Full-Time

Team Lead – Threat Analyst

Confirmed live in the last 24 hours

Sophos

Sophos

1,001-5,000 employees

Provides cybersecurity solutions for businesses

Cybersecurity

Compensation Overview

CA$84k - CA$140kAnnually

+ Bonus

Senior

Remote in Canada

Category
Cybersecurity
IT & Security
Required Skills
TCP/IP
PowerShell
SQL
Linux/Unix
Requirements
  • 5+ years of experience within a cybersecurity environment; experience in a leadership role is preferred
  • Bachelor’s in information technology, Computer Science or a related field; or relevant, commensurate work experience
  • Experience in a security operations center, or similar environment, and identifying indications of compromise or attack and responding to incidents
  • Endpoint and network security experience required; IDS, IPS, EDR, ATP, Malware defenses and monitoring experience
  • Threat hunting experience preferred
  • Knowledge of common adversary tactics and techniques, e.g., obfuscation, persistence, defense evasion, etc.
  • Knowledge of Mitre ATT&CK framework preferred
  • Working knowledge of incident response procedures
  • Experience with SQL query construction preferred
  • Experience with OSQuery is a plus
  • Experience administering and supporting Windows OS (both workstations and server) and one of the following: Apple or Linux-based operating systems (e.g. XP, Windows 7, 2003, 2008, OS X)
  • Fundamental understanding of network traffic analysis including TCP/IP, routing, switching, protocols, etc.
  • Strong understanding of Windows event log analysis
  • Experience with enterprise information security data management - SIEM experience a plus
  • Programming and scripting skills - proficient knowledge of Powershell is a plus
  • Excellent troubleshooting and analytical thinking skills
  • Strong documentation and communication skills
  • Advanced Cyber Security certifications preferred but not required
  • Excellent customer service skills
  • Passion for all things information technology and information security
  • Natural curiosity and ability to learn new skills quickly
  • Ability to think outside the box
  • Innovative mindset
Responsibilities
  • Maintain supervision over operational tasks and provide day-to-day oversight for threat analysts
  • Oversee analysts in their investigation and response activities when security incidents arise to determine possible cause and resolution
  • Effectively communicate information to stakeholders of all levels
  • Demonstrate experience in network and host-based intrusion analysis, incident response processes and procedures, digital forensics and/or handling malware
  • Acting as a lead throughout incident scenarios and provide subject matter expertise in cybersecurity incident response
  • Successfully executing incident handling procedures as well as direct response to cyber security incidents
  • Maintaining current knowledge and recognition of attacker tools, tactics, and procedures to produce indicators of compromise (IOCs) that can be utilized during active and future investigations
  • Assessing cyber threat intelligence/open source intelligence and operationalizing that information
  • Demonstrating real-world, hands-on experience dealing with sophisticated malware and dynamic cyber threat actors
  • Identifying current and emerging threats and application of such research

Sophos provides cybersecurity solutions to protect businesses from digital threats like malware, ransomware, and phishing attacks. Their products include endpoint protection for individual devices, network security for entire systems, and mobile security for smartphones and tablets. A key feature is Sophos Central, a cloud-based management console that allows users to oversee all security measures from one platform, making it easier to manage and respond to threats. Additionally, Sophos offers Managed Detection and Response (MDR) services, where experts monitor and address security incidents for clients who may not have in-house capabilities. Unlike many competitors, Sophos focuses on an integrated approach to security, combining various services and products to enhance overall protection. The company's goal is to provide comprehensive security solutions that are accessible and effective for businesses of all sizes.

Company Stage

Acquired

Total Funding

$81.3M

Headquarters

Abingdon, United Kingdom

Founded

N/A

Simplify Jobs

Simplify's Take

What believers are saying

  • Sophos' recognition as a leader in multiple categories by G2 highlights its strong market position and credibility.
  • The company's strategic partnerships, such as with GAC Group, enhance its ability to deliver specialized cybersecurity solutions across various industries.
  • The appointment of Joe Levy as CEO and Jim Dildine as CFO signals a strong leadership team poised to drive future growth and innovation.

What critics are saying

  • The increasing complexity and frequency of ransomware attacks, as highlighted in their reports, could strain Sophos' resources and response capabilities.
  • The cybersecurity skills gap, particularly among Managed Service Providers (MSPs), could limit the effectiveness of Sophos' solutions and services.

What makes Sophos unique

  • Sophos offers a unified cloud-based management console, Sophos Central, which simplifies the management of multiple security solutions from a single platform, unlike many competitors who offer fragmented solutions.
  • Their Managed Detection and Response (MDR) services provide expert monitoring and incident response, a critical advantage for organizations lacking in-house cybersecurity expertise.
  • Sophos' comprehensive product suite, covering endpoint, network, and mobile security, positions it as a one-stop-shop for cybersecurity needs, unlike competitors who may specialize in only one area.

Help us improve and share your feedback! Did you find this helpful?