Cloud Incident Response Training- Contract Instructors

Reposted 4 Days Ago
Be an Early Applicant
Kensington, MD
In-Office
Expert/Leader
Security • Cybersecurity
The Role
Instructors will deliver Cloud Incident Response training focusing on Microsoft Azure, covering incident response, forensics, and automation for SOC analysts and security professionals.
Summary Generated by Built In

Cloud Instructors for Cloud Incident Response Training (1099)Location: Kensington, MD Remote | 1099 Contract PositionDuration: Project based (Course specific engagements)

General Description

We are looking for experienced instructors to deliver a series of virtual Cloud Incident Response (IR) courses designed for SOC analysts, incident responders, and security professionals transitioning to or specializing in cloud security. These courses span foundational, intermediate, and advanced levels, with a focus on Microsoft Azure tools, methodologies, and practical applications for incident response and forensics.

Responsibilities

 As a contract instructor, you will:

• Deliver live virtual training that explores the differences between cloud and on-premises incident response, ensuring participants understand the Shared Responsibility Model and its implications for security investigations.

• Teach participants to analyze Azure core functions, including virtual machines (VMs), storage, networking, and Identity Access Management (IAM), and guide them in navigating Azure logging sources and log types.

• Provide hands-on instruction on configuring and utilizing tools like PowerShell modules, Microsoft Defender Suite, and Microsoft Sentinel for security orchestration, automation, and response (SOAR).

• Help students investigate and mitigate threats by teaching detection of common Azure attack patterns (e.g., password spraying, lateral movement, data exfiltration) and conducting threat hunting using Kusto Query Language (KQL).

• Guide advanced students in performing in-depth virtual machine forensics in Azure, including introductory memory analysis, while addressing challenges in forensic analysis of serverless functions and containers.

• Support proactive defense strategies by teaching Azure-specific playbook creation, threat modeling, and leveraging cloud-native tools for artifact collection, automation, and advanced detection.

• Facilitate labs and exercises that allow participants to apply new skills in realistic scenarios, such as configuring Microsoft Sentinel, integrating threat intelligence, and mapping security controls to frameworks like MITRE ATT&CK®.

• Create an engaging and interactive learning environment, answering participant questions and ensuring key objectives are met.

Qualifications

Required:

• Proven expertise in cloud incident response, with a focus on Microsoft Azure security tools and frameworks.

• Prior experience teaching technical content to security professionals, preferably in virtual environments.

• In-depth understanding of Azure architecture, logging sources, PowerShell, Microsoft Defender Suite, Sentinel, and SOAR.

• Knowledge of threat hunting, advanced log analysis, and cloud-specific attack patterns.

Preferred:

• Relevant certifications (e.g., Azure Security Engineer, Azure Administrator, CISSP, GCFA, GCIH).

• Familiarity with conducting forensic analysis of virtual machines, containers, and serverless functions in Azure.

• Experience designing and delivering incident response playbooks and cloud automation workflows

Required:

• Proven expertise in cloud incident response, with a focus on Microsoft Azure security tools and frameworks.

• Prior experience teaching technical content to security professionals, preferably in virtual environments.

• In-depth understanding of Azure architecture, logging sources, PowerShell, Microsoft Defender Suite, Sentinel, and SOAR.

• Knowledge of threat hunting, advanced log analysis, and cloud-specific attack patterns.

Preferred:

• Relevant certifications (e.g., Azure Security Engineer, Azure Administrator, CISSP, GCFA, GCIH).

• Familiarity with conducting forensic analysis of virtual machines, containers, and serverless functions in Azure.

• Experience designing and delivering incident response playbooks and cloud automation workflows

Cybervance is an equal opportunity employer. All qualified applicants are considered for employment without regard to race, color, age, religion, sex, sexual orientation, gender identity, national origin, disability, protected veteran status, or any other category protected by applicable federal, state, or local laws.

Top Skills

Kusto Query Language (Kql)
Azure
Microsoft Defender Suite
Microsoft Sentinel
Powershell
Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
Kensington, , Maryland
29 Employees
Year Founded: 2019

What We Do

Cybervance has a long history of supporting USG agencies in areas related to international capacity building programs. From foreign assistance capacity building to collaboration with partner nations, Cybervance services are comprehensive and turnkey. We provide initial assessments and planning, training across multiple cyber disciplines, equipment installations, operational support and mentoring. All of Cybervance’s services are supported by insightful reporting for program stakeholders needing to stay informed about key issues in plain English, not cyber-speak. Our logistics function handles everything needed for program success, including all equipment procurements, shipping, customs and duties processing, travel, and in-country event support.
Our services are tailored for international delivery. Our team is adept at making in-country, real-time adjustments to address regional and situational dynamics. We understand that cyber programming is part of a larger diplomatic mission, and we focus on achieving tangible programming results.
With an extensive background in law enforcement, our team brings specialized service delivery to cyber-related programs with a criminal or counterterrorism nexus.

Similar Jobs

ZS Logo ZS

Consultant

Artificial Intelligence • Healthtech • Professional Services • Analytics • Consulting
Hybrid
12 Locations

CrowdStrike Logo CrowdStrike

Senior Data Engineer

Cloud • Computer Vision • Information Technology • Sales • Security • Cybersecurity
Remote or Hybrid
37 Locations
145K-220K Annually
Hybrid
5 Locations
26-34
Hybrid
5 Locations
26-34

Similar Companies Hiring

Silverfort Thumbnail
Security • Sales • Information Technology • Cybersecurity • Automation
GB
507 Employees
Oso Thumbnail
Software • Security • Infrastructure as a Service (IaaS)
New York, New York
36 Employees
Credal.ai Thumbnail
Software • Security • Productivity • Machine Learning • Artificial Intelligence
Brooklyn, NY

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account