
NuHarbor Security Interview Questions
& Process
Real candidates share what happened, how many rounds they had,
and how the experience turned out.
Based on 12 interview experiences · FREE TO READ
Which role are you interviewing for?
6 roles · 12 reportsCandidate interview experiences
First-hand accounts from people who interviewed at NuHarbor Security.
Business Development Representative
The interview process was a bit rough. Both interviewers were late for the first meeting. I thought I had the job, but then I was ghosted for a month before being told they chose someone else. A month later, they contacted me about an Account Executive role, which fit my background better. I joined that meeting hoping for a new opportunity, but they told me there wasn't an opening at the moment and then just went on and on about the role without giving a clear answer. It was a really frustrating and unpleasant experience overall.
- Can you describe your approach to prospecting within our target market?
Security Operations Analyst
They totally avoided "stump the chump" questions and went for scenario-based questions instead. The interviewers, two of them, pretended to be a SIEM and gave me different scenarios. The goal was to see how I'd think through things step-by-step, as if I were using the SIEM live, and I could use Google/OSINT.
- Imagine you're a L2 SOC Analyst and you get an alert for a user logging in from Greece, which is unusual since they normally log in from Texas. How would you look into this?
- What logs can I access?
- Did someone else already start investigating this, or am I the first one?
Security Operations Analyst
The interview started with quick intros from the two interviewers, who then asked about my background. It then moved straight into an hour of scenario-based questions. They didn't provide any help and asked a lot of different questions related to the original scenarios. At one point, they told me I was "thinking too hard."
- For a client in Rhode Island, how would you investigate a foreign IP from Greece that successfully connected?
- How would you tell if an email was phishing if a client opened a .DOCM file and later thought the email was suspicious?
- Building on the previous questions, how would you investigate an internal IP connecting to an external IP known for malicious activity, according to Intel reports?
Account Executive
The people I spoke with during the interview process were really friendly and clearly loved their jobs at NuHarbor. They took the time to answer all my questions, making the whole experience enjoyable. The only downside was at the end when I was told I didn't get the job because of things that the interviewers themselves had pointed out as my strengths. That was pretty weird and confusing. But I do wish them the best in finding the right person.
- Can you walk me through your sales process?
- How do you handle account management?
NuHarbor Security Interview Questions
Quoted word for word from NuHarbor Security interview reports.
“Is the IP address legitimate?”
Read reports →“Those types of attacks, what are they called?”
Read reports →“After checking the logs, were there multiple login attempts for this user, like User1, User01, or user_1?”
Read reports →“Could you check the email's message ID, date, time, sender, receiver, and SPF, DKIM, and DMARC records for more details?”
Read reports →“Is this the first time this user has logged in from a different location?”
Read report →“How would you tell if an email was phishing if a client opened a .DOCM file and later thought the email was suspicious?”
Read report →“For a client in Rhode Island, how would you investigate a foreign IP from Greece that successfully connected?”
Read report →“What logs can I access?”
Read report →“Did someone else already start investigating this, or am I the first one?”
Read report →Formats, difficulty and experience
Across all 12 NuHarbor Security interview reports.