Security Operations Engineer
Core
Lead incident response and cyber defense investigations across cloud, on-premises, and hybrid environments, including high-severity events and major incidents.
Role type
Senior IC Security Operations Engineer (Incident Response & Cyber Defense)
Builds
Incident response playbooks, operational runbooks, SOAR workflows, and response automation tooling
Domain
Cybersecurity, Cloud Security, OT/Industrial Security
Deliverable
production ML models | product features | dashboards & analysis | research | client delivery | infrastructure | physical/clinical work
Required skills
Incident response, threat hunting, security investigation, process optimization, automation, PowerShell, Python, KQL, Logic Apps, Azure Functions, OT/industrial environment experience
Preferred skills
OT/manufacturing/critical infrastructure experience
Technologies
PowerShell, Python, KQL, Logic Apps, Azure Functions
Responsibilities
Coordinate investigation and response activities with engineering, platform, identity, network, and application teams; Analyze attempted and successful compromises; Design and implement SOAR workflows and response automation; Participate in on-call rotation for security services and incident response
Seniority
Senior, hands-on IC