Technical Writer supporting Cyber Security Operations Center, documenting processes and workflows for incident response. Collaborating with analysts and engineering teams to create actionable documentation.
Responsibilities
Document CSOC processes, procedures, and standard operating procedures.
Create and maintain incident response runbooks, playbooks, and workflow diagrams.
Partner with L1/L2 CSOC Analysts to capture alert-handling steps and escalation criteria.
Standardize documentation for SOAR/XSOAR playbooks and automated workflows.
Maintain updates to process documentation based on platform changes or lessons learned.
Ensure documentation aligns with SOC best practices, audit needs, and operational readiness.
Requirements
Experience as a technical writer in IT, cybersecurity, or security operations environments.
Proven ability to translate technical, analyst-driven workflows into clear documentation.
Familiarity with SOC/CSOC concepts (incident response, alert triage, escalation, playbooks).
Strong attention to detail and ability to organize complex information logically.
Experience maintaining documentation in shared repositories (e.g., Confluence, SharePoint).
Security Engineer enhancing cybersecurity tools and solutions for The Walt Disney Company. Performing system analyses and developing security configurations for improved protection against cyber threats.
Security Operations Lead responsible for security operations aligning with policies and compliance. Handling incident response, vulnerability management, and supporting IT teams with security expertise.
Cyber Security Specialist protecting digital estate from threats at the University of Edinburgh. Focused on identifying and mitigating cyber risks while supporting teaching and research services.
Lead Specialist in Security Operations, enhancing detection engineering and incident response at Pearson. Collaborate with teams and drive process improvements in a high - paced environment.
Cybersecurity Incident Response Analyst detecting and responding to cyber threats at NOV. Collaborating using AI tools to enhance cybersecurity operations across IT, cloud, and OT environments.
Security Engineer II at AvidXchange enhancing security operations and incident response. Collaborating with teams to develop, tune and improve security monitoring and automation capabilities.
Director leading security operations strategy and overseeing investigations at Ford Motor Company. Responsible for global investigations, crisis management, and team leadership.
Lead global Cyber Detect and Respond team at Assa Abloy, ensuring timely incident response and security compliance. Oversee operations while collaborating across IT and business functions for effective threat management.