FREE ACCESS
5,000–10,000 jobs/day
See all jobs on Scoutfield
Search thousands of fresh jobs every day.
Discover
- Fresh listings
- Fast filters
- No subscription required
Create a free account and start exploring right away.

Threat Management Specialist – Tier 2
A.C.Coy Company. Perform deep-dive incident analysis by correlating data from various sources and determining whether critical systems or data sets are affected .
Core Competencies
Role fitCore Competencies
Use this summary to align your resume positioning with the role.
Demonstrates expertise in cybersecurity incident response, network traffic analysis, and the application of AI/ML techniques to enhance security operations. Proficient in configuring and utilizing security tools such as Splunk, Proofpoint, and SentinelOne to monitor and respond to threats effectively.
Highest-signal resume keywords
Cybersecurity Incident ResponseNetwork Traffic AnalysisAI/ML Techniques in CybersecuritySplunk Configuration and Log AnalysisCloud Security Across AWS, Azure, and GCP
ATS Keywords
Tailor your resumeApplicant Tracking System Keywords
Tip: use these terms in your resume and cover letter to boost ATS matches.
Hard Skills
Incident AnalysisThreat Intelligence AnalysisNetwork-Level ExploitsBoolean LogicIDS/IPS ArchitecturesCybersecurity AutomationMachine Learning FrameworksData AnalysisFeature EngineeringControl Frameworks
Soft Skills
Excellent Communication Skills
Tools & Technologies
SplunkProofpointSentinelOneMicrosoft DefenderGoogle Cloud SCCSOAR Platforms
Certifications & Qualifications
GCEDGSECCISSPSSCP
Industry Keywords
CybersecurityIncident ResponseNetwork Traffic AnalysisAI/MLCloud Security
Tech Stack
Tools & technologiesAWSAzureCloudCyber SecurityGoogle Cloud PlatformSplunkTCP/IP
About the role
Key responsibilities & impact- Perform deep-dive incident analysis by correlating data from various sources and determining whether critical systems or data sets are affected
- Handle incidents according to playbooks and SOPs
- Advise on remediation actions and analyze opportunities to leverage AI, ML, and SOAR capabilities
- Identify cybersecurity problems requiring mitigating controls
- Analyze network traffic for exploit- or intrusion-related attempts
- Recommend detection mechanisms for exploit- or intrusion-related attempts
- Provide subject matter expertise on network-based attacks, network traffic analysis, and intrusion methodologies
- Escalate items requiring further investigation to the Threat Management team
- Execute operational processes supporting security incident response
- Use AI/ML-based tools to detect anomalies, automate incident triage, and improve threat intelligence
- Perform and analyze threat intelligence to assess risk and adapt defenses
- Manage email security using Proofpoint and respond to attacks
- Configure Splunk for log analysis, create alerts, and investigate security incidents
- Configure FirePower for network monitoring and analyze traffic patterns
- Deploy SentinelOne agents, monitor alerts, and conduct security assessments
- Monitor, review, and respond to alerts and incidents across Microsoft Defender for Cloud Apps, Defender for Endpoint, Defender XDR, Defender for Office 365, Azure Entra ID, and Google Cloud SCC
- Investigate suspicious activity, coordinate incident response, and implement remediation actions
- Tune security policies and maintain visibility into cloud and endpoint environments
- Stay current on cybersecurity trends, threat actors, and AI/ML research
- Identify and support automation use cases to enhance SOC capabilities
- Collaborate across Operations to provide SOC enhancement capabilities through automation and AI
Requirements
What you’ll need- BA or BS degree in Computer Science, Information Technology, or related field, or 4 additional years of related experience in lieu of degree
- One or more relevant certifications such as GCED, GSEC, CISSP, or SSCP desired
- 3+ years of IT security experience, including some exposure to AI/ML projects
- 2+ years of experience in network traffic analysis
- Strong working knowledge of Boolean Logic, TCP/IP fundamentals, network-level exploits, and threat management
- Knowledge of control frameworks and risk management techniques
- Strong understanding of IDS/IPS architectures and implementations
- Familiarity with IDS/IPS technologies, trends, vendors, processes, methodologies, signatures, content creation, and signature characteristics
- Familiarity with AI/ML techniques in cybersecurity
- Experience evaluating AI/ML solutions in a SOC environment is a plus
- Experience with cloud security across AWS, Azure, and GCP
- Experience with cybersecurity automation, including SOAR platforms
- Proficiency using machine learning frameworks to develop, train, and deploy cybersecurity models
- Proven data analysis and feature engineering skills
- Understanding and experience identifying and implementing automation use cases
- Excellent communication skills
- Must be able to obtain a Position of Public Trust Clearance
- Must be a US Citizen or have Permanent US Residence status (Green Card)
- Must have lived in the United States for the past 5 years
- Cannot have more than 6 months of travel outside the United States within the last 5 years, excluding military service
Benefits
Comp & perks- Contract-to-hire opportunity
- Hybrid work arrangement
- Night shift: Monday–Friday, 11:00 PM–7:30 AM
- Opportunity to support a US Government client
- Potential to obtain a Position of Public Trust Clearance