Threat Analyst 2
AI Summary
As a Tier II Threat Analyst on the MDR team, you investigate and analyze security events and logs using Sophos tooling, handle escalations from Tier I analysts, conduct threat hunting, and guide investigations to neutralize cyber threats for customers.
About this role
Role Summary
As a Threat Analyst - Tier II on our Managed Detection and Response (MDR) team, you will provide best-in-class monitoring, detection, and response services to proactively defend customer environments before attacks prevail. You will work alongside and contribute to a team of cyber threat hunters, incident response analysts, engineers, and ethical hackers by using enterprise, log analysis and endpoint collection systems to facilitate investigations, identification, and neutralization of cyber threats.
What You Will Do
- Investigate and analyze logs and security-related events via Sophos tooling
- Handle escalations from Tier I Threat Analysts - guide / advise on investigation handling
- Onboard and train new Threat Analysts
- Create cases, track and follow up with clients through threat neutralization
- Communicate and document findings to various customer audiences including technical and executive teams
- Follow up with customers through to issue resolution and drive continuous improvement by providing detailed recommendations to minimize risk in customer environments
- Acknowledge and satisfy inbound customer requests and interact with customers through various mediums (Email, Phone, Ticket)
- Collaborate and assist with core security and threat response teams
- Actively research emerging Indicators of Compromise/Attack, exploits and vulnerabilities
- Conduct threat hunting to identify potential threats throughout the MDR customer base
- Participate in Security Operations process improvement and creation
- Obtain metrics for reporting on threat trends, intelligence analysis and situational awareness
What You Will Bring
Essential:
Desirable
- Knowledge of MITRE ATT&CK framework
- Experience with SQL query construction
- Experience with OSQuery Programming and scripting skills - proficient knowledge of PowerShell
- Experience with enterprise information security data management - SIEM
- Advanced Cyber Security certifications
Skills
Explore related jobs
More jobs at Sophos
Browse these categories
Market data for this role
All reports →- SeriesRole reportsOne role family at a time: how many openings, what changed this week, who is hiring, what it pays.
- SeriesSalary reportsWhat employers publish in job postings, by level and workplace. Not self-reported pay.
- Market overviewState of tech hiring, September 2026: up 4.8%Tech hiring rose 4.8% month over month in September 2026, with 411,122 new listings. Customer support and account executive roles led the growth.
