FREE ACCESS
5,000–10,000 jobs/day
See all jobs on Scoutfield
Search thousands of fresh jobs every day.
Discover
- Fresh listings
- Fast filters
- No subscription required
Create a free account and start exploring right away.
Core Competencies
Role fitCore Competencies
Use this summary to align your resume positioning with the role.
Demonstrates advanced proficiency in Incident Response within Cloud Environments, particularly AWS, and possesses strong analytical skills for threat detection and incident analysis. Capable of developing and maintaining incident response playbooks and collaborating with cross-functional teams to enhance security posture.
Highest-signal resume keywords
Incident ResponseThreat HuntingCloud SecuritySIEM ProficiencyEDR Experience
ATS Keywords
Tailor your resumeApplicant Tracking System Keywords
Tip: use these terms in your resume and cover letter to boost ATS matches.
Hard Skills
Incident Response MethodologiesThreat Intelligence AnalysisCloud Security SystemsKubernetes SecurityData AnalyticsAutomationOrchestrationRoot Cause AnalysisSecurity Alert TriageVulnerability Assessment
Soft Skills
Problem-SolvingCommunicationTeam CollaborationMentorship
Tools & Technologies
SIEMEDRCloud Security PlatformsAWSAzureGCPMacOSWindowsLinuxSOAR Workflows
Certifications & Qualifications
GIAC (GCFA/GCIH/GCFR/GCLD)AWS Certified Security - SpecialtyGoogle Professional Cloud Security EngineerMicrosoft SC-200CompTIA CASPCompTIA CySA+
Industry Keywords
CybersecurityInformation SecurityIncident ResponseThreat IntelligenceDigital Forensics
Tech Stack
Tools & technologiesAWSAzureCloudCyber SecurityGoogle Cloud PlatformKubernetesLinuxMacOS
About the role
Key responsibilities & impact- Proactively monitor and respond to security alerts and events from SIEM, Cloud Security Platforms, EDR, and other technologies
- Perform detection engineering by tuning existing alerts and developing new high-fidelity alerts based on trends, threat intelligence, and past investigations
- Conduct in-depth security incident analysis to determine root cause and impact, and recommend mitigation strategies
- Partner with Enterprise Security, Cloud Security, Product Security, and other internal teams on end-to-end incident response and cross-functional security improvement projects
- Develop and maintain incident response playbooks, processes, standards, procedures, and SOAR workflows
- Participate in threat hunting activities to identify advanced threats and vulnerabilities
- Identify, document, and research threat intelligence findings and reports
- Lead projects and strategic initiatives to improve company-wide security posture and resilience
- Provide mentorship and guidance to junior analysts and engineers
- Assist in evaluating and implementing security tools and technologies
- Stay current with emerging threats, vulnerabilities, and industry best practices
- Pursue forward-thinking and unique solutions to security challenges
- Work within a 24/7 operational capability and adapt to changing shift schedules
Requirements
What you’ll need- Relevant Educational Degree (Information Security / Information Assurance / Cybersecurity) or Equivalent Cybersecurity Work Experience (3-5 Years)
- Three or more years of technical experience in providing Large Enterprise Incident Response, Threat Hunting, or Cloud Security
- Proficiency with security technologies, including SIEM, EDR, and Cloud Security systems
- Strong understanding of cyber threats, attack techniques, and incident response methodologies
- Ability to independently analyze and respond to alerts and security incidents, including triage, root cause analysis, and response coordination
- Advanced proficiency in Incident Response within Cloud Environments, with a strong focus on AWS; Azure and GCP are a plus
- Deep experience securing and responding to incidents within Kubernetes environments
- Proficiency in analyzing and responding to threats across macOS, Windows, and Linux-based systems
- Excellent problem-solving and communication skills
- Ability to work effectively independently and as part of a team
- Supporting certifications such as GIAC (GCFA/GCIH/GCFR/GCLD), AWS Certified Security - Specialty, Google Professional Cloud Security Engineer, Microsoft SC-200, or CompTIA CASP/CySA+ are an additional qualification
- Experience in Automation and/or Orchestration
- Experience with Data Analytics leveraging Machine and/or Deep Learning
- Knowledge of Threat Intelligence Methodologies
- Cloud/Endpoint Digital Forensics Experience
- Ability to work shifts including days, nights, on-call, weekends, and holidays, with possible extended hours during high-priority incidents
Benefits
Comp & perks- Generous PTO Policy
- Unplugged Days supporting work-life balance
- Flexible WFH Policy
- Mental & Physical Wellness programs
- Phone and Internet Reimbursement program
- Access to Continued Career Development
- Comprehensive Benefits and Competitive Packages
- Paid Volunteer Time
- Employee Resource Groups
