Managed Detection and Response Analyst

Acronis

Mexico

On-site

MXN 420,000 - 650,000

Full time

14 days+
Application generator

Get a reply from this employer — a resume and cover letter tailored to exactly what they’re hiring for.

Get past ATS filters

Job summary

Acronis is seeking an MDR Analyst to investigate and triage EDR/XDR incidents within our MDR service, focusing on adversary activity, remediation, and clear customer guidance. You will collaborate with senior staff and the AI engineering team to enhance automation and incident workflows.

Ideal candidates have experience in SOC/MDR environments, a solid understanding of ATT&CK, and proficiency with EDR/SIEM/SOAR tools.

Qualifications

  • Experience in SOC, MDR, or IT security operations.
  • Strong knowledge of EDR/XDR operations and incident workflows.
  • Understanding of MITRE ATT&CK framework and attacker TTPs.
  • Knowledge of Windows OS, Active Directory, Linux, Networking.
  • Familiar with logs analysis in Kibana or manual reviews.
  • Experience working with security tools (EDR, SIEM, SOAR) and interest in automation technologies.
  • Solid English written and verbal communication skills (B2 or higher).

Responsibilities

  • Investigate incoming EDR/XDR incidents, focusing on accurate triage and severity assessment.
  • Execute remediation actions such as workload isolation, following established playbooks.
  • Document investigation steps and maintain complete case records.
  • Collaborate with AI engineering to test and refine automated triage and response processes.
  • Own the incident from the detection to the resolution, with assistance from senior staff if required.
  • Support development and refinement of documentation, automation, and incident correlation logic.
  • Communicate clearly with customers via email and phone about incident status and recommendations.
  • Stay informed about current security threats and attacker techniques.
  • Work 5-day/8-hour schedule in office hours, with rotational weekend coverage.

Skills

SOC experience
MDR/EDR/XDR
MITRE ATT&CK
Windows/AD/Linux
Kibana/logs analysis
EDR/SIEM/SOAR tools
English communication

Tools

Automation interest

Job description

Acronis is a global leader in cyber protection, delivering AI-powered protection for productive MSPs in a single, natively integrated platform that unifies operations management, cybersecurity, and data protection. Driven by our mission to protect, manage and automate every workload that businesses and lives depend on, we've built the industry's only all-in-one solution.

We are looking for an MDR Analyst to join our mission of protecting the digital world.

The MDR Analyst is responsible for investigating and triaging EDR/XDR incidents within the Acronis MDR service. This role focuses on investigating adversary activity, execution and aiding in remediation, and providing clear customer communication, while contributing to continuous service improvement.

The analyst will work closely with senior team members and the AI engineering team to enhance automation and integrate Agentic AI capabilities into the MDR workflow. This is a growth-oriented role, with opportunities to contribute to many areas, including proactive threat hunting and advanced incident response.

What You'll Do
  • Investigate incoming EDR/XDR incidents, focusing on accurate triage and severity assessment
  • Execute remediation actions such as workload isolation, following established playbooks
  • Document investigation steps and maintain complete case records
  • Collaborate with AI engineering to test and refine automated triage and response processes
  • Own the incident from the detection to the resolution, with assistance from senior staff if required
  • Support development and refinement of documentation, automation, and incident correlation logic
  • Communicate clearly with customers via email and phone about incident status and recommendations
  • Stay informed about current security threats and attacker techniques
  • Work 5-day/8-hour schedule in office hours, with rotational weekend coverage
Who We’re Looking For
  • Experience in SOC, MDR, or IT security operations
  • Strong understanding of EDR/XDR operations and security incident workflows
  • Strong understanding of common attacker's TTPs and MITRE ATT&CK framework
  • Knowledge of Windows OS, Active Directory, Linux, Networking
  • Familiar with logs analysis in tools like Kibana or manual reviews.
  • Experience working with security tools (EDR, SIEM, SOAR) and interest in automation technologies
  • Ability to follow structured processes and accurately document findings
  • Growth mindset
  • Strong communication skills and attention to details
  • Solid English written and verbal communication skills (B2 or higher)
Who We Are

A Swiss company founded in Singapore in 2003, Acronis offers over twenty years of innovation with 15 offices worldwide and more than 1800 employees in 50+ countries. Acronis Cyber Protect is available in 26 languages in 150 countries and is used by over 20,000 service providers to protect over 750,000 businesses.

Our corporate culture centers on innovation, accountability, and impact. We encourage our people to think boldly, challenge conventional approaches, and take ownership of outcomes. As a member of our global "A-Team", you'll operate in a high-growth, fast-paced environment where resilience, adaptability, and a commitment to continuous improvement drive success.

OUR INTERVIEW PRACTICES

To ensure a fair and genuine hiring process, candidates are expected to participate in interviews without the use of AI tools, automated prompts, or third-party assistance. Interviews are designed to assess individual skills, experience, and communication style, and we value authentic, real-time interaction.

Use of AI or external assistance during live interviews may result in disqualification. For roles where AI skills are being evaluated, permitted use of AI tools will be clearly communicated in advance. Candidates may be asked to disable virtual backgrounds or participate in in-person interviews. All employment offers are contingent upon successful completion of applicable criminal, education and identity background checks

Acronis is an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to age, ancestry, color, marital status, national origin, physical or mental disability, medical condition, protected veteran status, race, religion, sex (including pregnancy), sexual orientation, gender identity or expression, or any other characteristic protected by applicable laws, regulations and ordinances.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

MDR Analyst: Incident Response & Automation Lead
MDR Analyst: Incident Response & Automation Lead

Acronis • Mexico

On-site
MXN 420,000 - 650,000
Associate Principal, Response Operations, Cyber Risk
Associate Principal, Response Operations, Cyber Risk

Kroll • Manila

On-site
PHP 1,100,000 - 1,300,000
DFIR Associate Manager Digital Forensics And Incident Response Hybrid Cubao
DFIR Associate Manager Digital Forensics And Incident Response Hybrid Cubao

Accenture in the Philippines • Philippines

Hybrid
PHP 1,800,000 - 2,400,000
Flexible working arrangements
HMO Insurance
Training & Certifications
+5
DFIR Associate Manager (Digital Forensics & Incident Response)
DFIR Associate Manager (Digital Forensics & Incident Response)

Accenture Inc. • Philippines

Hybrid
PHP 1,200,000 - 1,800,000
Joining bonus up to PHP80,000
Sr. Associate, Customer Support (SME Acronis, AWS Support, Zendesk, Billing)
Sr. Associate, Customer Support (SME Acronis, AWS Support, Zendesk, Billing)

Ingram Micro • Philippines

Hybrid
PHP 1,200,000 - 1,800,000
Hybrid work setup
EMEA-focused role
Senior Automation Engineer (AI-Accelerated Threat Response),
Senior Automation Engineer (AI-Accelerated Threat Response),

Procter & Gamble Philippines • Manila

On-site
PHP 1,000,000 - 2,000,000
Incident Response Analyst
Incident Response Analyst

Check Point Software • Metro Manila

On-site
PHP 2,000,000 - 2,800,000
Senior Support Engineer - Partner Support
Senior Support Engineer - Partner Support

Ingram Micro • Manila

Hybrid
PHP 5,632,000 - 7,509,000
Incident Response Analyst
Incident Response Analyst

Dencom Consultancy and Manpower Services • Taguig

Hybrid
PHP 700,000 - 900,000
Software Engineer II
Software Engineer II

Mimecast Limited • Hinoba-an

On-site
PHP 795,000 - 1,193,000
Hybrid work model