Security Engineer
Core
Design, implement, and manage security monitoring and automated response capabilities to strengthen detection coverage and accelerate incident response.
Role type
Security Engineer (SIEM/SOAR)
Builds
Security monitoring solutions, automated incident response playbooks, and threat detection dashboards
Domain
Cybersecurity, Security Operations Center (SOC)
Deliverable
production ML models | product features | dashboards & analysis | infrastructure
Required skills
SIEM engineering, SOAR playbook development, scripting (Python/PowerShell/Bash), incident response automation, data ingestion and normalization, threat intelligence enrichment
Preferred skills
SOC environment experience, EDR/XDR familiarity, cloud security (AWS/Azure/GCP), MITRE ATT&CK/NIST/CIS frameworks
Technologies
Splunk, Microsoft Sentinel, Google SecOps, QRadar, Elastic, Cortex XSOAR, Splunk SOAR, IBM Resilient, ArcSight
Responsibilities
Design and optimize SIEM solutions; develop automated playbooks for incident response; integrate diverse data sources into SIEM platforms; conduct root cause analysis of recurring threats; partner with audit and compliance teams; provide training and documentation for SOC teams
Seniority
Mid-level, hands-on IC