Detection & Response Analysts identify, investigate, and respond to security threats across diverse customer environments. They analyze security telemetry across endpoint, identity, cloud, and network vectors to protect global organizations from active cyber threats. Rapid7’s Managed Detection and Response (MDR) team provides 24/7 security monitoring, threat hunting, and incident investigation for organizations around the world. As a Detection & Response Analyst, your primary responsibility will be to identify, investigate, and respond to security threats across customer environments. Specifically, your focus will be to: Conduct investigations into suspicious and malicious activity across endpoint, identity, cloud, and network telemetry within customer environments. Analyze security alerts and telemetry to identify attacker behavior and impact, following defined escalation paths for potential compromises. Investigate standard security incidents, including common malware infections, unauthorized access attempts, and credential abuse. Assist senior analysts and Incident Response Consultants during larger engagements to build exposure to complex threat scenarios. Document investigation findings clearly in reports, detailing timelines of activity and recommended remediation steps aligned with the MITRE ATT&CK framework. Collaborate with SOC Advisors to ensure investigation findings and recommended remediation actions are communicated effectively to customers. Identify and report detection gaps or noisy alerts to help the team refine detection logic. Maintain high operational standards by meeting service level objectives for alert triage and investigation quality.
Stand Out From the Crowd
Upload your resume and get instant feedback on how well it matches this job.
Job Type
Full-time
Career Level
Mid Level
Education Level
No Education Listed