complex or high-severity findings.Lead security incident response: qualification, forensics (including fraud investigations), fix coordination, post-mortem, and resolution tracking.Detection & SIEMOwn our SIEM platform (ElasticSearch, multi-node Linux): architecture, detection rules, and indicators of compromise.Build and evolve detection coverage, focusing on signal quality over manual toil.Build and maintain security … engineers or security practitioners.Excellent communication: you can explain a CVSS 9.8 to a PM and get them to prioritise it.Nice-to-haves:Experience with ElasticSearch/ELK stack in production.Familiarity with AWS, GCP, Snowflake, Datadog, Okta.Knowledge of security standards and frameworks (ISO 27001, OWASP, SOC 2, PCI-DSS).Experience ...