Analyst II, Security Engineer
Core
Administer and improve core security platforms (EDR, vulnerability management, MDR, CSPM, SIEM) to protect endpoints, cloud workloads, and networks while building automation and AI-enabled workflows.
Role type
Mid-level Security Engineer (Security Operations & Automation)
Builds
Security platforms, automation playbooks, and AI-assisted incident response workflows
Domain
Enterprise Security / Cloud Security / GRC
Deliverable
production ML models | product features | infrastructure
Required skills
EDR, vulnerability management, MDR, CSPM, SIEM, SOAR, Python, PowerShell, AWS, Azure, GCP, ISO 27001, NIST CSF, SOC 2
Preferred skills
ITIL, Jira, Confluence, Microsoft 365 E5, change management frameworks
Technologies
EDR, vulnerability management, MDR, CSPM, SIEM, SOAR, Python, PowerShell, AWS, Azure, GCP, Jira, Confluence, Microsoft 365 E5
Responsibilities
Administer and improve core security platforms (EDR, vulnerability management, MDR, CSPM) to protect endpoints, cloud workloads, and networks; Manage SIEM log ingestion and data quality by onboarding new log sources, monitoring pipelines, and ensuring reliable, complete security telemetry; Contribute to security architecture reviews and translate standards and patterns into practical implementation guidance for engineering and infrastructure teams; Design and build automation and AI-assisted workflows (e.g., SOAR playbooks, scripted tooling) to streamline alert triage, enrichment, and incident response; Evaluate emerging security technologies, run proofs of concept, and provide input into tool selection and long-term security architecture decisions; Support integration of security controls into change management and enterprise workflows, partnering with cross-functional stakeholders to embed security by design.
Seniority
Mid-level, hands-on IC
