





Metro location, generalist SOC role, and moderate brand recognition increase candidate competition significantly.
Core SOC and incident-response skills transfer across industries, though OT/manufacturing exposure creates moderate domain preference.
Explicit 1–3 years SOC experience, mandatory SIEM/EDR skills and certifications make screening stringent.
Login to See Your Match Score
Create a free account or log in to unlock your CV match score across:
Investigate and respond to security alerts and incidents, perform root cause analysis, and drive corrective actions.
Lead and support incident response efforts by coordinating across teams to contain and remediate threats.
Continuously improve detection and response processes through automation, runbook development, and SOP creation.
1–3 years of experience in SOC, incident response, IT security operations, or related roles (e.g., EDR admin, blue team intern/co-op).
Proficiency with at least one cybersecurity tool such as SIEM, EDR/XDR, secure email gateway, or cloud security platforms like M365 Defender, Sentinel, Splunk, CrowdStrike, Palo Alto, Zscaler.
Strong understanding of investigation concepts including event correlation, MITRE ATT&CK, malware/TTPs, phishing indicators, basic networking (TCP/IP, DNS, HTTP, VPN), and Windows/Linux fundamentals.
Work Experience Required: 1–3 years in a security operations related role.
Experienced in operationalizing threat intelligence and developing detection strategies for evolving threats in Security Operations Centers.
Able to work effectively in fast-paced, ticket-driven environments with SLAs and coordinate with Managed Security Service Providers (MSSP).
Familiar with incident response practices, automation through scripting, and possesses strong communication skills to articulate technical issues to non-technical stakeholders.