[Hiring] Cloud MDR Analyst SkillBridge Intern @Blackpoint Cyber
Cloud MDR Analyst SkillBridge Intern @Blackpoint Cyber
All Others
Salary usd 0.01 per ye..
Remote Location
πŸ‡ΊπŸ‡Έ USA Only
Employment Type full-time
Posted 2wks ago

[Hiring] Cloud MDR Analyst SkillBridge Intern @Blackpoint Cyber

2wks ago - Blackpoint Cyber is hiring a remote Cloud MDR Analyst SkillBridge Intern. πŸ’Έ Salary: usd 0.01 per year πŸ“Location: USA

Role Description

Blackpoint Cyber is seeking a Cloud MDR Analyst with demonstrated experience in Security Operations and Cloud Security to join our Threat Operations Center. In this role, you will be a frontline defender of our clients' cloud environments β€” monitoring, investigating, and responding to threats targeting Microsoft 365, Google Workspace and Cisco Duo as part of our Cloud Response capability. You will work alongside seasoned MDR analysts in a 24Γ—7Γ—365 environment to detect and neutralize adversaries operating within SaaS and cloud-native attack surfaces before they can cause harm.

What You'll Do

  • Monitor and analyze anomalous behavior across Microsoft 365, Google Workspace and Cisco Duo environments, including suspicious sign-ins, OAuth application abuse, mailbox rule manipulation, data exfiltration indicators, and identity-based attacks.
  • Follow standardized Cloud Response playbooks to triage, escalate, and respond to security events across SaaS platforms, including account containment, session revocation, and admin remediation actions.
  • Investigate cloud-specific attack techniques such as Business Email Compromise (BEC), adversary-in-the-middle (AiTM) phishing, OAuth consent grant abuse, and privilege escalation via misconfigured cloud permissions.
  • Collaborate with Senior Analysts to research and investigate emerging cloud threat tradecraft and contribute recommendations for new detection logic targeting M365 and Google Workspace telemetry.
  • Proactively identify and mitigate false positives across cloud alert pipelines by working with senior analysts to suppress noisy or low-fidelity detections.
  • Collaborate with customers to review cloud security incidents and assist with detection, prevention, and mitigation strategies β€” including guiding clients through Microsoft Secure Score improvements and Google Workspace security posture reviews.
  • Leverage cloud-native audit logs β€” including Microsoft Unified Audit Log, Azure AD Sign-in Logs, and Google Workspace Admin Reports β€” to reconstruct attacker timelines and scope incidents.
  • Bring your observant and curious mindset to cloud investigations and security events!

Qualifications

  • Motivation and drive to work in a fast-paced and dynamic external SOC environment with a focus on cloud and SaaS security.
  • Minimum of 1-2 years of experience in an information security role; progressive relevant training and/or certification may be substituted for one year of the experience requirement.
  • Experience working in a SOC with cloud incident exposure preferred.
  • Working knowledge of Microsoft 365 security features including Microsoft Defender for Office 365, Microsoft Defender for Identity, Microsoft Entra ID (Azure AD), Conditional Access Policies, and the Microsoft Unified Audit Log.
  • Familiarity with Google Workspace security capabilities including Google Workspace Admin Console, Context-Aware Access, DLP policies, and Google Workspace Audit & Investigation Tool.
  • Understanding of cloud identity attack vectors such as credential stuffing, MFA bypass techniques (AiTM, SIM-swapping), OAuth phishing, and token theft.
  • Some knowledge of cloud-adjacent tradecraft including Living off the Land techniques applied to cloud environments, lateral movement via federated identity, and cloud persistence mechanisms.
  • Excellent problem-solving skills, critical thinking, and analytical skills with the ability to deconstruct issues and hunt anomalous patterns in cloud telemetry.
  • Excellent verbal and written communication skills to effectively summarize and present cloud incident findings to both technical and non-technical stakeholders.
  • Ability to work independently or as a member of a team in a shift-based environment.
  • Experience with CTF platforms or cloud security labs such as TryHackMe, PwnedLabs, or Microsoft Learn security paths are a plus.

What We Can Do For You

  • Exposure to nation-state grade MDR with hands-on response capability across Microsoft 365 and Google Workspace β€” the cloud platforms most targeted by modern adversaries.
  • Intensive training program designed by SOC leadership, including cloud-specific onboarding tracks covering M365 Defender, Entra ID, and Google Workspace forensics to ensure you are set up for success.
  • Empowering you to upskill in areas like Cloud Threat Hunting, Identity & Access Abuse detection, and SaaS Security Posture Management (SSPM) β€” we love seeing analysts automate cloud log enrichment or contribute to the team's detection knowledge base.
  • Growth opportunities within a rapidly expanding Cloud Response capability that is only going to get bigger and smarter as adversaries continue to shift their focus to cloud and SaaS environments.
Before You Apply
️
πŸ‡ΊπŸ‡Έ Be aware of the location restriction for this remote position: USA Only
β€Ό Beware of scams! When applying for jobs, you should NEVER have to pay anything. Learn more.
Cloud MDR Analyst SkillBridge Intern @Blackpoint Cyber
All Others
Salary usd 0.01 per ye..
Remote Location
πŸ‡ΊπŸ‡Έ USA Only
Employment Type full-time
Posted 2wks ago
Apply for this position
Did not apply βœ“
Applied βœ“
Sent Follow-Up βœ“
Interview Scheduled βœ“
Interview Completed βœ“
Offer Accepted βœ“
Offer Declined βœ“
Unlock 160,000+ Remote Jobs
️
πŸ‡ΊπŸ‡Έ Be aware of the location restriction for this remote position: USA Only
β€Ό Beware of scams! When applying for jobs, you should NEVER have to pay anything. Learn more.
Apply for this position
Did not apply βœ“
Applied βœ“
Sent Follow-Up βœ“
Interview Scheduled βœ“
Interview Completed βœ“
Offer Accepted βœ“
Offer Declined βœ“
Unlock 160,000+ Remote Jobs
Γ—

Apply to the best remote jobs
before everyone else

Access 160,000+ vetted remote jobs and get daily alerts.

4.9 β˜…β˜…β˜…β˜…β˜… from 500+ reviews
Unlock All Jobs Now

Maybe later