Description
The role is responsible for daily incident management, incident response, forensic analysis of compromised systems, prioritization and direction of global incidents, large-scale compromise assessments, incident-response planning and playbooks, customer tabletop training, detailed incident reporting, sandbox and test-lab environments, and coordination within a team. It is explicitly not an entry-level SOC role and requires 5+ years of cybersecurity experience, including 2–5 years of T3 incident response focused on system compromise analysis, along with experience in security reviews, vulnerability assessments, enterprise security solutions, crisis management, attack simulation, and documented security procedures. The position may require on-call rotation, domestic and international travel, and work without employer sponsorship in the applicable country.
