





Mid-level SOC role with common skillset and metro location, moderate competition.
Specialized SOC and detection skills transfer across industries but require domain-specific experience.
Explicit 5–8 years, mandatory SIEM/EDR and SOC experience in healthcare increases candidate filtering.
Login to See Your Match Score
Create a free account or log in to unlock your CV match score across:
Lead advanced threat detection, security monitoring, and incident investigation across enterprise environments within the Security Operations Center.
Drive high-severity incident response including forensic analysis, containment, eradication, and recovery efforts to minimize operational disruption.
Develop, enhance, and optimize detection rules, alert workflows, and SOC procedures; mentor Tier 1 and Tier 2 analysts for improved cyber defense posture.
Bachelor’s degree in Computer Science, Cybersecurity, Information Technology, or equivalent practical experience.
5–8+ years of experience in SOC operations, cyber defense, threat hunting, or incident response roles.
Hands-on expertise with SIEM (e.g., Splunk, Sentinel), EDR (e.g., CrowdStrike, Microsoft Defender), IDS/IPS, Firewalls, and cloud security monitoring (Azure/AWS).
Strong knowledge of Windows, Linux, cloud audit logs, authentication flows, and security telemetry for threat detection and investigation.
Experienced in investigating high-severity cyber incidents involving malware, lateral movement, privilege misuse, and data exfiltration.
Proficient with MITRE ATT&CK framework, cyber kill chain, threat intelligence lifecycle, and automated detection rule and SOAR playbook development.
Capable of collaborating cross-functionally with Incident Response, Cloud, Infrastructure, Application, and Threat Intelligence teams to operationalize intelligence-driven cyber defense.