





Niche senior incident-response skills and certification requirements moderate applicant density despite metro location and known employer.
Specialized incident response and malware analysis skills transfer across industries but often need specific tooling knowledge.
Mandatory eight years, GIAC certification, and specific SIEM/EDR/cloud experience enforce strict shortlisting.
Login to See Your Match Score
Create a free account or log in to unlock your CV match score across:
Lead complex incident investigations and conduct deep technical analyses to identify, contain, and remediate security threats.
Drive improvements in incident response processes and detection capabilities by developing scalable workflows, playbooks, and documentation.
Mentor less experienced analysts and serve as the escalation point for high-severity incidents, collaborating with stakeholders to enhance overall security posture.
Bachelor's degree in Computer Science, Information Security, or related field.
Minimum 8 years of experience in incident response, security operations, or related domain.
At least one SANS/GIAC certification required; GCIH, GREM, or GCFA preferred.
Hands-on experience with SIEM platforms (Splunk, Microsoft Sentinel) and EDR tools (CrowdStrike, Carbon Black).
Experienced in cloud environments like Azure, AWS, GCP, and AliCloud with strong network log analysis skills (NetFlow, PCAP).
Deep knowledge of Mitre Attack framework, malware behavior, exploitation techniques, and multi-OS internals (Windows, Linux, macOS).
Analytical expertise in script and malicious binary analysis across multiple languages and platforms; adept at translating technical findings to leadership.