Endpoint Security – AV, Next Gen AV, EDR, Encryption, HIPS, Email Security (Dmarc), JAMF etc.
Cloud Security – AWS experience is preferred, including native security controls in AWS, cloud security controls available on marketplace.
Knowledge of all domains within security covering people, process and technology
Solid understanding of security concepts, security policies, risks, and corresponding mitigation strategies.
Ability to write bash, python scripts and automate ops tasks using security automation frameworks.
Ability to create and automate Incident response plans on Internal endpoints and Cloud Assets
Knowledge of IT Operations best techniques, including strategies, and technologies for monitoring, alerting, automation, and return-to-service strongly preferred.
SOC/SIEM/MDR/Security Orchestration and Automation
Good understanding of ITIL concepts Incident/Change/Problem and ticketing tools
Familiarity with MacOS system administration.
Familiarity with data warehousing systems especially Snowflake.
Experience with ISO27001 certification or SOC-2 audit is a plus.
Security certification (CSSLP, CISSP, GIAC, GSE for example) is a plus.