MDR Analyst: Incident Response & Automation Lead

Acronis

Mexico

On-site

MXN 420,000 - 650,000

Full time

14 days+
Application generator

Get a reply from this employer — a resume and cover letter tailored to exactly what they’re hiring for.

Get past ATS filters

Job summary

Acronis is seeking an MDR Analyst to investigate and triage EDR/XDR incidents within our MDR service, focusing on adversary activity, remediation, and clear customer guidance. You will collaborate with senior staff and the AI engineering team to enhance automation and incident workflows.

Ideal candidates have experience in SOC/MDR environments, a solid understanding of ATT&CK, and proficiency with EDR/SIEM/SOAR tools.

Qualifications

  • Experience in SOC, MDR, or IT security operations.
  • Strong knowledge of EDR/XDR operations and incident workflows.
  • Understanding of MITRE ATT&CK framework and attacker TTPs.
  • Knowledge of Windows OS, Active Directory, Linux, Networking.
  • Familiar with logs analysis in Kibana or manual reviews.
  • Experience working with security tools (EDR, SIEM, SOAR) and interest in automation technologies.
  • Solid English written and verbal communication skills (B2 or higher).

Responsibilities

  • Investigate incoming EDR/XDR incidents, focusing on accurate triage and severity assessment.
  • Execute remediation actions such as workload isolation, following established playbooks.
  • Document investigation steps and maintain complete case records.
  • Collaborate with AI engineering to test and refine automated triage and response processes.
  • Own the incident from the detection to the resolution, with assistance from senior staff if required.
  • Support development and refinement of documentation, automation, and incident correlation logic.
  • Communicate clearly with customers via email and phone about incident status and recommendations.
  • Stay informed about current security threats and attacker techniques.
  • Work 5-day/8-hour schedule in office hours, with rotational weekend coverage.

Skills

SOC experience
MDR/EDR/XDR
MITRE ATT&CK
Windows/AD/Linux
Kibana/logs analysis
EDR/SIEM/SOAR tools
English communication

Tools

Automation interest

Job description

Acronis is seeking an MDR Analyst to investigate and triage EDR/XDR incidents within our MDR service, focusing on adversary activity, remediation, and clear customer guidance. You will collaborate with senior staff and the AI engineering team to enhance automation and incident workflows.

Ideal candidates have experience in SOC/MDR environments, a solid understanding of ATT&CK, and proficiency with EDR/SIEM/SOAR tools.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Managed Detection and Response Analyst
Managed Detection and Response Analyst

Acronis • Mexico

On-site
MXN 420,000 - 650,000
Incident Response Analyst
Incident Response Analyst

Dencom Consultancy and Manpower Services • Taguig

Hybrid
PHP 700,000 - 900,000
Senior Security Engineer – Threat & Incident Response
Senior Security Engineer – Threat & Incident Response

PDAX • Pasig

On-site
PHP 900,000 - 1,300,000
Senior MDR Quality & Training Analyst
Senior MDR Quality & Training Analyst

nAble • Philippines

On-site
PHP 600,000 - 900,000
Medical and dental insurance
Generous PTO and observed holidays
Employee Stock Purchase Program
+2
Technical Account Manager
Technical Account Manager

PM Consulting • Philippines

On-site
PHP 600,000 - 900,000
Incident Response Analyst
Incident Response Analyst

PM Consulting • Philippines

On-site
PHP 400,000 - 600,000
Incident Response Analyst
Incident Response Analyst

Smart Communications, Inc. • Makati

On-site
PHP 480,000 - 800,000
Security Operations Center Analyst
Security Operations Center Analyst

Centrics Networks • Cebu City

On-site
PHP 400,000 - 640,000
Senior Consultant – Digital Forensics & Incident Response (DFIR)
Senior Consultant – Digital Forensics & Incident Response (DFIR)

PM Consulting • Philippines

Hybrid
PHP 900,000 - 1,500,000
SOC Analyst I: Threat Hunting & Incident Response
SOC Analyst I: Threat Hunting & Incident Response

Continental Industry • Philippines

On-site
PHP 600,000 - 1,000,000