Description
You will serve as a subject matter expert focused on implementing and managing security operations and cloud defense strategies.
Responsibilities
- Configure SIEM rules for real-time alerting, analytic rules, automation, hunting queries, and playbooks.
- Assess vulnerabilities and attacker TTPs to implement defensive actions and prevent threats.
- Identify, triage, and remediate security detections, anomalies, and incidents.
- Implement security as a core component of cloud solution design and development.
- Map security controls to compliance requirements and recommend industry best practices.
Required Skills
- 5+ years of experience in cybersecurity operations.
- Expertise in SOC, MDR, SIEM, SOAR, and DAM solutions.
- Hands-on experience with Crowdstrike, LogRhythm, Netskope, Semperis, and Illumio.
- Proficiency in Identity and Access Management (IAM) including RBAC, Conditional Access, PIM/PAM, and MFA.
- Deep knowledge of Active Directory, AD FS, AD Connect, and ID Protection.
- Experience with cloud security technologies, Key Vault, Log Analytics, and Monitor.
- Strong understanding of network architecture and protocols including TCP/IP and HTTP.
- Ability to manage log aggregation, centralization, correlation, and alerting.
- Experience participating in incident response and investigation processes.