Senior MDR Analyst (Level 3)

2 Weeks ago • 3 Years +

Job Summary

Job Description

The Senior MDR Analyst (Level 3) will serve as the technical lead and escalation point for complex security incidents within the Varonis MDR team. They will lead complex investigations, assist customers in investigating and responding to security incidents, mentor junior analysts, and drive continuous improvement of detection and response capabilities. The role involves collaborating with internal and external stakeholders, ensuring best practices in monitoring, detection, and incident response processes. The analyst is expected to have a strong foundation in cybersecurity operations, a deep understanding of SIEM technologies, and the ability to train and document processes for others.
Must have:
  • 3+ years of experience in cybersecurity operations
  • Advanced knowledge of SIEM technologies
  • Expertise with various log sources
  • Strong understanding of authentication protocols
  • Proven ability to handle escalations end-to-end
  • Excellent written and oral communication skills
  • Ability to mentor and train junior analysts
  • Strong analytical and problem-solving skills
  • Familiarity with common security tools and technologies

Job Details

Summary 
Data has never been more valuable and vulnerable. As cybercriminals become more sophisticated and regulations more strict, organizations struggle to answer one key question: “Is my data safe?"
At Varonis, we see the world of cybersecurity differently. Instead of chasing threats, we believe the most practical approach is protecting data from the inside out. We’ve built the industry’s first fully autonomous Data Security Platform to help our customers dramatically reduce risk with minimal human effort.
At Varonis, we move fast. We’re an ultra-collaborative company with brilliant people who care deeply about the details. Together, we’re solving interesting and complex puzzles to keep the world’s data safe.
We work in a flexible, hybrid model, so you can choose the home-office balance that works best for you
 
Position Overview:
Varonis MDR team is at the forefront of worldwide data detection and response services. We lead and redefine how data should be monitored, and protected and how data breach incidents should be handled. It’s a 24/7 global security service assisting customers to investigate and respond to security incidents.
A Senior (Level 3) Security Analyst within our MDR team is expected to serve as their team’s technical lead and a key escalation point for complex security incidents.
In your role, you will lead complex investigations, working directly with customers by assisting them in investigating and responding to security incidents.
 As a senior staff in your team, you are expected to mentor junior analysts, and drive continuous improvement of our detection and response capabilities. You will collaborate with internal and external stakeholders, and ensure best practices are followed across monitoring, detection, and incident response processes. This position requires a strong foundation in cybersecurity operations, a deep understanding of SIEM technologies and log sources, as well as the ability to train and document processes for others.
Responsibilities:
  •  Incident Escalations & Investigations
  •  Serve as an escalation point for security alerts and incidents, ensuring timely and thorough investigations.
  •  Perform end-to-end incident handling, including scoping, containment, and eradication activities.
  •  Coordinate and communicate with customers, leadership, and other stakeholders throughout the incident response lifecycle.
  •  Understand, interpret, and analyze a diverse range of log sources (Exchange Online, Entra, Active Directory, Windows events, Azure, DNS, VPN, etc.).
  •  Proactively identify potential threats and anomalies, recommending and implementing improvements in detection logic.
Training & Mentorship:
  •  Assist in training and upskilling junior and mid-level analysts, including sharing best practices in investigations, threat hunting, and emerging threats.
  •  Provide guidance in troubleshooting escalated issues, ensuring efficient knowledge transfer and professional growth within the team.
  •  Contribute to the development, documentation, analysis, testing, and modification of threat detection systems and playbooks.
  •  Provide feedback on gaps or improvements needed in processes, documentation, or technology.
  •  Work closely with Team Leads and other senior staff to align on operational goals, SLA adherence, and service delivery standards.
  •  Communicate findings, root causes, and recommended actions to both technical and non-technical stakeholders clearly and effectively.
  •  Share insights and best practices with the broader team, championing a culture of continuous learning.
Requirements:
  • 3+ years of experience in cybersecurity operations (monitoring, detection, investigation, and incident response) at a global cybersecurity company.
  • Advanced knowledge of SIEM technologies, including log collection, analysis, and correlation.
  • Expertise with various log sources (Exchange Online, Entra, Active Directory, Windows Events, SharePoint_0365, Azure, Syslog, DNS, OneDrive, VPN) and the ability to interpret and analyze these logs for security incidents.
  • Strong understanding of authentication protocols, both modern and legacy (Kerberos, NTLM).
  • Proven ability to handle escalations from end to end, including incident scoping, containment, eradication, and post-incident activities such as lessons learned and documentation.
  • Excellent communication skills in English (written and oral) to interface effectively with customers, peers, and leadership.
  • Ability to mentor and train junior analysts, providing feedback and sharing best practices.
  • Strong analytical and problem-solving skills, with an eye for detail and the capability to deliver autonomously.
  • Familiarity with common security tools and technologies, such as EDR, AV, DLP, DSPM, PAM, IAM, firewalls, and IDS/IPS.
We invite you to check out our Instagram Page to gain further insight into the Varonis culture!
@VaronisLife 
 
Varonis is an equal opportunity employer. We evaluate qualified applicants without regard to race, color, religion, sex, national origin, disability, veteran status, and other legally protected characteristics.
 
 
#LI-Hybrid

Similar Jobs

Looks like we're out of matches

Set up an alert and we'll send you similar jobs the moment they appear!

Similar Skill Jobs

Looks like we're out of matches

Set up an alert and we'll send you similar jobs the moment they appear!

Jobs in Herzliya, Tel Aviv District, Israel

Looks like we're out of matches

Set up an alert and we'll send you similar jobs the moment they appear!

Similar Category Jobs

Looks like we're out of matches

Set up an alert and we'll send you similar jobs the moment they appear!

About The Company

Morrisville, North Carolina, United States (On-Site)

Morrisville, North Carolina, United States (On-Site)

London, England, United Kingdom (On-Site)

Netherlands (On-Site)

Herzliya, Tel Aviv District, Israel (Hybrid)

Herzliya, Tel Aviv District, Israel (Hybrid)

Morrisville, North Carolina, United States (On-Site)

Herzliya, Tel Aviv District, Israel (Hybrid)

View All Jobs

Get notified when new jobs are added by Varonis Internal

Level Up Your Career in Game Development!

Transform Your Passion into Profession with Our Comprehensive Courses for Aspiring Game Developers.

Job Common Plug