Threat Detection & Monitoring: Monitor network, endpoint, and cloud environments using Chronicle and Sentinel.
Incident Response: Lead investigations, containment, eradication, and recovery aligned with NIST principles.
Threat Intelligence: Correlate alerts with threat intelligence and MITRE ATT&CK to prioritize incidents.
Automation & AI: Use XSOAR, Google SOAR, Agentic AI, ChatGPT, Copilot, and Gemini to accelerate triage and analysis.
Forensics: Conduct endpoint and root-cause analysis using MDE and Sysinternals.
Collaboration & Leadership: Communicate actionable findings to stakeholders while mentoring analysts and strengthening SOC capabilities.
What you'll bring: - Extensive knowledge of intrusion detection and prevention within Security Operations Center environments.
- Proven expertise in cyber incident response, including detection, containment, and recovery of security incidents.
- Strong understanding of cyber risk assessment, management techniques, and mitigation strategies aligned with organizational policies.
- Proficiency with Security Information and Event Management (SIEM) tools and relevant data analytics techniques.
- Experience developing and implementing standard operating procedures for intrusion and incident management.
- Ability to analyze cybersecurity gaps and recommend improvements to risk assessment and vulnerability management.
- Skilled in collaborating with internal and external stakeholders to enhance intrusion management processes.
Bentonville, Arkansas US-10424: The annual salary range for this position is $90,000.00 - $180,000.00
Herndon, Virginia US-10710: The annual salary range for this position is $108,000.00 - $216,000.00
Additional compensation includes annual or quarterly performance bonuses.
Additional compensation for certain positions may also include :
- Stock