Blackpoint Cyber Logo

Blackpoint Cyber

Senior MDR Analyst

Posted 12 Days Ago
Be an Early Applicant
Remote
Hiring Remotely in Canada
Senior level
Remote
Hiring Remotely in Canada
Senior level
Conduct advanced threat hunting and intrusion analysis in a 24/7 SOC environment. Investigate endpoint and network events, support incident response, analyze threats across customer environments, produce incident reports, and serve as an escalation point for complex cyber incidents. The role also develops SOC processes, builds research lab environments, evaluates sandbox technologies, and communicates technical findings to technical and non-technical audiences.
The summary above was generated by AI

Blackpoint Cyber is the leading provider of world-class cybersecurity threat hunting, detection and remediation technology. Founded by former National Security Agency (NSA) cyber operations experts who applied their learnings to bring national security-grade technology solutions to commercial customers around the world, Blackpoint Cyber is in hyper-growth mode,  fueled by a recent $190m series C round. 

Company Culture

On this team, we value high-quality execution, ownership, and strong morals. With us, principles are never tested, and we are proud to always do right by our customers. If you’re a driven professional with a passion for learning and contributing towards the best, then Blackpoint welcomes you. Our team is energetic and collaborative, maintaining a high-performance culture and enabling growth through overcoming challenges in the modern cyberthreat landscape.

 

Shift Requirement

This is a Monday through Friday day shift position


How You'll Make an Impact:

  • Analyze and evaluate anomalous network and system events in a 24x7x365 Security Operation Center (SOC) environment via conducting lead-less threat hunting.

  • Collaborate with MDR Analysts to research and investigate emerging cyber security threats; become an escalation point of contact for advanced intrusion analysis.

  • Develop Incident analysis reports and work across business units and customers to bring issues to a close.

  • Help design and build operational processes and procedures to improve overall SOC efficiency.

  • Provide actionable threat and vulnerability analysis based on security events for many independent customer environments.

  • Build test lab environments to research emerging techniques and make contributions to the internal and external knowledge development of threat operations.

  • Review sandbox technologies for additional IOCs uncovered from artifacts uncovered during analysis.

What you'll Bring:

  • Five (5+) years of experience in an information security role. Progressive relevant training and/or certification may be substituted for one (1) year of the experience requirement

  • Experience working in a Security Operations Center (SOC)

  • Two (2+) years of experience with triaging endpoint events from EDR, NGAV, and supporting the Incident Response (IR) process

  • Deep knowledge on assessing threat indicators in a Windows Environment (e.g. Malware/Malicious Anomalies/Abnormal network Activity/Root Level Compromise, Forensic Artifacts, etc.)

  • Robust understanding of at least two of the following: Windows, Linux or OSX;

  • Familiarity with ELK stack (Dashboards, Logstash Config, Searching) Scripting / Programming with Powershell, Python, and Go

  • Familiarity with AWS services such as EC2, S3 and IAM and Azure/M365

  • Experience in developing, refining, and performing leadless threat hunting analysis to uncover new or potential incidents and report on results

  • Excellent problem solving, critical thinking, and analytical skills with the ability to deconstruct issues (hunting anomalous pattern detection)

  • Excellent written and verbal communication skills to effectively summarize and present technical findings to both technical and non-technical audiences

Bonus:

  • Bachelor’s Degree in Computer Science or related technical discipline

  • Network/System Administration and/or Engineering

  • Deep forensic knowledge of Windows, Mac OS and/or Linux

  • Experience in Digital Forensics and Incident Response a plus

  • Malware Analysis (Behavioral and/or Static analysis- IDA, Cuckoo Sandbox, x86/x64 Debugging) Pentesting/Red/Blue Team

  • Capture The Flag (CTF) Development

Blackpoint Cyber welcomes and encourages applications from qualified individuals of all races, colors, religions, sex, sexual orientation, gender identity or expression, national origin, age, marital status, or any other legally protected status. We are committed to equality of opportunity in all aspects of employment.

For eligible employees in the US, Blackpoint offers competitive Health, Vision, Dental, and Life Insurance plans, a robust 401k plan, Discretionary Time Off, and other minor perks. International employees receive competitive benefits in accordance with local market standards and applicable country requirements.

Blackpoint believes all employees should share in the company’s success – equity participation is available to employees globally, with program details varying by location and employment structure.

Similar Jobs

3 Days Ago
Remote
Canada
Senior level
Senior level
Security • Software
Lead complex, high-impact incident response engagements for MDR customers, directing investigations, forensics, containment, and investigative strategy. Serve as Incident Advisor or Commander, synthesize technical findings into customer guidance, mentor IR and SOC analysts, collaborate with threat intelligence and detection engineering teams, and improve response playbooks and workflows. The role requires advanced forensic expertise, executive communication, and participation in weekend and holiday rotations.
Top Skills: Cloud SecurityEmail SecurityEndpoint ForensicsEndpoint SecurityItdrLog AnalysisNetwork ForensicsNetwork SecuritySIEMXdr
4 Hours Ago
Remote or Hybrid
Rocky View, AB, CAN
Junior
Junior
eCommerce • Fashion • Retail • Sales • Wearables • Design
Leads sales-floor operations, customer experience, team development, recruiting support, performance management, and execution of store initiatives. Monitors sales data and KPIs, recommends performance improvements, mentors associates on clienteling, supports conflict resolution, and enforces company and operational policies. Requires physical ability to maneuver throughout the sales floor and stockroom and lift up to 50 pounds occasionally.
19 Hours Ago
Remote or Hybrid
Entry level
Entry level
AdTech • Cloud • Digital Media • Information Technology • News + Entertainment • App development
Design and implement software architecture integrating machine learning models with real-time rendering systems. Evaluate customer requirements, determine build-versus-buy approaches, and route specialized needs to deep learning or reinforcement learning teams. Develop language-agnostic wrappers, APIs, and microservices while coordinating technical requirements among customers, leadership, and engineering. Translate product visions into modular, scalable, maintainable software components.
Top Skills: APIsC#C++ContainerizationDeep LearningGitMachine LearningMessage BrokersMicroservicesPythonReal-Time Rendering EnginesReinforcement LearningUnix Shell

What you need to know about the Ottawa Tech Scene

The capital city of Canada and the nation's fourth-largest urban area, Ottawa has proven a rapidly growing global tech hub. With over 1,800 tech companies, many of which are leaders in their sectors, the city's tech talent now makes up more than 13 percent of its total workforce. This growth is driven not only by the big players like UL Solutions and Dropbox, but also by a thriving startup ecosystem, as new businesses emerge to follow in the footsteps of those that came before them.

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account