About the role
Bachelor's degree in cybersecurity, IT, computer science or related field; 5+ years cybersecurity experience; advanced knowledge of security monitoring, incident response, threat intelligence, vulnerability management, threat hunting; strong understanding of TCP/IP, DNS, web protocols, authentication, OS, cloud; hands-on experience with SIEM, EDR/XDR, SOAR, vulnerability management, threat intelligence, network security, email security, identity security, cloud-security platforms; ability to develop security queries, detections, scripts, automation using AQL, KQL, SPL, SQL, Python, PowerShell, APIs; ability to evaluate evidence and develop technical conclusions; ability to work independently during high-pressure events; mentoring ability; working knowledge of AI/ML threats; experience leading incident-response or forensic investigations preferred; advanced threat hunting and detection engineering preferred; penetration testing, attack-path analysis, adversary emulation preferred; threat-intelligence analysis preferred; supporting audits, regulatory examinations, control assessments preferred; correlating threat intelligence with detection, vulnerability management, incident response preferred; cloud, identity, endpoint, network, application, data-security technologies preferred; developing automation and integrations using APIs preferred; regulated financial-services environment preferred; certifications such as CISSP, GCIH, GCIA, GCFA, CEH preferred.
This page is fully interactive when JavaScript is enabled. Please enable JavaScript to apply or browse related roles.