2 дня назад
Senior Security Operations Engineer (Cybersecurity)
136 000 - 155 000$
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
Текст:
TL;DR
Senior Security Operations Engineer (Cybersecurity): Maturing a Google SecOps and SentinelOne SOC across federal and commercial environments with an accent on log ingestion, detection engineering, SOAR automation, and incident response. Focus on building MITRE ATT&CK detections, expanding AWS and Azure coverage, optimizing MTTA/MTTR, and operationalizing vulnerability management for FedRAMP High readiness.
Location: Remote, United States. US Person status is required under ITAR/EAR regulations; the ability to obtain and maintain a security clearance is preferred.
Salary: $136,000–$155,000 base annually, plus equity and performance bonus eligibility, depending on experience and location.
Company
is a cybersecurity company providing zero trust secure remote access and real-time data streaming for operational technology and industrial control systems.
What you will do
- Own the Google SecOps log ingestion pipeline, close federal and commercial coverage gaps, and build operational dashboards.
- Develop and maintain SOAR playbooks, integrations, RBAC, and bidirectional response actions for major incident types.
- Build production detections mapped to MITRE ATT&CK, create AWS security-service parsers, and manage the detection lifecycle.
- Operationalize SentinelOne across commercial and federal environments, including Cloud Funnel, correlation rules, RBAC, and endpoint health.
- Lead incident response escalations, tabletop exercises, runbook improvements, and Jira Service Management workflows.
- Manage vulnerability scanning and remediation SLAs, oversee the MSSP relationship, and provide technical direction to SOC analysts.
Requirements
- 6+ years of experience in security operations, detection engineering, or SIEM/SOAR engineering.
- Hands-on experience with Google SecOps or an enterprise SIEM, plus SentinelOne, CrowdStrike, or a comparable EDR platform.
- Deep knowledge of AWS security services, including GuardDuty, Security Hub, Inspector, CloudTrail, WAF, and Config.
- Experience developing SOAR playbooks and MITRE ATT&CK-mapped detection rules.
- Strong incident response, executive reporting, written communication, and peer or junior analyst leadership skills.
- Understanding of NIST 800-53 Audit, System Integrity, and Incident Response controls.
Nice to have
- FedRAMP High or AWS GovCloud experience, Azure security expertise, or OT/ICS monitoring experience.
- MSSP relationship management and vulnerability management experience.
- Startup or high-growth environment experience building SOC capabilities.
- GIAC, Google Chronicle, AWS Security Specialty, CISSP, CISM, or detection engineering certifications.
Culture & Benefits
- Remote-first culture with flexible hours.
- Full medical, vision, and dental insurance.
- Generous paid time off.
- Equity and performance bonus eligibility.
- Opportunity to protect critical infrastructure using patented security technology.
- Collaborative environment with military, federal, and private-sector expertise.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →
Похожие вакансии
4 дня назад
Senior Cybersecurity Engineer (US Federal)
159 600 - 239 400$
4 дня назад
Cybersecurity Engineer - US Federal
130 200 - 195 400$
4 дня назад
Principal Cybersecurity Engineer (US Federal)
184 800 - 277 200$
8 минут назад
Senior Advisor, Cybersecurity
140 000 - 160 000$
5 дней назад
Senior Information Security Engineer (Cybersecurity)
110 000 - 150 000$
3 дня назад
Security Engineer / Network Engineer (AWS)
120 000 - 150 000$