Apply

Ready to go for it?

AI Apply speeds things up—apply directly if you prefer.

FREE ACCESS
5,000–10,000 jobs/day
Scoutfield Logo

See all jobs on Scoutfield

Search thousands of fresh jobs every day.

Discover
  • Fresh listings
  • Fast filters
  • No subscription required
Create a free account and start exploring right away.
A.C.Coy Company

Threat Management Specialist – Tier 2

A.C.Coy Company

. Perform deep-dive incident analysis by correlating data from various sources and determining whether critical systems or data sets are affected .

Posted 9/29/2026full-timeUnited StatesMid-LevelSeniorWebsite

Core Competencies

Role fit
Core Competencies

Use this summary to align your resume positioning with the role.

Demonstrates expertise in cybersecurity incident response, network traffic analysis, and the application of AI/ML techniques to enhance security operations. Proficient in configuring and utilizing security tools such as Splunk, Proofpoint, and SentinelOne to monitor and respond to threats effectively.

Highest-signal resume keywords
Cybersecurity Incident ResponseNetwork Traffic AnalysisAI/ML Techniques in CybersecuritySplunk Configuration and Log AnalysisCloud Security Across AWS, Azure, and GCP

ATS Keywords

Tailor your resume
Applicant Tracking System Keywords

Tip: use these terms in your resume and cover letter to boost ATS matches.

Hard Skills
Incident AnalysisThreat Intelligence AnalysisNetwork-Level ExploitsBoolean LogicIDS/IPS ArchitecturesCybersecurity AutomationMachine Learning FrameworksData AnalysisFeature EngineeringControl Frameworks
Soft Skills
Excellent Communication Skills
Tools & Technologies
SplunkProofpointSentinelOneMicrosoft DefenderGoogle Cloud SCCSOAR Platforms
Certifications & Qualifications
GCEDGSECCISSPSSCP
Industry Keywords
CybersecurityIncident ResponseNetwork Traffic AnalysisAI/MLCloud Security

Tech Stack

Tools & technologies
AWSAzureCloudCyber SecurityGoogle Cloud PlatformSplunkTCP/IP

About the role

Key responsibilities & impact
  • Perform deep-dive incident analysis by correlating data from various sources and determining whether critical systems or data sets are affected
  • Handle incidents according to playbooks and SOPs
  • Advise on remediation actions and analyze opportunities to leverage AI, ML, and SOAR capabilities
  • Identify cybersecurity problems requiring mitigating controls
  • Analyze network traffic for exploit- or intrusion-related attempts
  • Recommend detection mechanisms for exploit- or intrusion-related attempts
  • Provide subject matter expertise on network-based attacks, network traffic analysis, and intrusion methodologies
  • Escalate items requiring further investigation to the Threat Management team
  • Execute operational processes supporting security incident response
  • Use AI/ML-based tools to detect anomalies, automate incident triage, and improve threat intelligence
  • Perform and analyze threat intelligence to assess risk and adapt defenses
  • Manage email security using Proofpoint and respond to attacks
  • Configure Splunk for log analysis, create alerts, and investigate security incidents
  • Configure FirePower for network monitoring and analyze traffic patterns
  • Deploy SentinelOne agents, monitor alerts, and conduct security assessments
  • Monitor, review, and respond to alerts and incidents across Microsoft Defender for Cloud Apps, Defender for Endpoint, Defender XDR, Defender for Office 365, Azure Entra ID, and Google Cloud SCC
  • Investigate suspicious activity, coordinate incident response, and implement remediation actions
  • Tune security policies and maintain visibility into cloud and endpoint environments
  • Stay current on cybersecurity trends, threat actors, and AI/ML research
  • Identify and support automation use cases to enhance SOC capabilities
  • Collaborate across Operations to provide SOC enhancement capabilities through automation and AI

Requirements

What you’ll need
  • BA or BS degree in Computer Science, Information Technology, or related field, or 4 additional years of related experience in lieu of degree
  • One or more relevant certifications such as GCED, GSEC, CISSP, or SSCP desired
  • 3+ years of IT security experience, including some exposure to AI/ML projects
  • 2+ years of experience in network traffic analysis
  • Strong working knowledge of Boolean Logic, TCP/IP fundamentals, network-level exploits, and threat management
  • Knowledge of control frameworks and risk management techniques
  • Strong understanding of IDS/IPS architectures and implementations
  • Familiarity with IDS/IPS technologies, trends, vendors, processes, methodologies, signatures, content creation, and signature characteristics
  • Familiarity with AI/ML techniques in cybersecurity
  • Experience evaluating AI/ML solutions in a SOC environment is a plus
  • Experience with cloud security across AWS, Azure, and GCP
  • Experience with cybersecurity automation, including SOAR platforms
  • Proficiency using machine learning frameworks to develop, train, and deploy cybersecurity models
  • Proven data analysis and feature engineering skills
  • Understanding and experience identifying and implementing automation use cases
  • Excellent communication skills
  • Must be able to obtain a Position of Public Trust Clearance
  • Must be a US Citizen or have Permanent US Residence status (Green Card)
  • Must have lived in the United States for the past 5 years
  • Cannot have more than 6 months of travel outside the United States within the last 5 years, excluding military service

Benefits

Comp & perks
  • Contract-to-hire opportunity
  • Hybrid work arrangement
  • Night shift: Monday–Friday, 11:00 PM–7:30 AM
  • Opportunity to support a US Government client
  • Potential to obtain a Position of Public Trust Clearance