





Tier-1 employer, remote role, and mid-level security position increase applicant density.
Role requires specialized incident response, SIEM and forensics experience, limiting cross-industry transferability.
Explicit 3+ years plus mandatory SIEM, cloud, forensics and scripting enforces strict filters.
Login to See Your Match Score
Create a free account or log in to unlock your CV match score across:
Lead second-line triage and incident response for security alerts, managing incidents through resolution and driving post-incident improvements.
Develop and maintain runbooks and automation to streamline repeated response tasks and reduce manual effort.
Collaborate across Security Operations and support Web3 product launches to enhance monitoring strategies and incident response capabilities.
3+ years of hands-on security operations experience including incident response, alert triage, and network/host forensics in cloud, SaaS, and container environments.
Proficiency in scripting automation workflows using Python, Bash, or equivalent to improve investigation and response.
Working knowledge of networking fundamentals and operating systems (Windows, Linux, macOS) for artifact analysis.
Experience with SIEM platforms and threat intelligence tools at scale, including alert tuning and improving signal-to-noise ratios.
Experienced in building detection coverage across diverse log sources including cloud platforms, SaaS applications, container orchestration, and M&A integrations.
Ability to mentor peers and contribute to 24/7 rotational coverage across multiple time zones.
Comfortable working in a high-intensity, remote-first environment with quarterly in-person work sessions and focused on emerging Web3 security challenges.