Security Managed Services Engineer (L2)
Core
Second-line support engineer for client security infrastructures, focusing on proactive monitoring, incident investigation, and SIEM management to restore service and ensure compliance.
Role type
L2 Security Managed Services Engineer (SOC)
Builds
Operational security monitoring and incident response capabilities for client environments
Domain
Cybersecurity / Security Operations Center (SOC)
Deliverable
production ML models | product features | dashboards & analysis | research | client delivery | infrastructure | physical/clinical work
Required skills
SIEM configuration and management, Splunk, incident response procedures, forensic investigation techniques, vulnerability scanning, malware analysis, automation scripting, ticketing tools, ITIL processes
Preferred skills
SOAR, UEBA, EDR, NBAD, PCAP, ServiceNow
Technologies
Splunk, SOAR, UEBA, EDR, NBAD, PCAP, ServiceNow
Responsibilities
Configure and maintain SIEM systems for security event data collection and analysis; investigate and resolve security incidents using SIEM, SOAR, and forensic tools; develop and document incident response procedures; conduct computer forensic investigations including disk imaging and process examination; optimize SIEM performance and automate response workflows; ensure regulatory compliance and prepare for security audits.
Seniority
Mid-level, hands-on IC