Requirements
- Execute monitoring, detection, investigation and response activities for cybersecurity incidents, operating tools such as SIEM, XDR, DLP, SWG, PAM and other protection solutions; perform rule tuning, alert triage and execution of response playbooks.
- Manage technical aspects of cyber resilience, including environment hardening, cryptographic key management, data protection, network security, forensic investigations, root cause analysis, Purple Team exercises and implementation of improvements to detection and response processes.
- Perform Offensive Security activities, managing vulnerabilities, supporting or conducting penetration tests, Red Team exercises and technical assessments of applications, infrastructure, cloud environments and endpoints, and tracking remediation plans with the responsible areas.
Core Competencies
Demonstrates expertise in cybersecurity incident management, including monitoring, detection, and response activities, while effectively utilizing security tools and methodologies. Proficient in vulnerability management, offensive security practices, and implementing improvements in cyber resilience and data protection.
Highest-signal resume keywords
- Information Security
- Incident Response
- Vulnerability Management
- Penetration Testing
- Security Operations Center (SOC)
ATS Optimization Keywords
Hard Skills
- Cybersecurity Incident Management
- Vulnerability Management Tools
- Forensic Analysis
- Network Security
- Cryptographic Key Management
- Operating System Hardening
- Data Protection
- Offensive Security Methodologies
- Rule Tuning
- Alert Triage
Certifications & Qualifications
- CompTIA Security+
- Certified Ethical Hacker (CEH)
- Offensive Security Certified Professional (OSCP)
Industry Keywords
- Cyber Resilience
- Incident Investigation
- Purple Team Exercises
- Red Team Exercises
- Data Protection in Transit
- Data Protection at Rest
- Data Protection in Use
Tools & Technologies
- SIEM
- XDR
- DLP
- SWG
- PAM
- Microsoft Sentinel
- CrowdStrike
- Palo Alto
- Splunk
- IBM QRadar