Lead Detection & Response Analyst

  • R10341
  • Prague, Czechia

The Lead Detection and Response Analyst on Rapid7’s Managed Detection and Response (MDR) team plays a pivotal role in driving innovation, enabling analyst growth, and improving operational processes across the SOC. This hands-on role combines expert-level DFIR skills with leadership in mentoring, incident response, service enablement, and cross-functional collaboration to enhance threat detection and response capabilities. Success is defined by proactive problem-solving, technical leadership, and meaningful contributions to team development and customer impact.
 

About the team

Rapid7’s Managed Detection and Response (MDR) team is built from the ground up to bring motivated and passionate security talent face to face with emerging threats, practical challenges, and evil at scale. Our MDR service uses an impact-driven mindset to focus efforts on effective solutions, encouraging personal and technical innovation within the SOC. MDR provides 24/7/365 monitoring, threat hunting, incident response, and more with a focus on endpoint detection and behavioral intelligence.

About the role

The Rapid7 Lead Analyst position has 5 primary focus areas. Innovation, education, escalation, service enablement, and process improvement. This role requires practitioners who are experts in various areas of technology, tooling, application of cybersecurity concepts, and hands on DFIR. Moose in this role are expected to proactively identify areas of improvement and involvement and lean on their vast experience to execute on those areas autonomously.


In this role, you might conduct a mentoring session with an analyst to help them improve their skills. This usually involves reviewing a past investigation together and providing feedback on their process and areas for improvement. If you come to the conclusion that your mentoring session would benefit the whole team, you will take the initiative to develop and deliver enablement to the team at large. This process may involve working with other analysts or team leads to assist in the development of the training, as well as documenting it in the analyst playbooks. 

If a complex investigation is in flight, you might choose to assist, utilizing your extensive DFIR knowledge, as well as thorough knowledge of Rapid7’s internal tools, to more efficiently reach a determination of root cause. During the course of the investigation, you might discover an opportunity to develop new training or a process improvement, and you’ll take the initiative to act on the opportunity after your investigation is complete. In addition to directly involving yourself in an investigation, you may serve as a technical escalation point for emergent threats affecting our entire customer base. 

You will work within your team and collaborate cross functionally scope, lead and complete your initiatives. Furthermore, you will work with MDR leadership to help prioritize your work to maximize positive outcomes for the service and its customers.

The skills and qualities you’ll bring include:

  • Extensive hands-on experience in DFIR (Digital Forensics & Incident Response) with deep technical expertise.

  • Strong mentoring and coaching skills to guide and develop junior analysts.

  • Proven ability to identify and drive innovation and process improvements across the SOC.

  • Expertise in cybersecurity tools, endpoint detection, behavioral analytics, and threat intelligence.

  • Demonstrated experience acting as an escalation point during complex or widespread threats.

  • Ability to lead technical initiatives and develop training content and documentation.

  • Excellent communication skills for presenting findings and creating enablement content.

  • Self-driven and impact-focused, able to autonomously scope and lead projects.

  • Active participation in the security community through blogs, webinars, or ETRs.

We know that the best ideas and solutions come from multi-dimensional teams. That’s because these teams reflect a variety of backgrounds and professional experiences. If you are excited about this role and feel your experience can make an impact, please don’t be shy - apply today.

About Rapid7


At Rapid7, our vision is to create a secure digital world for our customers, our industry, and our communities. We do this by harnessing our collective expertise and passion to challenge what’s possible and drive extraordinary impact. We’re building a dynamic and collaborative workplace where new ideas are welcome. 

Protecting 11,000+ customers against bad actors and threats means we’re continuing to push the envelope - just like we’ve been doing for the past 20 years. If you’re ready to solve some of the toughest challenges in cybersecurity, we’re ready to help you take command of your career. Join us. 


#LI-SIM
 

Security and Compliance
Rapid7 is committed to keeping customers secure. As a first line of defense, all employees are expected to uphold the highest standards of security and privacy, ensuring the protection of sensitive information and compliance with relevant regulations.

Apply Now

Not You?

We have emailed you a code to verify your identity. Please check your spam/junk folder if you don't receive the email in your inbox.

Application loading...

 

Jobs you may be interested in

Atlassian Administrator

R10581 Pune India Pune, India Information Technology Information Technology Full_time JOB_LEVEL-3-23
  Atlassian Administrator We are seeking a knowledgeable and technically grounded Atlassian Administrator to contribute to the  ownership of our Atlassian environment, including Jira and Confluence. This role requires a strong understanding of At...

Lead Analyst, Digital Analytics

R9633 Prague. Belfast Czechia. United Kingdom Prague, Czechia. Belfast, United Kingdom Business Support Finance Full_time JOB_LEVEL-3-25
The Lead Analyst, Digital Analytics at Rapid7 is responsible for owning and optimizing global digital reporting, website tagging/tracking, and campaign performance measurement to drive data-informed marketing strategies. This role combines deep ha...

Senior Enablement Specialist

R10571 Prague Czechia Prague, Czechia Business Support Sales Full_time JOB_LEVEL-3-23
We are looking for a motivated and tech-savvy individual to join our Growth Enablement team as an Enablement Specialist, responsible for supporting and evolving our enablement technology portfolio to drive impactful learning experiences across our...

Senior DevOps Engineer / Threat Intelligence

R10347 Prague Czechia Prague, Czechia Product & Engineering Development Engineering Full_time JOB_LEVEL-3-24
As a Senior DevOps Engineer, you will play a pivotal role in developing a solution for detecting, analyzing, and remediating threats across the clear, dark, and deep web. You will contribute to creating a secure digital world for our customers and...

Apply Now

Not You?

We have emailed you a code to verify your identity. Please check your spam/junk folder if you don't receive the email in your inbox.

Application loading...