





Tier-1 employer and metro locations create moderate competition for senior SOC roles.
Role requires domain-specific incident response, SIEM/EDR, and cloud security expertise, limiting industry transferability.
Explicit 8+ years requirement plus SOC experience and preferred certifications makes shortlisting strict.
Login to See Your Match Score
Create a free account or log in to unlock your CV match score across:
Lead incident investigation and coordinate response for medium to high severity cybersecurity incidents across on-premises, cloud, and affiliated environments.
Monitor, analyze, and investigate security alerts from multiple platforms including SIEM, EDR/XDR, Cloud Security, and Email Security.
Communicate findings, risks, and remediation efforts to leadership and stakeholders; support after-hours incident response and rotational on-call duties.
Minimum 8 years of IT/Cybersecurity experience with at least 5-6 years in Security Operations, Incident Response, or Threat Detection.
Experience as Incident Commander or lead investigator during cybersecurity incidents.
Hands-on experience with EDR/XDR solutions (e.g. Microsoft Defender for Endpoint, CrowdStrike Falcon) and cloud platform security logs (Azure, AWS, Microsoft 365).
Work Experience Required: 8+ years total, 5-6 years in relevant cybersecurity roles; Notice Period: Not explicitly mentioned in the JD.
Experienced in leading security incident response and working within Security Operations Center (SOC) environments using current SIEM and EDR/XDR technologies.
Strong understanding of network technologies (TCP/IP, DNS, HTTP/S, VPN, Firewalls, IDS/IPS) and cloud security monitoring.
Knowledgeable about AI-assisted security operations and basic understanding of AI/Generative AI security risks to enhance threat detection and incident response.