Design, implement, and maintain secure infrastructure, systems, and solutions to support enterprise cybersecurity operations. Monitor security alerts and events, perform initial triage and analysis, and escalate incidents as needed. Investigate potential security incidents using SIEM, endpoint, network, and other security tools to determine scope, impact, and remediation steps. Support incident response activities, including containment, eradication, recovery, and post-incident documentation. Develop, tune, and improve security detections, rules, playbooks, and operational procedures to enhance SOC effectiveness. Collaborate with internal teams to identify vulnerabilities, strengthen controls, and protect systems, applications, and data. Document findings, actions taken, and incident details clearly and accurately in accordance with procedures and reporting requirements. Stay current on emerging threats, vulnerabilities, attacker tactics, techniques, and procedures (TTPs), and apply that knowledge to defensive operations.
Stand Out From the Crowd
Upload your resume and get instant feedback on how well it matches this job.
Job Type
Full-time
Career Level
Senior