Jobless Developer
Acronis Bulgaria EOOD logo

Posted 15 days ago

Open

Managed Detection and Response Analyst

Brazil - RemoteRemote

AI Summary

Investigates and triages EDR/XDR incidents within the Acronis MDR service, executes remediation actions, documents investigations, and communicates with customers while collaborating with AI engineering to automate triage and response workflows.

About this role

Acronis is a global leader in cyber protection, delivering AI-powered protection for productive MSPs in a single, natively integrated platform that unifies operations management, cybersecurity, and data protection. Driven by our mission to protect, manage and automate every workload that businesses and lives depend on, we’ve built the industry’s only all-in-one solution.

We are looking for an MDR Analyst to join our mission of protecting the digital world.
The MDR Analyst is responsible for investigating and triaging EDR/XDR incidents within the Acronis MDR service. This role focuses on investigating adversary activity, execution and aiding in remediation, and providing clear customer communication, while contributing to continuous service improvement.
The analyst will work closely with senior team members and the AI engineering team to enhance automation and integrate Agentic AI capabilities into the MDR workflow. This is a growth-oriented role, with opportunities to contribute to many areas, including proactive threat hunting and advanced incident response.

WHAT YOU'LL DO

  • Investigateincoming EDR/XDR incidents, focusing on accurate triage and severity assessment

  • Execute remediation actions such as workload isolation, following established playbooks

  • Document investigation steps and maintain complete case records

  • Collaborate with AI engineering to test and refine automated triage and response processes

  • Ownthe incident from the detection to the resolution, with assistance from senior staff if required

  • Support development and refinement ofdocumentation, automation, and incident correlation logic

  • Communicate clearly with customers via email and phone about incident status and recommendations

  • Stay informed about current security threats and attacker techniques

  • Work 5-day/8-hour schedulein office hours, withrotationalweekend coverage

WHO WE’RE LOOKING FOR

  • Experience in SOC, MDR, or IT security operations

  • Strong understanding of EDR/XDR operations and security incident workflows

  • Strong understanding of common attacker's TTPs and MITRE ATT&CK framework

  • Knowledge of Windows OS, Active Directory, Linux, Networking

  • Familiar with logs analysis in tools like Kibana or manual reviews.

  • Experience working with security tools (EDR, SIEM, SOAR) and interest in automation technologies

  • Ability to follow structured processes and accurately document findings

  • Growth mindset

  • Strong communication skills and attention to details

  • Solid English written and verbal communication skills (B2 or higher)

*Please submit your resume and application in English

WHO WE ARE

A Swiss company foundedin Singapore in2003, Acronis offers over twenty years of innovation with 15 offices worldwideandemployees in 50+ countries. Acronis Cyber Protect is available in 26 languages in 150 countries and is used by over 21,000 service providers to protectmore than 750,000 businesses.

Our corporate culture centers on innovation, accountability, and impact. We encourage our people to think boldly, challenge conventional approaches, and take ownership of outcomes. As a member of our global “A-Team,”you’lloperatein a high-growth, fast-paced environment where resilience, adaptability, and a commitment to continuous improvement drive success.

OUR INTERVIEW PRACTICES

To ensure a fair and genuine hiring process, candidates are expected toparticipatein interviews without the use of AI tools, automated prompts, or third-partyassistance. Interviews are designed to assess individual skills, experience, and communication style,and we value authentic, real-time interaction.

Use of AI or externalassistanceduring live interviews may result in disqualification. For roles where AI skills are being evaluated,permitteduse of AI tools will be clearly communicated in advance. Candidates may be asked to disable virtual backgrounds orparticipatein in-person interviews. All employment offers are contingent upon successful completion of applicable criminal,educationand identity background checks

Acronis is an equalopportunityemployer. All qualified applicants will receive consideration for employment without regard to age, ancestry, color, marital status, national origin, physical or mental disability, medical condition, protectedveteran status, race, religion, sex (including pregnancy), sexual orientation, gender identity or expression, or any other characteristic protected by applicable laws, regulations and ordinances.

Skills

Active DirectoryAgentic AIAutomationEDRIncident ResponseKibanaLinuxLog AnalysisMDRMITRE ATT&CKNetworkingSIEMSOARThreat HuntingWindows OSXDR

Explore related jobs

Browse these categories

Market data for this role

All reports →