





Metro, mid-level cloud security role with common tooling increases applicant density despite modest company brand.
Specialized cloud security and incident response requirements make background fit highly sensitive.
Explicit 4–6 years and mandatory Splunk, CrowdStrike, and AWS experience create strict filters.
Login to See Your Match Score
Create a free account or log in to unlock your CV match score across:
Lead end-to-end incident response across cloud infrastructure and endpoints, including triage, containment, investigation, and post-incident review.
Hunt and investigate security alerts using CrowdStrike Falcon and build/tune detection logic in Splunk with SPL queries and dashboards.
Audit and investigate AWS cloud events and correlate signals across endpoint, network, and cloud layers to establish comprehensive attack timelines.
3+ years in security engineering, SOC, or incident response role.
Hands-on experience with CrowdStrike Falcon (EDR, detections tuning) and proficiency in Splunk SPL and dashboard creation.
Solid understanding of AWS IAM, CloudTrail, and native AWS security services (GuardDuty, Security Hub, Config).
B.E/B.TECH/MCA in Computer Science, Electronics, or related branches required; Total experience expected 4-6 years.
Experienced in incident response leadership within cloud and endpoint security domains using CrowdStrike and Splunk tools.
Strong knowledge of AWS cloud security and attacker tactics (MITRE ATT&CK) specifically in cloud environments.
Capable of producing clear technical incident reports and contributing to IR program improvements including runbooks and playbooks.