





Strong employer brand, mid-level experience band, and metro location increase candidate competition density.
Role requires SOC/incident response and SIEM/EDR experience, making cross-industry transfers limited.
Explicit years, mandatory SOC/IR experience and SIEM/EDR skills make filters strict and selective.
Login to See Your Match Score
Create a free account or log in to unlock your CV match score across:
Monitor and investigate security incidents using SIEM, EDR, email, cloud, and network tools to identify and respond to threats.
Coordinate containment, eradication, and recovery of security incidents, maintaining documentation and escalating complex cases.
Improve incident response playbooks, support L1 analysts, ensure SLA compliance, and set performance standards for Cyber Operations staff.
5 to 7.5 years of experience with 3-5 years specifically in SOC or Incident Response.
Bachelor's degree in Computer Science, Cybersecurity, or related field (or equivalent experience/coursework).
Knowledge of SIEM, EDR, Windows, Linux, networking, and understanding of MITRE ATT&CK and incident response lifecycle.
Ability to work nights, weekends, and variable schedules as necessary.
Experienced in hands-on cybersecurity incident response and security operations center (SOC) environments at mid to senior level.
Comfortable using multiple security tools and technologies to manage, analyze, and respond to cybersecurity threats.
Demonstrated capability to lead incident response coordination, develop/improve playbooks, and mentor junior analysts.