Cloud Incident Response Training- Contract Instructors Job at Cybervance, Kensington, MD

TlRKUWNQbnlnWDFUNUFPa0kvTVlHeTJ4cGc9PQ==
  • Cybervance
  • Kensington, MD

Job Description

Cloud Instructors for Cloud Incident Response Training (1099) Location: Kensington, MD Remote | 1099 Contract Position Duration: Project based (Course specific engagements)

General Description

We are looking for experienced instructors to deliver a series of virtual Cloud Incident Response (IR) courses designed for SOC analysts, incident responders, and security professionals transitioning to or specializing in cloud security. These courses span foundational, intermediate, and advanced levels, with a focus on Microsoft Azure tools, methodologies, and practical applications for incident response and forensics.

Responsibilities

  As a contract instructor, you will:

• Deliver live virtual training that explores the differences between cloud and on-premises incident response, ensuring participants understand the Shared Responsibility Model and its implications for security investigations.

• Teach participants to analyze Azure core functions, including virtual machines (VMs), storage, networking, and Identity Access Management (IAM), and guide them in navigating Azure logging sources and log types.

• Provide hands-on instruction on configuring and utilizing tools like PowerShell modules, Microsoft Defender Suite, and Microsoft Sentinel for security orchestration, automation, and response (SOAR).

• Help students investigate and mitigate threats by teaching detection of common Azure attack patterns (e.g., password spraying, lateral movement, data exfiltration) and conducting threat hunting using Kusto Query Language (KQL).

• Guide advanced students in performing in-depth virtual machine forensics in Azure, including introductory memory analysis, while addressing challenges in forensic analysis of serverless functions and containers.

• Support proactive defense strategies by teaching Azure-specific playbook creation, threat modeling, and leveraging cloud-native tools for artifact collection, automation, and advanced detection.

• Facilitate labs and exercises that allow participants to apply new skills in realistic scenarios, such as configuring Microsoft Sentinel, integrating threat intelligence, and mapping security controls to frameworks like MITRE ATT&CK®.

• Create an engaging and interactive learning environment, answering participant questions and ensuring key objectives are met.

Qualifications

Required:

• Proven expertise in cloud incident response, with a focus on Microsoft Azure security tools and frameworks.

• Prior experience teaching technical content to security professionals, preferably in virtual environments.

• In-depth understanding of Azure architecture, logging sources, PowerShell, Microsoft Defender Suite, Sentinel, and SOAR.

• Knowledge of threat hunting, advanced log analysis, and cloud-specific attack patterns.

Preferred:

• Relevant certifications (e.g., Azure Security Engineer, Azure Administrator, CISSP, GCFA, GCIH).

• Familiarity with conducting forensic analysis of virtual machines, containers, and serverless functions in Azure.

• Experience designing and delivering incident response playbooks and cloud automation workflows

Required:

• Proven expertise in cloud incident response, with a focus on Microsoft Azure security tools and frameworks.

• Prior experience teaching technical content to security professionals, preferably in virtual environments.

• In-depth understanding of Azure architecture, logging sources, PowerShell, Microsoft Defender Suite, Sentinel, and SOAR.

• Knowledge of threat hunting, advanced log analysis, and cloud-specific attack patterns.

Preferred:

• Relevant certifications (e.g., Azure Security Engineer, Azure Administrator, CISSP, GCFA, GCIH).

• Familiarity with conducting forensic analysis of virtual machines, containers, and serverless functions in Azure.

• Experience designing and delivering incident response playbooks and cloud automation workflows

Cybervance is an equal opportunity employer. All qualified applicants are considered for employment without regard to race, color, age, religion, sex, sexual orientation, gender identity, national origin, disability, protected veteran status, or any other category protected by applicable federal, state, or local laws.

Job Tags

Remote job, Contract work, Local area,

Similar Jobs

Evolved Marketing

Verizon Sales and Customer Service Positions Job at Evolved Marketing

 ...several years of experience in leadership development, innovative entrepreneurial ventures, and client management. On our Verizon Sales and Customer Service team, youll be an important part of shaping our customer experience from setting up new accounts to answering... 

Tutor Me Education

Reading Specialist Job at Tutor Me Education

At Tutor Me Education, we are revolutionizing the way students learn, and we're seeking passionate teachers and tutors with special education experience to provide 1:1 in-home tutoring in San Anselmo, CA ! If you're committed to making a difference in the lives of...

Department of Developmental Services - Headquarters

Talent Management & Organizational Development Manager Job at Department of Developmental Services - Headquarters

 ...responsible for the oversight and implementation of the Workforce Development and Succession Planning program, Compliance Unit, and...  ...Departments mission, programs, goals, policies, practices, and organizational culture. Ability to : Develop and maintain... 

Cold Symmetry

Remote Environment Artist Job at Cold Symmetry

 ...soul into crafting games they love and want to play. As a fully remote studio, we welcome candidates from around the globe who are...  ...aiming to create something incredible. As a Senior Environment Artist, you will play a critical role in defining the look and feel of... 

North Dakota Court System

Court Reporter - Bismarck, ND Job at North Dakota Court System

The Court Reporter is responsible for making a verbatim record of district and juvenile court trials, proceedings, and other matters using computer-aided transcription, shorthand, and/or audio recording equipment, writing court logs, noting appearances and essential events...