Full-Time

Senior MDR Analyst

Blackpoint Cyber

Blackpoint Cyber

201-500 employees

Proactive MDR cybersecurity for MSPs

Compensation Overview

$115k - $123k/yr

Remote in USA

Remote

Category
IT & Security (1)
Required Skills
PowerShell
Microsoft Azure
Python
Logstash
Vulnerability Analysis
AWS
Go
Elasticsearch
Kibana
Linux/Unix

Get referred to Blackpoint Cyber

See people who can refer or advise you

Requirements
  • Five (5+) years of experience in an information security role. Progressive relevant training and/or certification may be substituted for one (1) year of the experience requirement
  • Experience working in a Security Operations Center (SOC)
  • Two (2+) years of experience with triaging endpoint events from EDR, NGAV, and supporting the Incident Response (IR) process
  • Deep knowledge on assessing threat indicators in a Windows Environment (e.g. Malware/Malicious Anomalies/Abnormal network Activity/Root Level Compromise, Forensic Artifacts, etc.)
  • Robust understanding of at least two of the following: Windows, Linux or OSX
  • Familiarity with ELK stack (Dashboards, Logstash Config, Searching)
  • Scripting / Programming with Powershell, Python, and Go
  • Familiarity with AWS services such as EC2, S3 and IAM and Azure/M365
  • Experience in developing, refining, and performing leadless threat hunting analysis to uncover new or potential incidents and report on results
  • Excellent problem solving, critical thinking, and analytical skills with the ability to deconstruct issues (hunting anomalous pattern detection)
  • Excellent written and verbal communication skills to effectively summarize and present technical findings to both technical and non-technical audiences
Responsibilities
  • Analyze and evaluate anomalous network and system events in a 24x7x365 Security Operation Center (SOC) environment via conducting lead-less threat hunting.
  • Collaborate with MDR Analysts to research and investigate emerging cyber security threats; become an escalation point of contact for advanced intrusion analysis.
  • Develop Incident analysis reports and work across business units and customers to bring issues to a close.
  • Help design and build operational processes and procedures to improve overall SOC efficiency.
  • Provide actionable threat and vulnerability analysis based on security events for many independent customer environments.
  • Build test lab environments to research emerging techniques and make contributions to the internal and external knowledge development of threat operations.
  • Review sandbox technologies for additional IOCs uncovered from artifacts uncovered during analysis.
Desired Qualifications
  • Bachelor’s Degree in Computer Science or related technical discipline
  • Network/System Administration and/or Engineering
  • Deep forensic knowledge of Windows, Mac OS and/or Linux
  • Experience in Digital Forensics and Incident Response a plus
  • Malware Analysis (Behavioral and/or Static analysis- IDA, Cuckoo Sandbox, x86/x64 Debugging) Pentesting/Red/Blue Team
  • Capture The Flag (CTF) Development

Blackpoint Cyber provides proactive cybersecurity protection through its proprietary MDR platform designed for MSPs and their clients. Its system continuously monitors networks and endpoints, visualizes activity, detects attacker tradecraft, and automatically responds to stop threats in their early stages. It stands out by combining real-time network visualization with tradecraft detection and by offering add-ons like Cloud Response and Managed Application Control tailored for MSPs. The goal is to deliver scalable, proactive defense against cyber threats through the MSP ecosystem.

Company Size

201-500

Company Stage

Series C

Total Funding

$203M

Headquarters

Ellicott City, Maryland

Founded

2014

Get referred to Blackpoint Cyber

See people who can refer or advise you

Simplify Jobs

Simplify's Take

What believers are saying

  • Microsoft 365 and Google Workspace protection targets fast-growing identity attack surfaces.[1][5]
  • Cloud Response and Managed Application Control expand attach rates across existing customers.[1][2]
  • 24/7 SOC response remains compelling for mid-market buyers seeking outsourced security operations.[11][14]

What critics are saying

  • Microsoft and Google platform changes can weaken Cloud Response utility and margins.[1][2]
  • Microsoft-native security improvements can displace managed Defender and M365 monitoring offers.[6][7]
  • MSP channel consolidation can compress Blackpoint's distribution and pricing power.[8][10]

What makes Blackpoint Cyber unique

  • Purpose-built MSP delivery enables white-label MDR and multi-tenant management.[8][10]
  • CompassOne unifies identity, endpoint, cloud, and compliance workflows for MSPs.[5][10]
  • AI SOC Agent contains credential attacks in 21 seconds under human oversight.

Help us improve and share your feedback! Did you find this helpful?

Benefits

Health Insurance

Dental Insurance

Vision Insurance

Life Insurance

401(k) Retirement Plan

401(k) Company Match

Paid Vacation

Discretionary Time Off

Growth & Insights and Company News

Headcount

6 month growth

-3%

1 year growth

-3%

2 year growth

-2%
GlobeNewswire
Feb 2nd, 2026
Cynet Appoints MacKenzie Brown as Vice President of Threat Intelligence Strategy

Cynet appoints MacKenzie Brown as Vice President of Threat Intelligence Strategy. Brown will be Cynet's leading voice on adversary tactics to help partners understand and respond to threats faster. February 02, 2026 09:00 ET | Source: Cynet Security BOSTON, Feb. 02, 2026 (GLOBE NEWSWIRE) - Cynet, the unified, AI-powered cybersecurity platform, has announced the appointment of MacKenzie Brown as Vice President of Threat Intelligence Strategy. In her new role, Brown will translate Cynet's unique visibility into adversary behavior into clear, practical guidance for partners and the broader security community. "We're moving past 'scare-ware' tactics and handing partners the data that ensures the adversary is the one who has to play catch-up for a change." Cybersecurity has become a race against time, as attackers move at machine speed. CyOps, Cynet's 24/7 in-house threat intelligence team, continuously monitors the threat landscape to help customers understand critical security events in real time and respond faster. As VP of Threat Intelligence Strategy, Brown will lead the charge in extending those insights across the partner ecosystem through education, hands-on training, and community engagement. Brown's appointment also advances Cynet's mission as a partner-first company. As a trusted voice in the IT channel, Brown will leverage her deep channel expertise and firsthand understanding of how managed service providers (MSPs) operate to shape Cynet's product roadmap around what partners need to succeed. "MacKenzie is a rare leader who combines deep technical expertise with market-facing influence," said Aviad Hasnis, Chief Technology Officer at Cynet. "There is no better leader to ensure what we see on the platform becomes shared intelligence that improves outcomes for our customers, partners, and the MSP community." Prior to Cynet, Brown served as Vice President of the Adversary Pursuit Group at Blackpoint Cyber, where she was crucial in formalizing its threat intelligence and threat research program. She previously spent several years on the Incident Response team at Microsoft, supporting customers through large-scale global cyber campaigns and investigations. "Cynet has the telemetry to actually change the math for MSPs," said MacKenzie Brown, Vice President of Threat Intelligence Strategy at Cynet. "Bridging my experience at Microsoft and Blackpoint with Cynet's visibility, we're moving past 'scare-ware' tactics and handing partners the data that ensures the adversary is the one who has to play catch-up for a change." Brown is a recognized keynote speaker, CRN Channel Chief, and advocate for women in technology. Her work focuses on making advanced threat intelligence practical, accessible, and immediately useful for MSPs and security teams. Event: Meet Cynet at Right of Boom Visit Cynet at booth #51 at Right of Boom, the cybersecurity event for MSPs, taking place February 3 - 6 in Las Vegas. On Thursday, February 5, at 1:20 p.m. PST, Cynet CTO Aviad Hasnis will present "Zero-Day Exploits, Day-Zero Response: How MSPs Can Stay Ahead of Vulnerabilities," with real-world threat intelligence and practical strategies to help MSPs stay ahead of zero-day risks. About Cynet Cynet's unified, AI-powered cybersecurity platform brings together a full suite of security capabilities in a single, simple solution, backed by 24x7 SOC security experts. As a global cybersecurity company, Cynet is purpose-built to enhance protection for small-to-medium enterprises and empower partners to maximize margins while delivering world-class security. For more information, visit www.cynet.com. Media Contact Cynet Communications [email protected]

Addigy
Sep 16th, 2025
Addigy, Disruptive Apple MDM Pioneer, Accelerates Momentum with Expanded Leadership Team

Rudnick joins Addigy from Blackpoint Cyber, where he was Corporate VP of Growth Marketing.

GlobeNewswire
Aug 27th, 2025
Blackpoint Cyber and NinjaOne Partner to Strengthen Cybersecurity for MSPs

The alliance combines Blackpoint's industry-leading MDR with NinjaOne's automated endpoint management platform to streamline security and improve response times.

GlobeNewswire
Jul 29th, 2025
Blackpoint Cyber and CyberFOX Announce Strategic Partnership to Deliver End-to-End Identity and Threat Protection

DENVER, July 29, 2025 (GLOBE NEWSWIRE) - Blackpoint Cyber, the world's fastest and most effective Managed Detection and Response (MDR) provider, today announced a strategic partnership with CyberFOX, a global cybersecurity software provider.

Bluefield Daily Telegraph
Jun 23rd, 2025
Blackpoint Cyber Appoints Gagan Singh to Chief Executive Officer and Names Jon Murchison...

DENVER, June 23, 2025 (GLOBE NEWSWIRE) - Blackpoint Cyber, the world's fastest and most effective Managed Detection and Response (MDR) provider, today announced the appointment of Gagan Singh as Chief Executive Officer.