* Threat hunting / attribution
Familiarity with clustering incidents and pivoting between actors by attack signatures.
Or before that, do you even know what an APT is? (Probably only a small percentage of CS grads.)
* Malware re
* Post incident forensics
Random tools and skills that come up...
SQL keeps coming up even though I try to avoid it. There's generally an "SQL person" on the team that drives simple queries but having the basics down will be faster.
Visualization tools that help diagram clusters of incidents, though these might be declining in importance.
Beyond the network stack, understanding common network services, how people (criminals) register for domains and set up virtual services, techniques for c2.
You can play around with riskiq as a free user. You can read some reports from FireEye, Symantec, Crowdstrike, etc. for free to see how they do it. The MITRE attack framework collects a lot of it. Most CS students probably don't know those names though or where to start.
An understanding of criminal law and/or geopolitics doesn't hurt.