Overview In this role you will design, deliver, and measure hands-on cyber defense training within the Cyber Range to boost analyst skills and readiness. You will collaborate with GSOC, Threat Hunt, and Incident Response to align labs with real-world workflows and regulatory needs. The job combines training design, lab development, and range operations to mature cybersecurity capabilities bank-wide. You will drive impact by quantifying learning gains and refining curricula to support security posture and compliance.
Compensation / Benefits- Healthcare (medical, dental, vision)
- Life insurance
- Disability insurance
- Parental leave
- 401(k) retirement plan
- Paid vacation and holidays
Responsibilities- Design and publish structured Cyber Defense curricula with objectives, lab architecture, and assessment criteria
- Develop and maintain lab modules that mirror real detection, investigation, and response workflows
- Plan, administer, and refresh the CDT cohort program including lab provisioning and retrospectives
- Develop AI/LLM security training content and partner with teams for outreach events
- Maintain introductory penetration testing seminars and outreach training to broaden cyber capability
- Configure, operate, and document the Cyber Range infrastructure (on-premise)
- Support red/blue team exercises and system simulations
- Provide security domain expertise for risk assessments and regulatory/compliance considerations
- Ensure training records meet regulatory requirements and report on KPIs and outcomes
- Stay aware of evolving security technologies and industry practices
Key requirements- 8+ years of relevant experience
- Bachelor's degree or equivalent work experience
- Strong communication, presentation, leadership, problem-solving, and analytical skills
- Proven collaboration and influencing abilities
- Experience configuring networks, cloud environments, and Windows/Linux/macOS
- Ability to create custom queries, dashboards, and reporting metrics
- Scripting (Bash, Python, PowerShell)
- Experience with agile methodologies and APIs/CI-CD pipelines
- Infrastructure as code and automated provisioning workflows
- Git workflows and security architecture knowledge
- Training development and delivery for SOC/Incident Response audiences
- Familiarity with Microsoft Sentinel or similar SIEM/SOAR platforms
- Knowledge of AI/LLM security risks and translating concepts into hands-on exercises
- Strong communication and presentation
- Collaborative mindset
- Leadership and stakeholder management
- Networking device configuration
- Cloud and OS administration (Windows/Linux/macOS)
- Querying, dashboards, and reporting metrics