SR Security Operations Engineer
Core
Lead monitoring, analysis, investigation, and response of cybersecurity threats and incidents across enterprise environments, including threat hunting, detection engineering, and digital forensics.
Role type
Senior Security Operations Engineer (Incident Response & Threat Hunting)
Builds
Incident response playbooks, detection content, automation workflows, and operational dashboards
Domain
Cybersecurity / IT Security
Deliverable
production ML models | product features | dashboards & analysis | client delivery | infrastructure
Required skills
Incident response, threat hunting, digital forensics, SIEM, EDR, SOAR, cloud security, scripting (Python/PowerShell), threat intelligence, malware analysis, automation engineering
Preferred skills
LLMs, agentic AI frameworks, RAG, secure AI architecture, penetration testing, advanced threat modeling
Technologies
SIEM, EDR, SOAR, IAM, DLP, Microsoft 365, Azure, AWS, MITRE ATT&CK, NIST 800-61
Responsibilities
Lead triage and investigation of alerts from enterprise security technologies; conduct comprehensive incident investigations including root cause analysis; perform proactive threat hunting across endpoint, identity, and cloud environments; design and maintain detection content and analytics rules; develop automation workflows and orchestration capabilities using SOAR; mentor junior analysts and provide technical guidance; coordinate response activities across infrastructure, engineering, and legal stakeholders.
Seniority
Senior, hands-on IC with mentorship responsibilities