Faster chat, better deals — Get the App

Cybersecurity Specialist – Incident Response & Threat Detection

Indeed

Company

Job typeFull-time
Workplace typeOnsite
Experience levelNo experience limit
Education levelNo degree limit

Description

Summary: Seeking a Cybersecurity Specialist to lead incident response, refine detection, advise clients, and mentor analysts within a technical cybersecurity team. Highlights: 1. Lead security incident analysis and response 2. Develop and refine detection content for SOC 3. Mentor junior cybersecurity analysts **Job Description:** At DXC Technology, we help our clients stay ahead of evolving cyber threats. We are seeking a skilled **Cybersecurity Specialist** to join our technical cybersecurity team as a senior technical point of reference for security operations. You will lead the analysis and response to security incidents, build and refine the detection content that powers our SOC, advise clients on best practices, and mentor analysts to raise the overall quality of our work. **Key Responsibilities** * Analyze, triage, and respond to security incidents end to end phishing, malware, and SOC escalations through containment, eradication, and recovery. * Develop and maintain incident response **playbooks and runbooks**, keeping them current and actionable. * Create and refine **detection use cases** and perform **alert fine\-tuning** to reduce false positives and improve detection coverage. * Conduct **in\-depth investigations and forensic analysis** to determine root cause, scope, and impact. * Lead proactive **threat hunting** and detailed **phishing analysis** across client environments. * Produce **incident reports** when necessary, documenting findings, impact, and remediation actions for technical and client audiences. * **Review analysts' work** and **mentor** junior team members, acting as an escalation point for complex cases. * Use XDR and SIEM platforms to investigate, correlate, and mitigate threats. * Present technical findings to clients and collaborate with internal and client teams to improve security posture. * Support reporting and data analysis using Office 365 tools, especially Excel. **Required Qualifications** * Minimum of **4 years of experience** in cybersecurity services, ideally within a SOC or incident response function. * Hands\-on experience with **XDR and SIEM** technologies, and in\-depth knowledge of **Palo Alto's XSIAM, XSOAR and Defender**. * Demonstrated experience developing **playbooks, runbooks, detection use cases, and alert tuning**. * Strong **incident response, forensic, threat hunting, and phishing analysis** skills. * Proven ability to manage and resolve incidents reported by SOC teams. * Experience **reviewing analysts' work and mentoring** junior team members. * Excellent communication and presentation skills, with experience in client\-facing roles. **Certifications (Preferred)** * **CCD** — Certified Cyber Defender * **BTL2** — Security Blue Team Level 2 * **BTL1** — Security Blue Team Level 1 * **OSCP** — PEN\-200: Penetration Testing with Kali Linux * **Palo Alto Networks** certifications — Palo Alto Networks Certified XSIAM Engineer, Palo Alto Networks Certified XSIAM Analyst * **Microsoft SC\-200** — Security Operations Analyst **What do we offer?** * Continuous training in cutting\-edge technologies; * Integration into large, complex projects with the biggest players in the market; * Access to DXC Learning (with free access to Udemy and LinkedIn courses) as well as certifications; * Hybrid working model (3 days in the office) * Health insurance; At DXC Technology, we believe strong connections and community are key to our success. Our work model prioritizes in\-person collaboration while offering flexibility to support wellbeing, productivity, individual work styles, and life circumstances. We’re committed to fostering an inclusive environment where everyone can thrive. **Recruitment fraud is a scheme in which fictitious job opportunities are offered to job seekers typically through online services, such as false websites, or through unsolicited emails claiming to be from the company. These emails may request recipients to provide personal information or to make payments as part of their illegitimate recruiting process. DXC does not make offers of employment via social media networks and DXC never asks for any money or payments from applicants at any point in the recruitment process, nor ask a job seeker to purchase IT or other equipment on our behalf. More information on employment scams is available** here***.***

Posted by

João Santos

Indeed · HR

Location

João Santos

Indeed · HR

Similar jobs

Cybersecurity Specialist – Incident Response & Threat Detection job by Indeed in 2026 | ok.com