Cyber Incident Response Engineer-Onsite
Role details
Job location
Tech stack
Requirements
- Demonstrated skills in security architecture, IT Security, networking, or systems administration with an emphasis on security.
- Proven knowledge of security architecture design, network security, vulnerability management, and threat intelligence/analysis.
- Knowledge of common information security management frameworks, such as NIST, CIS, ISO 27001, COBIT, or PCI DSS.
- -Strong understanding of encryption. -Strong understanding of networking concepts and protocols (e.g. TCP/IP, LAN, WAN, DHCP, DNS, Routing Protocols, etc.)
- Expert level knowledge of security systems such as SIEM (Microsoft Sentinel), IPS, Firewalls, and related network security tools.
- -Operating Systems: Windows, Unix, Mac -Databases: SQL, Azure, Oracle. -Must have hands on experience using Model Context Protocol (MCP) to enable AI agents and large language models to interact with external tools, APIs, and enterprise data.
Experience required:-
2 years of experience with Microsoft Azure (IaaS, PaaS, IaaS), Microsoft Sentinel, CrowdStrike, Tenable, Palo Alto Firewall Zscaler KQL
1+ years of experience developing AI-enabled solutions using modern LLM tools (e.g., Codex, Claude, or similar) to support GRC and Incident Response processes.
3+ years of experience within each of the following: - Incident response - managing the security of multiple platforms, operating system, software and network protocols for a large IT organization - risk management, auditing, assessment, industry security framework, and/or internal controls - security, operations, control assessment, risk management, auditing, and/or internal controls - with security and privacy legal and regulatory requirements - performing information security risk assessments and risk analysis
Education required:-
This classification requires the possession of a bachelor's degree in an IT-related or Engineering field. Additional qualifying experience may be substituted for the required education on a year-for-year basis.
ITIL Foundation certification and CISSP (Certified Information Systems Security Professional)