SOC Detection & response - Senior Cybersecurity Engineer
Core
Leading incident response, threat hunting, forensic analysis, and alert tuning for corporate and cloud environments.
Role type
Senior SOC Detection & Response Engineer
Builds
Incident response playbooks, detection rules, and automated security workflows for cloud and on-prem environments.
Domain
Cybersecurity, Cloud Security, Threat Intelligence
Deliverable
production ML models | product features | dashboards & analysis | client delivery | infrastructure | physical/clinical work
Required skills
SIEM (Splunk, Google SecOps), Digital Forensics (Windows/Linux), EDR (CrowdStrike, Microsoft Defender), IDS/IPS, Python, PowerShell, Bash, MITRE ATT&CK, Network Security Protocols
Preferred skills
SOAR automation, Malware analysis, Cloud container workloads (Azure, AWS, GCP, Kubernetes)
Responsibilities
Lead incident response efforts including investigation, containment, eradication, and recovery; Conduct proactive threat hunting across endpoints, networks, and cloud workloads; Perform digital forensics and malware analysis; Review and validate SIEM/EDR/IDS detection content to reduce false positives; Manage and guide MSSP operations; Maintain security automation workflows and SOAR playbooks; Document detection logic and response procedures.
Seniority
Senior, hands-on IC