Match Score
Against your primary resumeLogin to See Your Match Score
Create a free account or log in to unlock your CV match score across:
Protocol Intelligence
Data-driven signals on your job's competitivenessKnown global employer, common SOC title, metro location and junior-mid experience increase competition.
Security operations skills transfer across industries but require domain-specific tooling and processes.
Explicit 1–3 years requirement plus mandatory SIEM/EDR/tool experience and certifications increases filter strictness.
Job Description
Structured overview of role & requirementsAbout This Role
Investigate and respond to security alerts and incidents, perform root cause analysis, and drive corrective actions.
Lead and support incident response efforts, coordinating across teams to contain and remediate threats.
Continuously improve detection and response processes through automation, runbook development, and integration of threat intelligence.
Minimum Requirements
1-3 years experience in SOC, incident response, IT security operations, or related roles (e.g., EDR admin, blue team intern).
Proficiency with at least one cybersecurity tool such as SIEM, EDR/XDR, secure email gateway, or cloud security tools (e.g., M365 Defender, Sentinel, Splunk, CrowdStrike).
Familiarity with investigation concepts including event correlation, user/host baselining, MITRE ATT&CK framework, malware/TTPs, and phishing indicators.
Understanding of basic networking (TCP/IP, DNS, HTTP, VPN) and Windows/Linux fundamentals.
Ideal Candidate Profile
Demonstrated ability to handle complex security incidents and operationalize threat intelligence for detection and response.
Experience working in fast-paced, ticket-driven environments with SLAs and MSSP handoffs, indicating strong operational discipline.
Technical proficiency with cybersecurity tools and scripting for automation (PowerShell, Python, KQL) is a plus but not mandatory.
