Cloud SecOps SIEM/SOAR Engineer

Softthink Solutions

Washington (District of Columbia)

On-site

USD 180,000 - 240,000

Full time

10 days ago
Application generator

Get a reply from this employer — a resume and cover letter tailored to exactly what they’re hiring for.

Get past ATS filters

Job summary

Softthink Solutions is seeking a seasoned SIEM/SOAR Engineer to design and optimize the Google SecOps SIEM/SOAR environment for enterprise operations in Washington, DC.

You will configure ingestion pipelines, validate log flows, and implement detections and automation to support secure monitoring. The role requires cloud telemetry experience and strong collaboration with incident response teams.

Qualifications

  • 10+ years of experience in SIEM/SOAR platforms (Google SecOps preferred).
  • Experience building detection rules, automation workflows, and parser validation.
  • Experience with cloud telemetry ingestion (Azure, AWS, on‑prem).

Responsibilities

  • Configure ingestion pipelines and validate end‑to‑end log flow.
  • Implement Google curated detections and build custom detection rules.
  • Develop SOAR playbooks for SBA’s top incident categories.
  • Integrate threat intelligence sources (Mandiant, Virus Total).
  • Tune detections to meet false‑positive thresholds.
  • Support UEBA dashboard configuration and risk scoring.
  • Assist with runbook creation, analyst training, and operational transition.

Skills

SIEM/SOAR expertise
Google SecOps
Threat intelligence integration
Cloud telemetry ingestion
Detection rule development
Automation workflows
Parser validation
UEBA configuration

Education

Bachelor’s degree in Cybersecurity/IT or related field

Tools

GCP Security Suite
Cloud telemetry tools (Azure/AWS)

Job description

Softthink Solutions is seeking a seasoned SIEM/SOAR Engineer to design and optimize the Google SecOps SIEM/SOAR environment for enterprise operations in Washington, DC.

You will configure ingestion pipelines, validate log flows, and implement detections and automation to support secure monitoring. The role requires cloud telemetry experience and strong collaboration with incident response teams.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Cloud SecOps SIEM/SOAR Engineer (Google SecOps)
Cloud SecOps SIEM/SOAR Engineer (Google SecOps)

Softthink Solutions Inc • Washington

On-site
USD 180,000 - 210,000
Senior SecOps Architect - Cloud Security & SIEM Lead
Senior SecOps Architect - Cloud Security & SIEM Lead

Softthink Solutions • Washington

On-site
USD 180,000 - 240,000
Senior SecOps Engineer - Cloud Security Lead
Senior SecOps Engineer - Cloud Security Lead

Softthink Solutions Inc • Washington

On-site
USD 170,000 - 210,000
SIEM/SOAR Engineer - Cloud Sec Spec 3
SIEM/SOAR Engineer - Cloud Sec Spec 3

Softthink Solutions • Washington

On-site
USD 180,000 - 240,000
SIEMSOAR Engineer Cloud Sec Spec 3
SIEMSOAR Engineer Cloud Sec Spec 3

Softthink Solutions Inc • Washington

On-site
USD 180,000 - 210,000
Lead SecOps Engineer Cloud Sec Spec 3
Lead SecOps Engineer Cloud Sec Spec 3

Softthink Solutions Inc • Washington

On-site
USD 170,000 - 210,000
Senior Detection Engineer & SIEM SME
Senior Detection Engineer & SIEM SME

Softthink Solutions • Washington

On-site
USD 150,000 - 210,000
Cloud Security Advisor for SIEM/SOAR & AIOps
Cloud Security Advisor for SIEM/SOAR & AIOps

Google • Miami (FL)

On-site
USD 183,000 - 265,000
Remote SIEM/SOAR Platform Engineer
Remote SIEM/SOAR Platform Engineer

First Quality King of Prussia PA • McElhattan, New York (NY)

Hybrid
USD 110,000 - 150,000
401(k) with employer match
Paid time off
Medical, dental and vision
Lead SecOps Engineer - Cloud Sec Spec 3
Lead SecOps Engineer - Cloud Sec Spec 3

Softthink Solutions • Washington

On-site
USD 180,000 - 240,000