Security Engineer

Socket.dev

Richmond Hill

On-site

CAD 100,000 - 130,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Socket.dev is seeking a SOC Engineer with Elastic SIEM expertise to lead log investigations, optimize the SIEM infrastructure, and build automated response capabilities using Python and PowerShell.

You will design scalable SIEM solutions, manage data ingestion from diverse sources, and collaborate with SOC analysts on new use cases. The role requires 5+ years in a SOC and strong scripting and cloud experience across AWS, GCP, or Azure.

Qualifications

  • 5+ years of experience in a SOC environment focusing on Elastic SIEM.
  • Strong log analysis, incident response, and threat detection methodologies.
  • Experience with Elastic SIEM stack (Elasticsearch, Logstash, Kibana).
  • Proficiency in PowerShell and Python scripting.

Responsibilities

  • Investigate security incidents using log data to identify threats and vulnerabilities.
  • Develop and maintain incident runbooks and response procedures.
  • Create and refine SIEM rules, alerts, and dashboards to enhance threat detection.
  • Automate repetitive tasks using PowerShell and Python to improve SOC efficiency.
  • Implement SIEM security measures, including access controls.

Skills

Elastic SIEM
Log analysis
Incident response
Python scripting
PowerShell scripting
Linux
Cloud platforms (AWS/GCP/Azure)

Tools

Elastic Stack (Elasticsearch, Logstash, Kibana)

Job description

Summary/Objective

We're hiring a SOC Engineer! Are you an Elastic SIEM expert with a passion for threat detection and automation? We are looking for a seasoned engineer (5+ years experience) to lead our complex log investigations, optimize our SIEM infrastructure, and build out automated response capabilities using Python and PowerShell.

If you love turning data into defense, check out the details below.

Key Responsibilities:
Log Investigation & Incident Response:
  • Investigate security incidents using log data to identify threats and vulnerabilities.
  • Respond to incidents in a timely and efficient manner, ensuring thorough documentation and analysis.
  • Develop and maintain incident runbooks and response procedures.
Rule & Dashboard Development:
  • Create and refine SIEM rules, alerts, and dashboards to enhance threat detection capabilities.
  • Continuously optimize detection logic to reduce false positives and improve accuracy.
  • Collaborate with SOC analysts to identify and implement new use cases.
Elastic SIEM Management:
  • Design and maintain a scalable Elastic SIEM infrastructure.
  • Manage data ingestion, ensuring accurate and consistent logging from various sources.
  • Monitor system health and performance, implementing optimizations as needed.
Scripting & Automation:
  • Automate repetitive tasks using PowerShell and Python to improve SOC efficiency.
  • Develop custom scripts to enhance log parsing and event enrichment processes.
Security & Best Practices:
  • Implement SIEM security measures, including user roles and access controls.
  • Stay updated with the latest security trends and ensure compliance with industry best practices.
Required Skills & Experience:
  • 5+ years of experience in a SOC environment with a focus on ELASTIC SIEM
  • Strong knowledge of log analysis, incident response, and threat detection methodologies.
  • Experience with the Elastic SIEM stack (Elasticsearch, Logstash, Kibana).
  • Proficiency in PowerShell and Python scripting.
  • Familiarity with network protocols, cybersecurity frameworks, and attack vectors.
  • Experience with Linux and cloud platforms (AWS, GCP, or Azure).
  • Excellent problem-solving skills and attention to detail.

Salary Range: $100K-130k

WorkEnvironment

Thisjoboperatesinaprofessionalofficeenvironment.Thisroleroutinelyusesstandardofficeequipmentsuchaslaptopcomputers,photocopiersandsmartphones.

PhysicalDemands

Whileperformingthedutiesofthisjob,theemployeeisregularlyrequiredtotalkorhear.Specificvisionabilitiesrequiredbythisjobincludeclosevisionandabilitytoadjustfocus.Thiswouldrequiretheabilitytoliftfiles,openfilingcabinetsandbendorstandonastoolasnecessary.Theemployeeisoccasionallyrequiredtostand;walk;usehandstofinger,handle,orfeelobjects,tools,orcontrols;reachwithhandsandarms;andstoop,kneel,crouchorcrawl.Theemployeemayberequiredtolifeupto25lbs.

PositionType/ExpectedHoursofWork

Thisisafull-timeposition.DaysandhoursofworkareMondaythroughFridayduringnormalbusinesshours.Occasionaleveningandweekendworkmayberequiredasjobdutiesdemand.

Travel

Minimaltravel

OtherDuties

Pleasenotethisjobdescriptionisnotdesignedtocoverorcontainacomprehensivelistingofactivities,dutiesorresponsibilitiesthatarerequiredoftheemployeeforthisjob.Duties,responsibilitiesandactivitiesmaychangeatanytimewithorwithoutnotice.

EEOStatement

Paymentusisanequalopportunityemployer.Weenthusiasticallyacceptourresponsibilitytomakeemploymentdecisionswithoutregardtorace,religiouscreed,color,age,sex,sexualorientation,nationalorigin,ancestry,citizenshipstatus,religion,maritalstatus,disability,militaryserviceorveteranstatus,geneticinformation,medicalconditionincludingmedicalcharacteristics,oranyotherclassificationprotectedbyapplicablefederal,state,andlocallawsandordinances.Ourmanagementisdedicatedtoensuringthefulfillmentofthispolicywithrespecttohiring,placement,promotion,transfer,demotion,layoff,termination,recruitmentadvertising,pay,andotherformsofcompensation,training,andgeneraltreatmentduringemployment.

ReasonableAccommodation

Paymentusrecognizesandsupportsitsobligationtoendeavortoaccommodatejobapplicantsandemployeeswithknownphysicalormentaldisabilitieswhoareabletoperformtheessentialfunctionsoftheposition,withorwithoutreasonableaccommodation.Paymentuswillendeavortoprovidereasonableaccommodationstootherwisequalifiedjobapplicantsandemployeeswithknownphysicalormentaldisabilities,unlessdoingsowouldimposeanunduehardshipontheCompanyorposeadirectthreatofsubstantialharmtotheemployeeorothers.

AnapplicantoremployeewhobelievesheorsheneedsareasonableaccommodationofadisabilityshoulddiscusstheneedforpossibleaccommodationwiththeHumanResourcesDepartment,orhisorherdirectsupervisor.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

SOC Automation Engineer
SOC Automation Engineer

Paymentus • Richmond Hill

On-site
CAD 90,000 - 120,000
Information Security Operations Lead
Information Security Operations Lead

Jobtailor • Toronto

On-site
CAD 110,000 - 150,000
VP, Threat Research - Security Intelligence
VP, Threat Research - Security Intelligence

Elasticsearch B.V. • Canada

On-site
CAD 300,000 - 476,000
Health coverage
Flexible locations & schedules
Generous vacation days
+2
Senior SOC Analyst
Senior SOC Analyst

Socket.dev • Montreal (administrative region)

On-site
CAD 90,000 - 130,000
Principal Software Developer - Security - Elasticsearch
Principal Software Developer - Security - Elasticsearch

Elasticsearch B.V. • Canada

On-site
CAD 154,000 - 244,000
Health coverage
Flexible schedules
Vacation days
+4
Senior SOC Analyst
Senior SOC Analyst

Coveo • Montreal (administrative region)

On-site
CAD 90,000 - 120,000
Senior Software Developer - Security - Elasticsearch Elastic
Senior Software Developer - Security - Elasticsearch Elastic

Neura Market • Canada

Hybrid
CAD 128,000 - 203,000
Health coverage
Flexible locations
Flexible schedules
+4
Principal Product Manager - Identity Threat Detection & Response
Principal Product Manager - Identity Threat Detection & Response

Elasticsearch B.V. • Canada

Hybrid
CAD 154,000 - 244,000
Health coverage for you and yourFamily
Flexible locations and schedules
Generous vacation days
+3
Principal Product Manager - Identity Threat Detection & Response
Principal Product Manager - Identity Threat Detection & Response

Socket.dev • Canada

On-site
CAD 154,000 - 244,000
Health coverage
Flexible locations
Generous vacation days
+2
SOC Manager
SOC Manager

SecureOps • Montreal (administrative region)

On-site
CAD 100,000 - 140,000
Comprehensive group insurance (health,
Dental and life insurance
RRSP Matching Program
+2