Tech Stack
AWSAzureCloudCyber SecuritySplunk
About the role
- Monitor and analyze security events and alerts in SIEM and related systems to detect anomalies, intrusions, or suspicious activity
- Support incident response operations, including triage, investigation, containment, eradication, and recovery
- Collaborate closely with infrastructure and DevOps teams to ensure secure configurations across AWS and Azure environments
- Develop and maintain dashboards, metrics, and alerts to improve visibility into system and application security posture
- Assist in root cause analysis and document lessons learned for continuous process improvement
- Tune and optimize SIEM and Application Security Manager’s detection rules and monitors to minimize false positives and improve response accuracy
- Work with engineering teams to ensure logs and telemetry are properly configured for security visibility
- Maintain and enhance incident response playbooks and escalation procedures
- Support periodic threat hunting and proactive detection activities
Requirements
- Bachelor’s degree in Cybersecurity, Computer Science, or related field preferred (or equivalent experience)
- 2–6 years of hands-on experience in threat monitoring, detection engineering, and incident response across cloud and on-prem environments
- Experience building or maturing a Security Operations Center (SOC), including developing runbooks and incident handling playbooks
- Strong understanding of current security threats, attack techniques, and MITRE ATT&CK framework
- Familiarity with SIEM platforms (e.g., Datadog, Splunk, Sentinel) and log analysis for detection and investigation
- Experience working with cloud platforms such as AWS or Azure, including understanding of cloud-native security controls
- Ability to perform root-cause analysis and post-incident reviews to improve detection and response processes
- Knowledge of vulnerability management, endpoint protection, and threat intelligence integration is a plus
- Excellent communication and collaboration skills to work with DevOps, IT, and product teams.
- Competitive salary and benefits
- Tuition reimbursement
- Lifestyle reimbursements
- Bespoke mindfulness and fitness initiatives
- Flexible PTO policy
- Commitment to professional and personal development
Applicant Tracking System Keywords
Tip: use these terms in your resume and cover letter to boost ATS matches.
Hard skills
threat monitoringdetection engineeringincident responseroot cause analysisvulnerability managementendpoint protectionthreat intelligence integrationsecurity event analysisSIEM tuningcloud-native security controls
Soft skills
communicationcollaborationprocess improvementproblem-solvingteamworkanalytical thinkingattention to detailadaptabilitycritical thinkingleadership
Certifications
Bachelor’s degree in CybersecurityBachelor’s degree in Computer Scienceequivalent experience