Talent.com
この求人はお住まいの国からは応募できません。
Threat Analyst 2 (Japan)

Threat Analyst 2 (Japan)

SophosJapan
30+日前
職務内容の詳細

Role Summary

As a Threat Analyst - Tier II on our Managed Detection and Response (MDR) team, you will provide best-in-class monitoring, detection, and response services to proactively defend customer environments before attacks prevail. You will work alongside and contribute to a team of cyber threat hunters, incident response analysts, engineers, and ethical hackers by using enterprise, log analysis and endpoint collection systems to facilitate investigations, identification, and neutralization of cyber threats.

MDR)チームの

  • Tier II)

What You Will Do

  • Monitor, investigate, and respond to alerts generated by the Sophos security stack (including EDR / XDR capabilities)
  • Lead and mentor Tier I Analysts through escalated cases, ensuring thorough and accurate investigation practices.
  • Perform end-to-end analysis on suspicious activity to assess scope, impact, and risk
  • Identify and respond to cyber threats across customer environments using approved playbooks and tooling
  • Accurately document findings, investigative steps, and outcomes in the MDR case management platform
  • Conduct threat hunting to identify potential threats throughout the MDR customer base
  • Investigate phishing emails, suspicious binaries, and behavioral anomalies
  • Support detection tuning by identifying recurring false positives and suggesting improvements
  • Stay informed on threat actor behaviors, MITRE ATT&CK techniques, and Sophos threat research updates
  • Proactively research emerging IOCs, active exploits, and vulnerabilities to stay ahead of evolving threats
  • Contribute to internal knowledge bases, documentation, and continuous improvement initiatives
  • Participate in shift rotations and ensure timely, detailed handovers between global teams
  • Provide detection and response support for active security incidents
  • Manage case workflows : create cases, track progress, and follow up with clients until resolution
  • Engage with clients via email, phone, and tickets as part of case handling
  • Assist with developing and refining Security Operations processes, playbooks, and tooling feedback
  • EDR / XDR 機能を含む)から生成されるアラートの監視、調査、対応
  • Tier I アナリストを指導し、徹底的かつ正確な調査を実施する。
  • MDR ケース管理プラットフォームにおいて、調査結果、調査手順、結果を正確に文書化する
  • MDR の顧客ベース全体を通して潜在的な脅威を特定する脅威ハンティングを実施する
  • MITRE ATT&CK テクニック、ソフォスの脅威リサーチアップデートに関する情報を常に入手
  • IOC、アクティブなエクスプロイト、脆弱性を積極的に調査し、進化する脅威に先手を打つ
  • What You Will Bring

  • 2+ years of hands-on experience in a Security Operations Center (SOC), Managed Detection and Response (MDR) environment, or cybersecurity-focused IT role
  • Proficient in the use of endpoint and network security tools (, EDR, IDS / IPS, malware detection platforms) with the ability to validate and triage complex alerts
  • Working knowledge of Windows operating systems (both workstation and server), with additional experience in Linux (Ubuntu, Debian, RedHat) or macOS environments
  • Ability to interpret and analyze Windows event logs and other telemetry data
  • Understanding of core network concepts including TCP / IP, protocols, routing, and traffic analysis
  • Demonstrated experience contributing to real-time incident response efforts and threat investigations
  • Exposure to threat hunting methodologies and an understanding of attacker behavior and patterns
  • Experience handling active threats, including containment, mitigation, and recovery efforts during security incidents
  • Familiar with techniques such as persistence, privilege escalation, lateral movement, and defense evasion, and able to identify these in real-world environments
  • Familiarity with common incident response workflows and security operations processes
  • Strong analytical thinking and troubleshooting skills, with attention to detail in investigations and case documentation
  • Excellent communication skills, with the ability to clearly explain findings to both technical and non-technical audiences
  • Customer-first mindset with professionalism and a focus on service excellence
  • Must thrive within a team environment as well as on an individual basis
  • Natural curiosity and willingness to learn in a fast-paced, ever-changing threat landscape
  • A passion for cybersecurity, continuous improvement, and staying current on threat trends
  • Bachelor’s degree in Information Technology, Computer Science, Cybersecurity or related field, or equivalent practical experience
  • Willingness to work from 0630 to 1500 JST, with the flexbility to adjust to business requirements.
  • Willingness to participate in rotating weekend and holiday coverage (our MDR service is 24x7x365)
  • SOC)、マネージド・ディテクション・アンド・レスポンス(MDR)環境、またはサイバーセキュリティに特化した IT 部門における 2 年以上の実務経験
  • EDR、IDS / IPS、マルウェア検出プラットフォーム)の使用に習熟しており、複雑なアラートを検証し、トリアージする能力を有すること
  • Windows オペレーティングシステム(ワークステーションとサーバーの両方)の実務知識があり、Linux(Ubuntu、Debian、RedHat)または macOS 環境での経験もあること
  • Windows イベントログおよびその他の遠隔測定データを解釈し、分析する能力を有すること
  • TCP / IP、プロトコル、ルーティング、トラフィック分析を含むコアネットワークの概念を理解していること。
  • 0630-1500の勤務が可能で、ビジネス要件に柔軟に対応できること。
  • MDRサービスは24時間365日体制です。)
  • LI-FC1#B1#LI-Remote Ready to Join Us? At Sophos, we believe in the power of diverse perspectives to fuel innovation. Research shows that candidates sometimes hesitate to apply if they don't check every box in a job description. We challenge that notion. Your unique experiences and skills might be exactly what we need to enhance our team. Don't let a checklist hold you back – we encourage you to apply. What's Great About Sophos?

  • Sophos operates a remote-first working model, making remote work the primary option for most employees. However, some roles may necessitate a hybrid approach. Please refer to the location details in our job postings for further information.
  • Our people – we innovate and create, all of which are accompanied by a great sense of fun and team spirit
  • Employee-led diversity and inclusion networks that build community and provide education and advocacy
  • Annual charity and fundraising initiatives and volunteer days for employees to support local communities
  • Global employee sustainability initiatives to reduce our environmental footprint
  • Global fitness and trivia competitions to keep our bodies and minds sharp
  • Global wellbeing days for employees to relax and recharge
  • Monthly wellbeing webinars and training to support employee health and wellbeing
  • この検索に対してジョブアラートを作成する

    Japan • Japan