





Login to See Your Match Score
Create a free account or log in to unlock your CV match score across:
Tier-1 cloud employer, mid-level role and metro location raise competition, but niche SOC/IR skills reduce applicant density.
SOC/IR, SIEM/EDR, forensics and cloud security requirements make cross-industry fit moderately sensitive.
Explicit 5-8 years, SOC/IR experience, SIEM/EDR, detection engineering and certifications increase strictness.
Lead escalated security incident investigations and incident response across SIEM, identity/access, endpoint, and cloud telemetry to closure within SLAs.
Act as technical lead on major-incident bridges, coordinate containment, eradication, and remediation activities while preserving forensic evidence and managing root cause analysis.
Drive detection engineering, automation, threat hunting, mentorship, and continuous improvement including runbook authoring and post-incident reviews.
Bachelor’s degree in Engineering or equivalent.
5-8 years of experience in security operations, incident response, or SOC with escalation and incident-response ownership at senior level.
Hands-on expertise with SIEM, EDR, log analysis, endpoint/network forensics; familiarity with MITRE ATT&CK framework and detection engineering/automation (Python, SOAR).
Willingness to work rotational 24x7 shift and on-call including nights, weekends, and holidays.
Experienced in leading complex security investigations and coordinating multi-stakeholder incident responses under pressure.
Skilled in detection engineering, automation, and driving continuous process improvements in a 24x7 SOC or command-center environment.
Capable of technical leadership and mentoring within a large integrated security operations center with global escalations.