Responsibilities
- Manage the full lifecycle of security incidents, from detection to containment and recovery.
- Lead threat intelligence efforts by studying emerging threats and incorporating external data into detection systems.
- Conduct in-depth forensic analysis on endpoints and network traffic to uncover root causes and methods of persistence.
- Develop and improve automated SOAR playbooks to enhance response efficiency and consistency.
- Carry out proactive, hypothesis-based threat hunting across environments.
- Serve as the escalation contact for complex security alerts and guide junior analysts in advanced investigation methods.
- Produce comprehensive incident reports and communicate findings to technical teams and executives with clear impact assessments.
Work Arrangement
Hybrid