Remotely
Listed on 2 job boards, which is a stronger signal than one board alone.
dfirsocactive directorynetworkingpowershelledrmitre att&ck
Also available on
Job Description
📋 Description
- Triages, investigates, responds to, and remediates alerts from the Huntress platform
- Performs tactical review of EDR telemetry, logs, and artifacts to determine root causes
- Conducts malware analysis as part of alert triage
- Investigates suspicious Microsoft 365 activity and provides remediation steps
- Assists in escalations from Product Support for threat-related questions
- Contributes to detection engineering and analytics improvements
🎯 Requirements
- 2+ years in a SOC or DFIR role
- Experience with Windows, Linux, and macOS as attack surfaces
- Experience with MITRE ATT&CK Framework, PowerShell/Command Prompt, WMIC, scheduled tasks
- Knowledge of static/dynamic malware analysis concepts
- Working knowledge of Windows administration and Active Directory
- Solid networking knowledge (ports, NAT, IPs, VLANs) and web tech basics (OWASP top 10)
🎁 Benefits
- 100% remote work environment
- Home office setup allowance (€480)
- Generous personal leave entitlements
- Digital monthly reimbursement (€111)
- Travel to the US 1-2 times/year for company events
- Pension
Back to all jobs