Job Description
Key Role:
Operate within a converged Cyber Security Operations Centre (CSOC), conducting escalated triage and incident response across both information technology (IT) and operational technology (OT) environments. Handle complex security events requiring advanced analysis and decision-making, ensuring that threats are effectively contained and remediated within hybrid systems. Serve as a technical expert during critical incidents, collaborating with IT and OT teams to address interconnected risks and vulnerabilities. Mentor and support junior CSOC analysts by providing training, sharing expertise, and reviewing their work to enhance team capabilities and performance. Contribute to developing and refining detection and response playbooks tailored to the unique requirements of IT and OT environments. Continuously monitor and analyze emerging threats to strengthen the CSOC’s detection and response strategies, leveraging frameworks such as MITRE ATT&CK. Maintain detailed documentation of incidents and remediation efforts to support compliance and post-incident reviews, ensuring alignment with IT and OT regulatory standards.
Basic Qualifications:
5+ years of experience in a SOC or cybersecurity role focusing on incident triage and response in IT and OT environments
Experience handling escalated security incidents and advanced threat analysis across hybrid IT and OT systems
Experience mentoring and training junior team members to enhance CSOC capabilities
Experience with security tools and technologies, including SIEM platforms, EDR solutions, network forensics tools, and IT- and OT-specific systems
Knowledge of CSOC workflows, detection methodologies, and response strategies tailored to IT and OT
Bachelor’s degree in a technical field, such as Cybersecurity or Computer Science
Additional Qualifications:
Experience with frameworks such as MITRE ATT&CK and their application in IT and OT incident response
Experience with IT and OT regulatory standards and compliance requirements related to incident management
Cybersecurity Certification, such as GCIA, GCIH, GSOC, or CISSP
EEO Commitment
We’re an equal employment opportunity/affirmative action employer that empowers our people to fearlessly drive change – no matter their race, color, ethnicity, religion, sex (including pregnancy, childbirth, lactation, or related medical conditions), national origin, ancestry, age, marital status, sexual orientation, gender identity and expression, disability, veteran status, military or uniformed service member status, genetic information, or any other status protected by applicable federal, state, local, or international law.