





Tier-1 brand, mid-level 5–8yr role, and metro location driving high candidate competition.
SOC/IR and detection-engineering skills are highly domain-specific and not easily transferable across industries.
Explicit 5–8 years plus mandatory SIEM/EDR, IR, detection-engineering, and automation skills makes filtering strict.
Login to See Your Match Score
Create a free account or log in to unlock your CV match score across:
Lead escalated security investigations and incident response across SIEM, identity/access, endpoint, and cloud telemetry, ensuring resolution within defined SLAs.
Act as technical lead for major incidents, coordinating containment, eradication, root cause analysis, and remediation efforts.
Drive detection engineering, threat hunting, automation, and mentoring to improve response capabilities and reduce incident recurrence.
Bachelor's degree in Engineering or equivalent.
5-8 years experience in security operations, incident response, or SOC roles with escalation and incident response ownership.
Deep hands-on expertise with SIEM, EDR, log analysis, endpoint/network forensics, and knowledge of MITRE ATT&CK and incident response lifecycle.
Willingness and ability to work rotational 24x7 shifts and on-call including nights, weekends, and holidays.
Experienced security operator comfortable leading complex investigations, major incident response, and technical decision making under pressure.
Strong detection engineering and automation skills including scripting (Python) and SOAR playbooks to reduce MTTR/MTTC.
Prior experience in 24x7 SOC or command center environments with mentorship and runbook development responsibilities.