NuHarbor Security delivers end-to-end security programs and is a trusted partner to businesses and public organizations. They strive to be the best security services firm in the market today. Backed by Vermont Center for Emerging Technologies (VCET).
About the role
The Security Analyst, MxDR, is a core member of nuHarbor’s MxDR delivery team, responsible for the full-lifecycle triage, investigation, and disposition of security alerts and incidents across our supported MxDR environments. The Analyst drives each case to a defensible, evidence-based disposition, escalating per defined criteria and documenting findings clearly enough for the next person in the chain to act on.
What they're looking for
- Bachelor’s Degree and two (2) years of experience in cybersecurity, SOC, MDR or incident response
- Demonstrated experience with SIEM solutions, SOC operations, executing security event triaging and tuning
- Experience working in SIEM/XDR tools including specifically Microsoft Sentinel or Defender
- Proven ability to independently investigate and triage security events
- Experience with security event analysis, log correlation, and threat detection
- Experience with KQL or similar query languages
More about this role
At nuHarbor, we help organizations navigate an increasingly complex cybersecurity landscape with confidence. By combining expert guidance, innovative technology, and trusted partnerships, we make security stronger, more effective, and easier to understand. We're looking for talented individuals who are passionate about solving meaningful challenges, helping clients succeed, and continuously improving alongside a team that values curiosity, collaboration, and impact.
The Security Analyst, MxDR, is a core member of nuHarbor’s MxDR delivery team, responsible for the full-lifecycle triage, investigation, and disposition of security alerts and incidents across our supported MxDR environments. The Analyst drives each case to a defensible, evidence-based disposition, escalating per defined criteria and documenting findings clearly enough for the next person in the chain to act on. This is not a passive alert-monitoring role: it demands sound investigative judgement under time pressure, disciplined documentation, and good calibration on when to escalate versus resolve.
This role operates within a 24x7 service delivery model, where high severity incidents require rapid response at any time...
Browse similar: Startup jobs