1. 4-10 years of Information Security experience with at least 5 years of experience in Incident Management, Incident Response, Security Operations.
2. Experience managing security incidents within enterprise SOC environments.
3. Experience working with cross-functional technical and business teams during incident response activities.
Technical Knowledge
1. Good understanding of Incident Management and Incident Response lifecycles.
3. Understanding of MITRE ATT&CK; Framework, Cyber Kill Chain, and NIST Incident Response Framework.
4. Familiarity with Microsoft 365, Azure, and cloud security concepts.
5. Understanding of threat intelligence and threat hunting fundamentals.
6. Ability to review security alerts, indicators of compromise (IOCs), and investigation findings to assist response coordination.
Communication & Reporting
1. Strong client-facing communication skills.
2.
Ability to communicate effectively with technical and non-technical stakeholders.
3. Experience preparing incident reports, management summaries, and RCA documentation.
4. Strong verbal and written communication skills.
Key Competencies
1. Incident Lifecycle Management
2. Major Incident Coordination
3. Severity Classification & Escalation
4. Stakeholder Communication
5. Sentinel / XSOAR / EDR Operations
6. SLA & KPI Management
7. Reporting & RCA
8. Threat Intelligence Integration
9. Process & Playbook Improvement
Abilities:
1. Strong English verbal, written communication, report writing and presentations skills.
2. Ability to multitask and prioritize work effectively.
3. Responsive to challenging tasking.
4. Highly motivated self-starter giving attention to detail.
5. Robust analytical skills and efficient problem solving.
6. Capable to operate in a challenging and fast-paced envir