FREE ACCESS
5,000–10,000 jobs/day
See all jobs on Scoutfield
Search thousands of fresh jobs every day.
Discover
- Fresh listings
- Fast filters
- No subscription required
Create a free account and start exploring right away.
Core Competencies
Role fitCore Competencies
Use this summary to align your resume positioning with the role.
Demonstrates expertise in incident response, threat detection, and security operations, with a strong focus on leading high-severity incidents and mentoring junior analysts. Proficient in developing detection content and applying frameworks like MITRE ATT&CK to enhance security posture.
Highest-signal resume keywords
Incident Response LeadershipThreat HuntingDetection Content DevelopmentForensics ExpertiseCommunication Skills
ATS Keywords
Tailor your resumeApplicant Tracking System Keywords
Tip: use these terms in your resume and cover letter to boost ATS matches.
Hard Skills
Incident ResponseThreat DetectionMalware AnalysisForensicsScripting in PythonKQLSPLSigmaYARAMITRE ATT&CK
Soft Skills
MentoringCollaborationCommunication
Tools & Technologies
SIEMEDR/XDRSOARDeepSeasGhidraIDA ProX64dbgVolatility
Certifications & Qualifications
GCIHGCFAGREMGNFAOSCPCISSP
Industry Keywords
Security OperationsIncident Response LifecycleNIST SP 800-61MDRMSSP
Tech Stack
Tools & technologiesCyber SecurityPython
About the role
Key responsibilities & impact- Lead and mentor L1 and L2 incident responders
- Coordinate with internal and external stakeholders during high-severity incidents
- Develop, refine, and test incident response playbooks and procedures
- Conduct advanced threat hunting
- Collaborate with threat intelligence and vulnerability management teams
- Provide guidance on root cause analysis and post-incident reviews
- Develop and tune detection rules
- Apply MITRE ATT&CK to categorize threat actor tactics, techniques, and procedures
- Drive continuous improvement within the SOC
- Generate leadership metrics and reports on incident response activities and trends
- Brief leadership on security incidents and trends
- Develop and maintain automation scripts for incident response
- Conduct in-depth malware analysis
- Correlate malware findings with threat actor campaigns
- Recommend detection and prevention improvements
- Lead digital forensics investigations, including memory forensics
- Oversee network forensics activities
- Serve as a subject matter expert for DeepSeas and client leadership
Requirements
What you’ll need- 5+ years of experience in security operations, incident response, or threat detection, including senior (L3) or investigation-lead experience; or equivalent combination of education and experience
- Experience leading high-severity incident response through containment, eradication, and recovery
- Proficiency with SIEM, EDR/XDR, and SOAR platforms
- Experience writing and tuning detection content, including KQL, SPL, Sigma, and YARA
- Working knowledge of MITRE ATT&CK and the incident response lifecycle, including NIST SP 800-61
- Experience with host, memory, and network forensics
- Experience with static and dynamic malware analysis
- Scripting proficiency in Python, PowerShell, or Bash
- Experience mentoring or leading junior analysts
- Strong written and verbal communication skills for technical, executive, and client audiences
- Must be a U.S. citizen currently residing within the United States
- Preferred: GCIH, GCFA, GREM, GNFA, OSCP, or CISSP
- Preferred: MDR or MSSP experience supporting multiple clients
- Preferred: reverse engineering and memory forensics tools such as Ghidra, IDA Pro, x64dbg, and Volatility
- Preferred: threat-hunting or detection engineering program experience
- Preferred: Bachelor's degree in Cybersecurity, Computer Science, or related field
Benefits
Comp & perks- Supportive crew of teammates and opportunities for growth
- Personal health and well-being prioritized
- Diversity-focused workplace
- Information security participation and awareness
- Random background/drug screens may be performed for data security
