6+ YOE6+ years DFIR/incident response experience, 3+ years securing/investigating AWS/Azure/GCP, experience with cloud telemetry and forensic tools, strong client communication and consulting skills.
AWS, Azure, GCP, AWS CloudTrail, Azure Activity Logs, Microsoft Entra ID, Google Cloud Audit Logs, AWS Security Hub, GuardDuty, Microsoft Defender, Microsoft Sentinel, Google Security Command Center, Kubernetes, MITRE ATT&CK
6+ YOERequires 6–8+ years in DFIR, incident response, cloud security, or cybersecurity; 3+ years with AWS, Azure, or GCP; cloud investigations; DFIR tools; client consulting; and cloud architecture expertise.
AWS, Azure, GCP, AWS CloudTrail, Azure Activity Logs, Microsoft Entra ID, Google Cloud Audit Logs, AWS Security Hub, GuardDuty, Microsoft Defender, Sentinel, Google Security Command Center, Kubernetes, MITRE ATT&CK