Senior SOC Engineer
Core
Design and build custom parsers, integrations, and detection logic for SIEM, SOAR, and XDR platforms to enhance cyber defense operations.
Role type
Senior SOC Engineer (Detection & Response Engineering)
Builds
Custom parsers, integration guides, alert use cases, and response playbooks for the Cyber Defense Operations Center
Domain
Cybersecurity / SecOps / SIEM / SOAR / XDR
Deliverable
production ML models | product features | dashboards & analysis
Required skills
Python scripting, Regex, custom log parsing, REST API integration, SIEM/SOAR/XDR platform expertise, technical documentation, schema mapping, data normalization
Preferred skills
Experience with cloud-native security tools (AWS GuardDuty, Azure Sentinel, Google Chronicle), AI prompting for parser development, Git, Markdown
Technologies
Python, Regex, Logstash, JSON, Syslog, XML, REST APIs, Webhooks, SDKs, Confluence, DITA, AWS GuardDuty, Azure Sentinel, Google Chronicle
Responsibilities
Design and build custom parsers for diverse log formats and telemetry sources; Develop integration guides for connecting security tools with external systems; Write technical documentation for parser configuration and enrichment workflows; Test and validate parser outputs; Continuously improve SIEM/SOAR/XDR alert use cases and detection logic; Create tutorials for parser development using Python, Regex, and AI prompts; Collaborate with the Cyber Defense team to capture use cases and operational needs
Seniority
Senior, hands-on IC