Lead Detection & Response Analyst
- R10341
- Prague, Czechia
The Lead Detection and Response Analyst on Rapid7’s Managed Detection and Response (MDR) team plays a pivotal role in driving innovation, enabling analyst growth, and improving operational processes across the SOC. This hands-on role combines expert-level DFIR skills with leadership in mentoring, incident response, service enablement, and cross-functional collaboration to enhance threat detection and response capabilities. Success is defined by proactive problem-solving, technical leadership, and meaningful contributions to team development and customer impact.
About the team
Rapid7’s Managed Detection and Response (MDR) team is built from the ground up to bring motivated and passionate security talent face to face with emerging threats, practical challenges, and evil at scale. Our MDR service uses an impact-driven mindset to focus efforts on effective solutions, encouraging personal and technical innovation within the SOC. MDR provides 24/7/365 monitoring, threat hunting, incident response, and more with a focus on endpoint detection and behavioral intelligence.
About the role
The Rapid7 Lead Analyst position has 5 primary focus areas. Innovation, education, escalation, service enablement, and process improvement. This role requires practitioners who are experts in various areas of technology, tooling, application of cybersecurity concepts, and hands on DFIR. Moose in this role are expected to proactively identify areas of improvement and involvement and lean on their vast experience to execute on those areas autonomously.
In this role, you might conduct a mentoring session with an analyst to help them improve their skills. This usually involves reviewing a past investigation together and providing feedback on their process and areas for improvement. If you come to the conclusion that your mentoring session would benefit the whole team, you will take the initiative to develop and deliver enablement to the team at large. This process may involve working with other analysts or team leads to assist in the development of the training, as well as documenting it in the analyst playbooks.
If a complex investigation is in flight, you might choose to assist, utilizing your extensive DFIR knowledge, as well as thorough knowledge of Rapid7’s internal tools, to more efficiently reach a determination of root cause. During the course of the investigation, you might discover an opportunity to develop new training or a process improvement, and you’ll take the initiative to act on the opportunity after your investigation is complete. In addition to directly involving yourself in an investigation, you may serve as a technical escalation point for emergent threats affecting our entire customer base.
You will work within your team and collaborate cross functionally scope, lead and complete your initiatives. Furthermore, you will work with MDR leadership to help prioritize your work to maximize positive outcomes for the service and its customers.
The skills and qualities you’ll bring include:
Extensive hands-on experience in DFIR (Digital Forensics & Incident Response) with deep technical expertise.
Strong mentoring and coaching skills to guide and develop junior analysts.
Proven ability to identify and drive innovation and process improvements across the SOC.
Expertise in cybersecurity tools, endpoint detection, behavioral analytics, and threat intelligence.
Demonstrated experience acting as an escalation point during complex or widespread threats.
Ability to lead technical initiatives and develop training content and documentation.
Excellent communication skills for presenting findings and creating enablement content.
Self-driven and impact-focused, able to autonomously scope and lead projects.
Active participation in the security community through blogs, webinars, or ETRs.
We know that the best ideas and solutions come from multi-dimensional teams. That’s because these teams reflect a variety of backgrounds and professional experiences. If you are excited about this role and feel your experience can make an impact, please don’t be shy - apply today.
About Rapid7
At Rapid7, our vision is to create a secure digital world for our customers, our industry, and our communities. We do this by harnessing our collective expertise and passion to challenge what’s possible and drive extraordinary impact. We’re building a dynamic and collaborative workplace where new ideas are welcome.
Protecting 11,000+ customers against bad actors and threats means we’re continuing to push the envelope - just like we’ve been doing for the past 20 years. If you’re ready to solve some of the toughest challenges in cybersecurity, we’re ready to help you take command of your career. Join us.
#LI-SIM
Security and Compliance
Rapid7 is committed to keeping customers secure. As a first line of defense, all employees are expected to uphold the highest standards of security and privacy, ensuring the protection of sensitive information and compliance with relevant regulations.
Apply Now
Application loading...
Sign Up for Job Alerts
Thank you
Jobs you may be interested in
Atlassian Administrator
R10581 Pune India Pune, India Information Technology Information Technology Full_time JOB_LEVEL-3-23Lead Analyst, Digital Analytics
R9633 Prague. Belfast Czechia. United Kingdom Prague, Czechia. Belfast, United Kingdom Business Support Finance Full_time JOB_LEVEL-3-25Senior Enablement Specialist
R10571 Prague Czechia Prague, Czechia Business Support Sales Full_time JOB_LEVEL-3-23Senior DevOps Engineer / Threat Intelligence
R10347 Prague Czechia Prague, Czechia Product & Engineering Development Engineering Full_time JOB_LEVEL-3-24Apply Now
Application loading...