Bachelor’s degree in Cybersecurity, Information Technology, or a related field, or equivalent work experience
Minimum of 4 years of experience in a Security Operations Center (SOC) or cybersecurity operations role
Experience with security monitoring tools, SIEM platforms, and incident response processes
Strong understanding of alert triage, escalation procedures, and incident handling workflows
Experience analyzing logs, alerts, and telemetry from identity, endpoint, and network systems
Ability to work in a 24x7 operational environment, including shift-based coverage
Must hold at least one of the following certifications or equivalent: GCIA, GCIH, CISSP, CEH, or similar cybersecurity certification
Experience with Microsoft Sentinel or Microsoft security platforms
Relevant cloud security certifications (e.g., AWS security)
Familiarity with log ingestion pipelines and monitoring data health
Privacy certifications such as CIPP/US or CIPM
Experience supporting federal or regulated environments
Due to the nature of the work we support, all candidates in consideration for this role must be willing to undergo the government issued background investigation process. We highly encourage all Veterans and those with disabilities to apply