Senior SOC Engineer
Core
Design, build, and improve technology for a Security Operations Center, focusing on detection engineering, automation, and incident response.
Role type
Senior SOC Engineer (Detection & Automation)
Builds
High-fidelity detections, SOAR playbooks, automated response workflows, and resilient security data infrastructure. (via careerplan.io/jobs/744000153413630-senior-soc-engineer-at-syntegon)
Domain
Cybersecurity / Security Operations
Required skills
SIEM query authoring, SOAR playbook development, MITRE ATT&CK framework, log onboarding and pipeline management, EDR/XDR/NDR knowledge, scripting (Python/PowerShell/KQL), Tier 3 incident escalation, compliance documentation
Preferred skills
Threat hunting methodologies, offensive security/red teaming experience, OT/ICS security knowledge, data privacy and eDiscovery familiarity
Technologies
SIEM, SOAR, EDR/XDR, NDR, Python, PowerShell, KQL
Responsibilities
Design and maintain detection content across SIEM, EDR/XDR, and NDR platforms; Build and optimize SOAR playbooks and automated response workflows; Own onboarding of new log sources and manage data ingestion pipelines; Act as Tier 3 technical escalation for complex investigations; Maintain health and performance of core SOC platforms; Partner with IT, Cloud, Network, and Identity teams to improve log coverage; Mentor Tier 1–2 analysts on detection logic and tooling
Seniority
Senior, hands-on IC