You'll work with visionaries across multiple industries to improve the hybrid cloud and AI journey for the most innovative and valuable companies in the world. Your ability to accelerate impact and make meaningful change for your clients is enabled by our strategic partner ecosystem and our robust technology platforms across the IBM portfolio; including Software and Red Hat.
Curiosity and a constant quest for knowledge serve as the foundation to success in IBM Consulting. In your role, you'll be encouraged to challenge the norm, investigate ideas outside of your role, and come up with creative solutions resulting in ground breaking impact for a wide network of clients. Our culture of evolution and empathy centers on long-term career growth and development opportunities in an environment that embraces your unique skills and experience.
- Analyze and respond to escalated security incidents using SIEM, EDR, and SOAR tools.
- Perform in-depth investigations of potential threats, malware, and vulnerabilities.
- Coordinate incident response efforts, including containment, eradication, and recovery.
- Create detailed incident reports and recommend threat mitigation strategies.
- Assist in the development and tuning of security alerts and detection mechanisms.
- Work closely with other security teams and clients to ensure effective threat management.
This job can be performed from anywhere in the US.
- Ability to obtain and maintain a Federal Security clearance with the US Government.
- Bachelor’s degree in Information Security, Computer Science, or related field (or equivalent experience).
- CompTIA Security+ and/or Certified Ethical Hacker (CEH) certification.
- Experience in SOC operations or cybersecurity.
- Hands-on experience with SIEM, EDR, and threat intelligence tools, with a particular focus on Splunk.
- Strong understanding of cybersecurity frameworks (e.g., NIST, CIS).
- Incident Response and threat analysis expertise.
- Experience with cloud security tools (e.g., AWS, Azure security services).
- Experience with FedRAMP compliance and government security operations.
- Knowledge of SOAR and automation in threat detection and response.
- Advanced security certifications such as CISSP or GIAC.
- Experience leveraging Splunk as a SIEM for a cloud-hosted environment.