Senior Threat Analyst – Remote MDR Leader

Sophos

Oxford

Hybrid

CAD 86,000 - 143,000

Full time

14 days+
Application generator

Don’t send a generic resume — generate a resume and cover letter tailored to this exact role.

Get past ATS filters

Benefits offered by this job

Remote-first culture
Flexible work options

Job summary

Sophos seeks a Senior Threat Analyst – Tier I for its MDR team in Canada. You will monitor, investigate, and respond to alerts across the Sophos security stack, collaborating with threat hunters and incident responders to neutralize cyber threats.

This remote-first role requires 5+ years in SOC/MDR, strong experience with EDR/XDR, Windows/Linux, and threat hunting. The position offers 24x7 coverage and a comprehensive benefits package.

Qualifications

  • 5+ years in a SOC/MDR or cybersecurity IT role.
  • Proficient with endpoint and network security tools to validate and triage alerts.
  • Working knowledge of Windows, Linux, and macOS environments.
  • Ability to interpret Windows event logs and telemetry data.
  • Familiar with MITRE ATT&CK framework and incident response workflows.

Responsibilities

  • Monitor, investigate, and respond to alerts from the Sophos security stack (EDR/XDR).
  • Lead and mentor Tier I Analysts through escalated cases and ensure thorough investigations.
  • Perform end-to-end analysis on suspicious activity to assess scope, impact, and risk.
  • Identify and respond to threats across customer environments using approved playbooks.
  • Document findings and outcomes in the MDR case management platform.
  • Conduct threat hunting to identify potential threats in the MDR base.
  • Support detection tuning by reducing false positives and improving rules.

Skills

SOC/MDR experience
EDR/XDR tools
Windows & Linux
Threat analysis
Incident response
Communication skills

Education

Bachelor's in IT / CS / Cybersecurity

Tools

SIEM platforms
OSQuery
PowerShell
SQL queries

Job description

Sophos seeks a Senior Threat Analyst – Tier I for its MDR team in Canada. You will monitor, investigate, and respond to alerts across the Sophos security stack, collaborating with threat hunters and incident responders to neutralize cyber threats.

This remote-first role requires 5+ years in SOC/MDR, strong experience with EDR/XDR, Windows/Linux, and threat hunting. The position offers 24x7 coverage and a comprehensive benefits package.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Threat Analyst, MDR Specialist – 4+ Years SOC
Threat Analyst, MDR Specialist – 4+ Years SOC

Sophos • Oxford

Hybrid
CAD 74,000 - 123,000
Remote-first
MDR Threat Analyst I: Threat Detection & Response
MDR Threat Analyst I: Threat Detection & Response

Sophos Group • Oxford

Remote
GBP 42,000 - 65,000
Remote Threat Analyst II - MDR Security Operations
Remote Threat Analyst II - MDR Security Operations

Lever, Inc. • Oxford

Hybrid
GBP 45,000 - 65,000
Threat Analyst 3
Threat Analyst 3

Sophos • Oxford

Hybrid
CAD 74,000 - 123,000
Remote-first
Threat Analyst 2
Threat Analyst 2

Lever, Inc. • Oxford

On-site
GBP 45,000 - 65,000
Threat Analyst 1
Threat Analyst 1

Sophos Group • Oxford

Remote
GBP 42,000 - 65,000
Remote SOC Analyst - Threat Detection & Response
Remote SOC Analyst - Threat Detection & Response

Saasventurecapital • United Kingdom

On-site
GBP 62,000 - 71,000
Remote work
Home office setup allowance
Digital monthly reimbursement
+3
Remote Incident Responder II — MDR & Forensics Expert
Remote Incident Responder II — MDR & Forensics Expert

Lever, Inc. • Oxford

Hybrid
GBP 60,000 - 90,000
Remote-first working model
Incident Response Engineer 2
Incident Response Engineer 2

Lever, Inc. • Oxford

Hybrid
GBP 60,000 - 90,000
Remote-first working model
Senior Incident Response Lead - Remote Rapid Response
Senior Incident Response Lead - Remote Rapid Response

Sophos • United Kingdom

On-site
GBP 90,000 - 120,000