Perform advanced monitoring, analysis, and investigation of security alerts and incidents. Act as an escalation point for complex incidents and support L1/L2 analysts. Lead incident response activities including containment, eradication, recovery, and root cause analysis. Conduct threat hunting and fine-tune SIEM use cases.