Die ganze Ausschreibung von Jobtailor
Darum lohnt es sich
• Monitor and analyze security alerts and events across SIEM, EDR, email, network, identity, and cloud security tools • Triage and investigate phishing, compromised accounts, malware, unauthorized access, and anomalous system or network activity • Support incident response through containment, evidence collection, timeline development, documentation, and coordination with affected teams • Analyze and correlate logs and security activity across systems, networks, endpoints, identity platforms, and cloud environments • Support vulnerability management through scanning, validation, findings analysis, remediation tracking, and IT coordination • Develop, tune, test, and maintain detection rules, alert logic, and security monitoring use cases • Support identity and access management security operations, including compromised identity response and MFA-related activities • Coordinate with MDR providers and external cybersecurity partners on investigations, escalations, and response • Maintain investigation records, incident tickets, operational documentation, and runbooks • Develop cybersecurity operations metrics and reports to identify trends and support program improvement • Participate in incident response exercises, tabletop scenarios, post-incident reviews, and cybersecurity improvement initiatives • Use artificial intelligence, automation, scripting, and other technologies to improve analysis, investigation, monitoring, reporting, documentation, and workflow efficiency • Identify opportunities to strengthen cybersecurity workflows, detection capabilities, documentation, and response processes • Collaborate with cybersecurity engineers, IT teams, external security partners, and campus stakeholders to protect Maine's public universities Requirements • Bachelor's degree in Cybersecurity, Computer Science, Information Systems, Information Technology, or a related field, or an equivalent combination of education and experience • Five years of experience in information technology, cybersecurity operations, information security, security analysis, or a related field • Demonstrated experience performing cybersecurity analysis using security monitoring, incident response, vulnerability management, endpoint security, identity security, or related technologies • Knowledge of cybersecurity operations practices, including security monitoring, alert triage, incident response, threat detection, and vulnerability management • Working knowledge of networking, operating systems, identity and access management, and cloud environments as they relate to cybersecurity analysis and investigation • Ability to analyze logs, alerts, security events, and system activity to identify threats, anomalous behavior, and unauthorized activity • Strong analytical, problem-solving, documentation, and communication skills • Ability to communicate cybersecurity information effectively to technical and nontechnical audiences and collaborate across teams • Candidates must live in and be authorized to work in the United States • U.S. work authorization must not require employer sponsorship now or in the future • Applicants requiring visa sponsorship or OPT extensions cannot be considered • Preferred: relevant cybersecurity certification, such as CompTIA Security+, CompTIA CySA+, SSCP, Microsoft SC-200, GIAC Security Essentials (GSEC), or comparable credential • Preferred: experience supporting incident response or security operations in a complex enterprise environment • Preferred: experience with scripting, automation, or orchestration for cybersecurity • Preferred: experience with an MDR provider, SOC, or external cybersecurity service provider • Preferred: experience in higher education, the public sector, or another complex multi-site environment • Preferred: experience using artificial intelligence or emerging technologies for cybersecurity operations Core Competencies Demonstrates expertise in cybersecurity operations, including incident response, vulnerability management, and security monitoring.
Proficient in analyzing security alerts and events across various platforms while effectively communicating findings to diverse audiences.
Highest-signal resume keywords • Cybersecurity Analysis • Incident Response • Vulnerability Management • Security Monitoring • Identity And Access Management ATS Optimization Keywords Hard Skills • Security Monitoring • Incident Response • Vulnerability Management • Endpoint Security • Threat Detection • Log Analysis • Alert Triage • Malware Investigation • Phishing Response • Cloud Security Soft Skills • Analytical Skills • Problem-Solving • Documentation • Communication • Collaboration Certifications & Qualifications • CompTIA Security+ • CompTIA CySA+ • SSCP • Microsoft SC-200 • GIAC Security Essentials (GSEC) Industry Keywords • Cybersecurity Operations • Information Security • Higher Education • Public Sector • Multi-Site Environment Tools & Technologies • SIEM • EDR • MFA • Automation • Scripting • Artificial Intelligence • Cybersecurity Metrics • Incident Tickets • Operational Documentation • Runbooks
Bereit?
Bewerbung wird direkt an Jobtailor übergeben — kein Konto nötig.