Security Operations Engineer
Core
L2 Security Operations Engineer acting as an escalation point for analysts, investigating complex security incidents, and engineering security platforms for sovereign and government customers.
Role type
L2 Security Operations Engineer (SOC)
Builds
Managed security services platforms, security automations, integrations, and operational processes
Domain
Cyber Security / Government & Sovereign
Deliverable
production ML models | product features | dashboards & analysis | client delivery | infrastructure
Required skills
Security incident investigation, root cause analysis, SIEM/SOAR configuration, endpoint security administration, identity management, cloud security controls, automation scripting, runbook creation
Preferred skills
Threat hunting, vulnerability management, API integrations, PowerShell/Python scripting
Technologies
Microsoft Sentinel, Microsoft Defender XDR, Securonix, SentinelOne, CrowdStrike, Mimecast, Check Point Harmony, Entra ID, Azure, AWS, Tenable
Responsibilities
Act as escalation point for Security Analysts, investigate complex security incidents, configure and optimize security platforms, onboard customers to managed services, build and maintain security automations, implement identity and cloud security controls, create technical documentation, support platform upgrades and tuning
Seniority
Mid-level, hands-on IC
