell
AI/ML
LLM
Anomaly Detection
DevOps
Splunk
GCP
Dynatrace
Azure
CI/CD
AWS
Docker
Kubernetes
Grafana
Apply
Cloud Engineer (IMS) 9 hours ago
$50k – $146k per year (Estimated) • In office • Full-Time • Jakarta
Python
SQL
PowerShell
Bash
Databases
PostgreSQL
Oracle
MariaDB
DevOps
Terraform
Ansible
GCP
Helm
VMWare
FluxCD
Prometheus
GitLab CI
CI/CD
GitOps
Jenkins
Docker
Kubernetes
Grafana
Google GKE
Incident Management
IAM
Management
ServiceNow
Apply
$41k – $88k per year (Estimated) • In office • 8+ years exp • Bengaluru
Python
Python
Pydantic
Databases
PostgreSQL
Snowflake
Milvus
pgvector
FAISS
Google BigQuery
Amazon Redshift
BigQuery
DevOps
Vector
Analytics
Power BI
Apply
$21k – $45k per year (Estimated) • Remote • Bachelor's Degree • Moscow
Python
Apply
$12k – $33k per year (Estimated) • Remote/Hybrid • Part-Time • 2+ years exp • Almaty
Python
JavaScript
SQL
Python
FastAPI
Django
Celery
Gunicorn
Django REST Framework
Databases
PostgreSQL
Redis
SQLite
DevOps
Rest API
Git
Docker
Nginx
GitHub
QA
Swagger
Apply
$21k – $50k per year (Estimated) • Remote • Full-Time • 5+ years exp • Bachelor's Degree
SQL
AI/ML
Red Teaming
DevOps
Kali Linux
Cybersecurity
Burp Suite
Metasploit
Nmap
OWASP Top 10
Sophos
QA
SoapUI
Apply
$109k – $209k per year (Estimated) • Remote • Full-Time • 4+ years exp
AI/ML
LLM
Apply
$84k – $136k per year (Estimated) • Remote • Contractor • 7+ years exp
Cybersecurity
Sophos
Apply
$82k – $207k per year (Estimated) • Remote
Python
Rust
C++
DevOps
Terraform
Ansible
GCP
GitHub Actions
OpenTelemetry
CloudFormation
Debian
Prometheus
GitLab CI
Azure
CI/CD
Jenkins
Git
AWS
Kubernetes
Ubuntu
Grafana
Buildkite
Amazon EKS
Google GKE
Azure AKS
eBPF
IAM
Apply
$21k – $50k per year (Estimated) • Remote • Full-Time • 7+ years exp • Bachelor's Degree
SQL
AI/ML
Red Teaming
DevOps
Kali Linux
Cybersecurity
Burp Suite
Metasploit
Nmap
OWASP Top 10
Sophos
Apply
See all jobs
This is one of many
577,120 more open roles from verified company boards, updated every day.