Key responsibilities
- Lead vulnerability management across systems networks and apps; drive remediation to closure.
- Operate/optimize SIEM IDS/IPS and EDR to detect and respond to threats in real time.
- Own incident response playbooks triage root-cause analysis and after-action reporting.
- Improve security architecture and hardening aligned to NIST/ISO; document standards.
- Automate detection reporting and compliance workflows (Python/PowerShell/Bash).
- Partner with infra networking and dev teams; communicate findings to technical & exec audiences.
- Track metrics; produce dashboards and risk reports; recommend continuous improvements.
Required qualifications
- 10 years combined IT & cybersecurity experience with 5 years in SecOps/IR/Vuln Mgmt.
- Expert with SIEM (e.g. Splunk/QRadar/Sentinel) EDR firewalls and network security protocols.
- Strong knowledge of NIST 800-53/171 ISO 27001 HIPAA CJIS or equivalent frameworks.
- Advanced scripting/automation (Python PowerShell or Bash).
- Excellent analytical writing and stakeholder communication; able to support after-hours incidents.
Preferred
- Certifications: CISSP CISM GIAC CEH Security.
- Government experience (state/federal) Azure AD/M365 security Fortinet/CrowdStrike familiarity.
- Mentoring/knowledge-transfer experience.
Key responsibilities Lead vulnerability management across systems networks and apps; drive remediation to closure. Operate/optimize SIEM IDS/IPS and EDR to detect and respond to threats in real time. Own incident response playbooks triage root-cause analysis and after-action reporting. Improv...
Key responsibilities
- Lead vulnerability management across systems networks and apps; drive remediation to closure.
- Operate/optimize SIEM IDS/IPS and EDR to detect and respond to threats in real time.
- Own incident response playbooks triage root-cause analysis and after-action reporting.
- Improve security architecture and hardening aligned to NIST/ISO; document standards.
- Automate detection reporting and compliance workflows (Python/PowerShell/Bash).
- Partner with infra networking and dev teams; communicate findings to technical & exec audiences.
- Track metrics; produce dashboards and risk reports; recommend continuous improvements.
Required qualifications
- 10 years combined IT & cybersecurity experience with 5 years in SecOps/IR/Vuln Mgmt.
- Expert with SIEM (e.g. Splunk/QRadar/Sentinel) EDR firewalls and network security protocols.
- Strong knowledge of NIST 800-53/171 ISO 27001 HIPAA CJIS or equivalent frameworks.
- Advanced scripting/automation (Python PowerShell or Bash).
- Excellent analytical writing and stakeholder communication; able to support after-hours incidents.
Preferred
- Certifications: CISSP CISM GIAC CEH Security.
- Government experience (state/federal) Azure AD/M365 security Fortinet/CrowdStrike familiarity.
- Mentoring/knowledge-transfer experience.
View more
View less