





Mid-level SOC/cloud role with SIEM/AWS skills and moderate employer brand, attracting healthy applicant competition.
Specialized SOC/cloud security skills are transferable but preference for regulated-environment experience increases fit sensitivity.
Explicit 5–7 years requirement plus mandatory cloud, SIEM, and EDR skills increases shortlisting rigidity.
Login to See Your Match Score
Create a free account or log in to unlock your CV match score across:
Own end-to-end handling of security incidents in AWS cloud, including investigation, containment, remediation support, and documentation.
Monitor, tune, and improve SIEM and EDR/XDR detection capabilities across cloud, endpoint, and enterprise environments.
Support AI security risk monitoring and response, develop incident response workflows, and build practical security guardrails for AI tool usage.
5–7 years of experience in SOC operations, incident response, cloud security, SIEM engineering, or EDR/XDR operations.
Hands-on experience with AWS security services (e.g., GuardDuty, Security Hub, CloudTrail, IAM, CloudWatch) for incident investigation and monitoring.
Experience with SIEM tools (preferably Microsoft Sentinel) and EDR/XDR platforms (preferably Microsoft Defender XDR).
Basic scripting or query skills using KQL, PowerShell, Python, or similar technologies.
Experienced with the full incident response lifecycle, including triage, containment, remediation, and post-incident documentation in cloud environments.
Skilled in integrating detection and response activities across cloud, endpoint, identity, and SIEM data sources, with ability to tune detection rules and build dashboards.
Capable of operationalizing new AI security risks and integrating secure AI tool use into SOC workflows, including defining guardrails and escalation procedures.