Enhance our enterprise security operations through advanced monitoring, incident response, and vulnerability management. This role will leverage our security tech stack—Sumo Logic, Netskope, CrowdStrike, Proofpoint, Tenable, Palo Alto, and Tines—to proactively detect, investigate, and respond to threats.
You will work closely with cross-functional security teams (Red, Blue, and Purple) to defend against sophisticated adversaries, strengthen detection capabilities, and ensure compliance with industry regulations. Manage continuous monitoring of Sumo Logic SIEM for threat detection and investigation. Lead incident response activities, coordinating containment, eradication, and recovery. Conduct vulnerability assessments and manage remediation across cloud and on-prem environments, including OT systems. Execute threat hunting using custom queries, integrations, and advanced threat intelligence feeds.