FREE ACCESS
5,000–10,000 jobs/day
See all jobs on Scoutfield
Search thousands of fresh jobs every day.
Discover
- Fresh listings
- Fast filters
- No subscription required
Create a free account and start exploring right away.
Core Competencies
Role fitCore Competencies
Use this summary to align your resume positioning with the role.
Demonstrates expertise in advanced investigations, threat hunting, and incident response using tools like CrowdStrike Falcon and Microsoft Sentinel. Proficient in developing detection rules and automation scripts while ensuring compliance with security frameworks and standards.
Highest-signal resume keywords
KQL (Kusto Query Language)SPL (Search Processing Language)CrowdStrike FalconMicrosoft SentinelThreat Intelligence
ATS Keywords
Tailor your resumeApplicant Tracking System Keywords
Tip: use these terms in your resume and cover letter to boost ATS matches.
Hard Skills
Malware AnalysisDigital ForensicsIncident ResponseDetection Rule DevelopmentThreat HuntingSecurity AutomationOffensive SimulationsCloud SecurityAdvanced QueryingSecurity Framework Mapping
Soft Skills
Technical CommunicationCollaboration
Tools & Technologies
Microsoft SentinelSplunkKali LinuxSOAR PlatformsAzureAWS
Certifications & Qualifications
GCIAGCFAGCIHOSCPAZ-500SC-200SC-300
Industry Keywords
MITRE ATT&CKSTIXTAXIISIEMIAM
Tech Stack
Tools & technologiesAWSAzureCloudLinuxPythonSplunk
About the role
Key responsibilities & impact- Conduct advanced investigations using CrowdStrike Falcon, including malware analysis, digital forensics, and TTP validation
- Correlate, investigate, and contextualize security events in Microsoft Sentinel, Splunk, and traditional SIEMs such as QRadar, ArcSight, Securonix, and Elastic
- Develop and maintain advanced detection rules using KQL, SPL, and native SIEM capabilities
- Plan and execute threat hunting activities based on MITRE ATT&CK, threat intelligence, STIX/TAXII, and advanced queries
- Create, maintain, and enhance advanced playbooks on SOAR platforms using Python, PowerShell, and Bash
- Reproduce attacks and validate detections through offensive simulations with Kali Linux
- Investigate security incidents in Azure and AWS environments, including IAM, APIs, containers, and cloud-native workloads
- Map detections to security frameworks and contextualize adversaries through Threat Intelligence
- Support global organizations on complex secure digital transformation projects
Requirements
What you’ll need- Strong command of KQL (Kusto Query Language) and SPL (Search Processing Language)
- Solid experience with Microsoft Sentinel, Splunk, and traditional SIEMs
- Proficiency in CrowdStrike Falcon and advanced Incident Response practices
- Experience with SOAR platforms such as Cortex XSOAR, Phantom, and FortiSOAR, as well as security automation
- Practical knowledge of Python, PowerShell, and Bash
- Experience with Kali Linux and offensive techniques for detection validation
- Advanced experience in Threat Intelligence and STIX/TAXII standards
- Experience with Azure and AWS environments
- Advanced English proficiency for technical communication with clients and global teams
- Previous experience serving as a technical reference in a SOC
- Documented contributions to automation, detection rules, or security frameworks
- Certifications: GCIA, GCFA, GCIH, OSCP, AZ-500, SC-200, SC-300
Benefits
Comp & perks- Meal or food allowance
- Multi-benefit card up to Senior Consultant level
- Medical and dental insurance
- Certifications and training
- Life insurance
- Private pension plan
- Avababy: pregnancy support and a welcome kit for new Avanade parents
- Company profit-sharing plan
- Wellhub
- Childcare assistance
- Career Advisor – career mentoring
- Birthday Off policy for your birthday and your children’s birthdays up to age 12
- Well-being sessions
- For managerial roles and above: company vehicle, parking, and fuel allowance
