
FireEye Security Analyst Interview Questions
& Process
Real candidates share what happened, how many rounds they had,
and how the experience turned out.
Based on 11 interview experiences · FREE TO READ
Candidate interview experiences
First-hand accounts from people who interviewed at FireEye.
Threat Intelligence Analyst
So after a quick phone chat, they sent over a writing assignment that took a lot of time to complete, to check if I could actually do the job. I spent hours making sure it was my best work, but then in the interview, it was super disappointing because the interviewers acted like they hadn't even seen it. It really showed what they needed for the internship. Also, even though they had my resume for ages, they didn't seem to know anything about my background and asked about stuff I clearly didn't have experience in. One interviewer was actually really hostile, rude even, saying they didn't see how I had any research or analysis experience from my resume, which they clearly barely glanced at. There was a big disconnect between whoever screened the resumes and the people interviewing, totally ignoring my actual experience and focusing on things they should have known I didn't have. It made sense that I might not be the right fit, but it was insulting and insensitive how they put down my background and accomplishments, and why even interview me if my background wasn't what they wanted?
- What's your motivation for pursuing this Threat Intelligence Internship?
- Could you explain your previous research and analysis experience in more detail?
- How would you describe your skills in analyzing intelligence?
Security Analyst
A recruitment agency first reached out to me. I had to complete a questionnaire asking about my career objectives, my motivations, why I was interested in Mandiant, my strengths and weaknesses, and my InfoSec activities outside of work. About three weeks later, HR contacted me for a presentation interview. A week after that, I had a technical interview with the Hiring Manager covering networking and security topics like HIDS and HIPS. A week following that, I had a second technical interview with senior analysts where we delved deeper into those topics, discussed scenarios, and touched on pen testing. Two weeks after that, I had a Skype interview with both the Hiring Manager and HR.
- Regarding port numbers, which service does it correspond to?
- Can you describe a method for maintaining a baseline of folder modifications?
- In the process of sending a packet, would encryption or compression be applied first?
Incident Response Analyst
The entire interview process spanned two months. It started with a 30-minute phone interview, followed by an hour-long job-related interview. I experienced a significant delay, waiting over a month for any feedback on their decision, despite them initially indicating it would only take a couple of days. Eventually, even after I followed up, they informed me that they had decided not to proceed with my application at this time, which I found extremely unprofessional.
- Could you describe your prior experience?
FireEye Security Analyst Interview Questions
Quoted word for word from FireEye interview reports.
“What are the various types of DNS records?”
Read reports →“Do you know the port number for https?”
Read reports →“When you type google.com into a browser, what occurs?”
Read reports →“Regarding port numbers, which service does it correspond to?”
Read reports →“Can you explain the structure of the NTFS MFT?”
Read report →“Could you list the different types of HTTP methods?”
Read report →“Could you list tools used for analyzing the registry?”
Read report →“How would you determine the initial entry point of malware on the system?”
Read report →“Can you describe a method for maintaining a baseline of folder modifications?”
Read report →Formats, difficulty and experience
Across all 11 FireEye interview reports.