SOC Incident Commander at Altice USA | Bethpage, NY, US | Rezi

SOC Incident Commander at Altice USA

SOC Incident Commander

Altice USA · Bethpage, NY, US

3 days ago

SOC Incident Commander

Altice USA · Bethpage, NY, US

3 days ago
Resume preview

Impress employers and recruiters.
Choose from hundreds of resume examples.

Target Resume Now
Resume preview

Tailor your resume to this SOC Incident Commander role.

Rezi rewrites your resume against Altice USA's job description. Free.

Resume score gauge reading 58 out of 100

Don't guess if your resume is good enough.

See how it scores against the SOC Incident Commander posting at Altice USA — free, in seconds.

About the Role

As a Cyber Security Incident Commander, you will be responsible for safeguarding our organization's digital assets by promptly identifying, analyzing, and responding to cyber security incidents. You will play a critical role in minimizing the impact of security breaches and preventing future incidents through proactive measures and continuous improvement of our incident response processes.

Responsibilities

  • Serve as incident commander for mid-tier and major incidents, owning the full lifecycle and directing cross-functional workstreams.
  • Monitor alerts and logs; triage and prioritize incidents by severity, criticality, and business impact.
  • Execute incident response playbooks to contain, mitigate, and remediate breaches, then restore affected systems and close off unauthorized access.
  • Act as primary point of contact to executive leadership and the CISO, translating technical events into business-impact briefings.
  • Conduct host, network, memory, and cloud/hybrid forensics to determine root cause, scope, and extent of compromise.
  • Perform malware triage and static/dynamic analysis, including sandbox detonation.
  • Integrate threat intelligence and proactively hunt for adversary TTPs mapped to MITRE ATT&CK.
  • Leverage AI-enabled tooling to accelerate triage, enrichment, and investigation.
  • Own post-incident reviews and root cause analyses; capture lessons learned and drive remediation to closure.
  • Develop and mature incident-response playbooks, tabletop exercises, and readiness drills.
  • Organize and execute security exercises including Purple Team Exercises, penetration tests, and audits.
  • Define and report IR metrics (MTTD, MTTR) and major-incident tracking to leadership.
  • Prepare detailed incident reports covering timeline, impact, remediation, and lessons learned.
  • Coordinate with external parties including law enforcement, regulators, and third-party vendors.
  • Develop security policies, procedures, and best practices; perform risk assessments and audits for compliance with industry standards.
  • Evaluate and recommend security technologies, partnering with IT to design and implement solutions.
  • Lead and mentor junior analysts, fostering continuous learning.
  • Stay current on emerging threats, vulnerabilities, and industry trends.

Requirements

  • Minimum five years experience in Information Technology
  • Minimum three years of direct IT Security experience in Cyber Security operations and Incident Response
  • Experience performing event and log analysis including one or more of the following: Anti-Virus, Intrusion Detection Systems, Firewalls, Active Directory, Web Proxies, Data loss prevention tools and other security tools found in large enterprise network environments; along with experience working with Security
  • Ability to communicate complex information, concepts, or ideas in a confident and well-organized manner through verbal, written, and/or visual means
  • Solid working knowledge of networking technology and tools, firewalls, proxies, IDS/IPS, encryption, SIEM and EDR
  • Experience writing scripts, tools, or methodologies to enhance the investigative process
  • Working knowledge of the MITRE ATT&CK framework and the NIST incident response lifecycle (NIST SP 800-61).
  • Hands-on experience with industry-standard forensic toolsets and with cloud forensics across major cloud and productivity platforms.
  • Familiarity with AI tools and an AI First mindset.

Skills

  • Cyber Security
  • Incident Response
  • Forensics
  • Malware Analysis
  • Threat Intelligence
  • MITRE ATT&CK
  • NIST SP 800-61
  • AI Tools
  • Networking Technology
  • Firewalls
  • Proxies
  • IDS/IPS
  • Encryption
  • SIEM
  • EDR
  • Scripting

Location

  • United States

Work Type

  • Full-time

Experience Level

  • 5+ years in IT
  • 3+ years in Cyber Security Operations and Incident Response

Education Level

  • Bachelor’s degree in Computer Science or related field
  • CISSP or incident-response/forensics GIAC certifications (GCIH, GCFA, GCFE, GNFA) are preferred

Salary/Compensations

  • $83,538.00 - $137,241.00 / year

About the Company

  • Optimum is a leader in the fast-paced world of connectivity.
  • Our successes are powered by our amazing product, a commitment to our people and culture, and the connections we make in our communities.
  • Our three Guiding Principles: Do What’s Right, Drive One Optimum, and Make It Happen.
  • Employees are empowered to do the right thing for our customers and co-workers and to recognize and reward these behaviors.
  • We believe in 'Be The Difference' where each employee knows they have the power to enact real change, share new ideas, and understand that learning never stops.

Equal Opportunity

  • We are an Equal Opportunity Employer committed to recruiting, hiring and promoting qualified people of all backgrounds regardless of gender, race, color, creed, national origin, religion, age, marital status, pregnancy, physical or mental disability, sexual orientation, gender identity, military or veteran status, or any other basis protected by federal, state, or local law.