Basic 8+ years of hands-on experience in cybersecurity, with a focus on Security Operations (SOC) and/or Incident Response Solid understanding of cybersecurity principles, incident response lifecycles, and security best practices Experience with SIEM tools (e.g., Splunk, QRadar, Sentinel) for alert analysis and log correlation Familiarity with EDR solutions and their role in incident investigation Strong familiarity with digital forensics principles and techniques and enterprise forensic solutions Knowledge of scripting languages (e.g., Python, PowerShell, Bash) for automation and data analysis Deep understanding of the MITRE ATT&CK framework and cyber kill chain Understanding of AI-driven security threats, including adversarial attacks and model evasion, and the ability to leverage AI/ML tools to enhance incident response and threat hunting Familiarity with AI-specific threat intelligence and incident response playbooks for securing AI/ML production environments Preferred Bachelor’s or Master’s degree in Computer Science, Information Security, or a related field Advanced industry certifications such as GCFA, GCED, GCIH, GCIA, CISSP, or CISM Experience designing or maturing enterprise IR and DFIR programs Hands-on experience with SOAR platforms and large-scale automation initiatives Strong cloud security background, including IAM, container security, and SaaS platforms Experience working with legal, privacy, and compliance teams on breach notification and regulatory response Exceptional communication skills with experience presenting to executive leadership Demonstrated ability to mentor junior security staff and influence across teams Experience with AI security frameworks such as MITRE ATLAS or OWASP Top 10 for LLMs Strong analytical and problem-solving skills, with a keen eye for detail Excellent communication skills, both written and verbal, with the ability to explain technical concepts clearly Ability to work effectively as part of a team and independently under pressure