About this role
Senior cyber defense specialist responsible for incident handling, threat intelligence, and detection engineering to protect enterprise assets. Lead Level 2/3 responses and develop SIEM-based detections and indicators.
Key Responsibilities
- Lead Level 2/3 cyber security incident response: identification, containment, eradication, recovery
- Analyze and remediate malware and APTs
- Develop and deploy threat intelligence and countermeasures
- Create/dedicate SIEM signatures and custom scripts
- Forensic analysis and network traffic/log reviews
Technical Overview
Technical scope includes SIEM rule/tuning, malware analysis, APT detection, network traffic/log analysis, and incident response playbooks across Linux/Windows environments, with scripting in Python/PowerShell/Bash and Bro-IDS security tooling.
Ideal Candidate
The ideal candidate is a mid- to senior-level cyber defense expert with 5–8 years of hands-on incident response, threat hunting, and malware analysis experience. Must have strong SIEM skills and the ability to operate in a fast-paced CSOC environment, with proficiency in Python/PowerShell/Bash and cross-platform security tooling.
Must-Have Skills
Bachelor's Degree in Computer Science or a related 4-year technical degree5 to 8 years of experience in IT or cyber securityProficiency in SIEM toolsLinux and Windows OS experienceNetwork Security and ArchitectureLog and packet analysisScripting languages (PythonPowerShellBash)Knowledge of APT tacticscyber kill chainNIST/SANS controlsExperience with incident triagevulnerability managementand cyber huntingExcellent verbal and written communication skills
Nice-to-Have Skills
CISSPGIAC (GCIAGCIH)Security+Network+CCNACCNP
Tools & Platforms
SIEMBro-IDS (Zeek)Malware sandboxing
Required Skills
Bachelor's Degree in Computer Science or related 4-year degree; 5-8 years IT/cyber security; SIEM; Linux; Windows; Network Security; Log and packet analysis; Scripting (PythonPowerShellBash); APT tactics; cyber kill chain; NIST/SANS controls; BRO-IDS; malware sandboxing; endpoint protection; user behavior analytics; incident triage; vulnerability management; cyber hunting; forensic analysis; on-call
Hard Skills
SIEMMalware analysisAdvanced persistent threats (APTs)cyber kill chainNIST/SANS controlsBRO-IDSmalware sandboxingendpoint protectionuser behavior analyticsPythonPowerShellBashLinuxWindows OSvulnerability management
Soft Skills
Excellent verbal and written communicationAnalytical thinkingTeam collaborationTechnical report writing for laymanOn-call readiness
Certifications
Preferred
GIAC Certified Intrusion Analyst (GCIA)GIAC Certified Incident Handler (GCIH)CompTIA Security+CompTIA Network+
Keywords for Your Resume
Senior Cyber Defense Threat Specialistseniorcyber defensethreat intelligenceincident handlingincident responseSIEMmalware analysisAPTcyber kill chainNIST/SANS controlsBRO-IDSmalware sandboxingendpoint protectionuser behavior analyticsPythonPowerShellBashLinuxWindows OSvulnerability managementsenior cyber defense threat specialistsiemnist/sans controlsbro-ids
Deal Breakers
Bachelor's degree required, 5+ years of IT/cyber security experience, Must be able to work on-call, PCAOB/Audit experience not required but preferred
Get matched to jobs like this
Luna finds roles that fit your skills and career goals — no endless scrolling required.
Create a Free Profile