Responsibilities
Monitor and investigate security alerts, logs, and potential incidents; perform initial response, containment, escalation, threat hunting, and vulnerability remediation tracking. Maintain investigation documentation and support audits, compliance, and risk assessments while collaborating with technical teams to resolve security issues.
Requirements
Requires knowledge of networking, Windows and Linux, SIEM monitoring, incident response, common cyber threats, vulnerability management, and basic threat intelligence concepts. Strong analytical, problem-solving, documentation, and communication skills are expected; experience with named SIEM and EDR/XDR tools, cloud security, scripting, frameworks, or certifications is preferred.