Description
The role is responsible for daily incident management, incident response, forensic analysis of compromised systems, prioritization and direction of global incidents, large-scale compromise assessments, incident-response planning and playbooks, attack-scenario tabletop training, customer reporting, sandbox and test-lab environments, and coordination within a team. It is explicitly not an entry-level SOC role and requires 10+ years of cybersecurity experience, including 2–5 years of T3 incident-response and system-compromise-analysis experience, along with security-review, enterprise-security, attack-simulation, and documented-procedure experience. The role may require on-call rotation, domestic and international travel, and eligibility to work in the United States without employer sponsorship.
