✨ About The Role
- Actively monitor security alerts and events using SIEM tools to identify potential security incidents and threats
- Analyze security event data to identify anomalous behavior or patterns
- Conduct proactive threat hunting activities to identify emerging threats and trends
- Coordinate Incident Response activities and act as a primary Incident Response commander during events
- Document security events and incidents by providing detailed analyses of actions taken and recommended areas for improvements
⚡ Requirements
- Experience in security tooling analysis with different SIEMs and SOAR
- Strong understanding of DoD network security, network protocols, and traffic analysis
- Hands-on experience in monitoring and responding to security incidents within cloud environments
- Ability to review logs, identify trends, and query relevant information
- Experience in creating and implementing incident response plans