Security Operations Center (SOC) Tier 3 Analyst / Incident Responder
Baltimore, Maryland, United States
OnsiteFull Time
OneMain FinancialNYSE: OMF: Provides personal loans and credit cards to nonprime consumers.
8+ YOE8+ years cybersecurity experience with 6+ years SOC experience; bachelor\u0002s degree or equivalent; 2+ DFIR/forensics years; requires multiple certifications (e.g., GCFA, GCIH, CISSP); deep expertise in enterprise incident response, detection engineering, and threat hunting.
Elastic Security, KQL, ES|QL/EQL, SQL, PowerShell, Python, Bash, CrowdStrike Falcon, Microsoft Defender XDR, Defender for Endpoint, Defender for Identity, Defender for Office 365, Defender for Cloud, Defender for Cloud Apps, Elastic, EDR/XDR, NDR, SIEM, SOAR, IDS/IPS, WAF, firewalls, VPN, DNS, DHCP, proxy, CASB, DLP, IAM, PAM, Kubernetes, Azure, AWS, Microsoft 365, Microsoft Entra ID, VMware, Hyper-V
State of Maryland: Provides public governance and services for Maryland residents.
7+ YOESeven years IT experience including 3 years designing/developing/implementing applications; supervisory experience; program management of IT projects; knowledge of health exchange systems, cloud, security, vendor management, and AI governance.
AI, DevSecOps, CI/CD, low-code/no-code, AWS Solutions Architect, Azure Administrator, GCP, ITIL Foundation, PMP, Scrum Master (CSM/PSM), Federal Data Services Hub (FDSH), Medicaid Enterprise Systems (MES), MMIS, 834/820 EDI