





Strong employer brand plus niche SOC skillset and modest experience preference yields medium competition.
Security operations and incident response skills transfer broadly across industries, so high sensitivity.
SIEM/EDR/IR tool expertise, preferred years, and on-call requirement imply medium strictness.
Login to See Your Match Score
Create a free account or log in to unlock your CV match score across:
Monitor, triage, and respond to security alerts using SIEM and various security tools, ensuring timely and accurate incident handling.
Conduct advanced incident investigations applying frameworks like MITRE ATT&CK to analyze attacker behavior and scope incidents for appropriate response.
Document investigations thoroughly, escalate actionable cases, and contribute to SOC process improvements including detection tuning and false-positive reduction.
Experience Required: Not explicitly mentioned in the JD; preferred at least 2 years SOC or incident response experience.
Working knowledge of SIEM, EDR, email security, cloud security, IDS, DLP, firewalls, and security monitoring tools.
Ability to analyze logs, perform forensic investigations, apply threat frameworks (e.g., MITRE ATT&CK), and document cases effectively.
Willingness to work 24/7 shifts and on-call duties as per rotation schedule.
Experienced SOC or incident response professional with hands-on technical skills across multiple security platforms including SIEM, endpoint, network, and email security.
Capable of integrating investigative frameworks into operational incident analysis and driving actionable detections and response improvements.
Comfortable managing high-volume alert environments balancing speed, accuracy, and stakeholder coordination during investigations.