Leads technical investigations and mitigation during cybersecurity incidents to reduce operational risk and downtime.
Responsibilities:
Monitor alerts, investigate incidents, and manage escalations.
Conduct root cause analysis and document findings.
Lead containment, eradication, and recovery efforts.
Maintain and update incident response playbooks.
Collaborate with SOC and IT operations for continuous improvement.
Requirements:
Experience:
4-7 years in SOC or cybersecurity incident handling.
Education:
Bachelor's in Computer Science or Information Security.
Certifications:
CompTIA CySA+, GIAC Certified Incident Handler (GCIH), or CEH.