The Principal Cyber Defense Ops Specialist will be a resident technical expert within the Security Operations Center (SOC). This role is for a senior level individual contributor role on the Cyber Defense – Computer Security Incident Response Team (CSIRT) and will be working closely with the Threat Intelligence, Attack Surface Management, and Detection Engineering teams. This role will have responsibility for one or more of the security systems aligned with their specific function, either directly or indirectly; and will be a technical authority for critical operational decisions having significant impact to the organization with authority extending beyond the team to include both technology and business line areas in security-related decisions. This role will also help mature an existing CSIRT incident response, malware analysis, and advanced threat detection programs. The individual would be responsible for (but not limited to): Conducting network forensics, log analysis, and malware triage in support of incident response investigations Utilizing current and future tools to perform hunting for complex insider and outsider threats Analyzing vulnerability assessment and penetration testing results to help identify stealthy threats and drive remedial action of critical threats Supporting proactive deep malware analysis, and recommending defensive actions to effectively defend against malware related attacks Recommend how to optimize security monitoring tools based on threat hunting discoveries Facilitating the evaluation, selection and implementation of supporting SOC systems and tools Helping develop meaningful metrics to reflect the true posture of the environment allowing the organization to make educated decisions based on risk Exercising analytical skills and knowledge of supervision regulations
Stand Out From the Crowd
Upload your resume and get instant feedback on how well it matches this job.
Job Type
Full-time
Career Level
Mid Level
Number of Employees
5,001-10,000 employees