





Tier-1 employer and metro location increase applicant density despite senior, specialized SOC skill requirements.
High—specialized SOC, incident response, and EDR/SIEM experience required limits cross-industry transferability.
High—explicit eight-year minimum, security certifications, and specific SOC/EDR/SIEM skills required.
Login to See Your Match Score
Create a free account or log in to unlock your CV match score across:
Lead investigation and response for medium to high severity cybersecurity incidents across on-premises, cloud, and affiliated environments.
Monitor, analyze, and investigate security alerts from SIEM, EDR/XDR, Email Security, Cloud Security, and other platforms to detect and remediate threats.
Coordinate incident response activities, document findings, communicate status to leadership, and support continuous improvement of detection and response capabilities.
Minimum 8 years total IT/Cybersecurity experience with at least 5-6 years in Security Operations, Incident Response, or Threat Detection roles.
Experience as Incident Commander or lead investigator in cybersecurity incidents.
Hands-on experience with EDR/XDR tools such as Microsoft Defender for Endpoint or CrowdStrike Falcon and cloud platforms like Azure, AWS, Microsoft 365.
Strong knowledge of network technologies (TCP/IP, DNS, HTTP/S, VPN, Firewalls, IDS/IPS) and incident response methodologies.
Experienced leader capable of managing end-to-end cybersecurity incident investigations and coordinating multi-stakeholder response efforts.
Deep technical expertise in security operations center (SOC) environments, threat detection, and use of AI-assisted security tools.
Comfortable working with cloud-native and hybrid environments and knowledgeable about emerging AI/Generative AI security risks.