IT Security Engineer IV (371)

Gravity IT Resources

Mountain View (CA)

Hybrid

USD 96,000 - 138,000

Full time

3 days ago
Be an early applicant
Application generator

Get a reply from this employer — a resume and cover letter tailored to exactly what they’re hiring for.

Get past ATS filters

Job summary

Gravity IT Resources seeks an Information Technology Security Engineer to support detection and platform engineering within threat operations. Hybrid work with onsite presence is required, and the team focuses on building pipelines, automating tasks, and enhancing incident response across EDR, cloud, and network telemetry.

The role emphasizes development of Detection-as-Code, SOAR playbooks, and alignment with MITRE ATT&CK and zero-trust concepts.

Qualifications

  • Proven SOC experience in detection engineering, security engineering, or senior analyst roles with an engineering mindset.

Responsibilities

  • Administer and enhance the Security Incident Response module: workflows, rules, SLA definitions, UI configuration, and integrations.
  • Design, build, and maintain the Detection-as-Code pipeline: detection development, version control, CI/CD testing, and deployment automation.
  • Develop and tune detections across EDR, cloud, network, email, and DLP telemetry.
  • Build SOAR playbooks, API integrations, and automation workflows.
  • Support SIEM/SOAR platform administration and optimization.
  • Contribute to AI SOC initiatives: investigation expansion, alert triage automation, and platform health.
  • Apply MITRE ATT&CK, FP-rate gating, and detection lifecycle standards to deployed content.
  • Partner with SOC analysts to translate operational gaps into engineering solutions.

Skills

SOC detection
Python scripting
MITRE ATT&CK
Detection pipelines
ServiceNow SIR
CI/CD
EDR & Cloud security
Zero Trust
DLP concepts
AI/LLM security

Tools

SIEM
SOAR
CI/CD tooling

Job description

Job Title: Information Technology Security Engineer

Location Requirements: Hybrid

Job Type: Contract

Role Overview:
Support detection and platform engineering within threat operations. Build pipelines, automate tasks, develop detection workflows, and manage security incident response tools. Collaborate with the SOC team to improve detection and response processes, applying AI and standard frameworks to enhance security operations.

Responsibilities:

  • Administer and enhance the Security Incident Response module: workflows, rules, SLA definitions, UI configuration, and integrations.
  • Design, build, and maintain the Detection-as-Code pipeline: detection development, version control, CI/CD testing, and deployment automation.
  • Develop and tune detections across EDR, cloud, network, email, and DLP telemetry.
  • Build SOAR playbooks, API integrations, and automation workflows.
  • Support SIEM/SOAR platform administration and optimization.
  • Contribute to AI SOC initiatives: investigation expansion, alert triage automation, and platform health.
  • Apply MITRE ATT&CK, FP-rate gating, and detection lifecycle standards to deployed content.
  • Partner with SOC analysts to translate operational gaps into engineering solutions.

Required Qualifications:

  • Proven SOC experience in detection engineering, security engineering, or senior analyst roles with an engineering mindset.
  • Hands‑on experience administering ServiceNow Security Incident Response (SIR): configuring workflows, business rules, assignment logic, and integrations in a production environment.
  • Hands‑on automation and scripting experience, primarily in Python.
  • Experience building or contributing to Detection-as-Code pipelines.
  • Strong knowledge of MITRE ATT&CK, Pyramid of Pain, Cyber Kill Chain, and incident response phases.
  • Deep understanding of at least one: endpoint security (macOS and Windows detection and telemetry) or cloud infrastructure (cloud‑native services, Kubernetes).
  • Knowledge of networking fundamentals, including DNS.
  • Working knowledge of IAM, SSO (SAML/OIDC), and Zero Trust concepts.
  • Working knowledge of Data Loss Prevention concepts and detection use cases.
  • Understanding of AI Detection & Response, including securing and monitoring AI/LLM usage in enterprise settings.
  • Familiarity with agentic AI frameworks and AI integration into SOC workflows.

Extra Data Context
This role is based in Dallas, with options for San Diego or Mountain View. Onsite 3 days per week required; not available fully remote.

Equal Employment Opportunity Statement
Gravity IT Resources is an Equal Opportunity Employer. We are committed to creating an inclusive environment for all employees and applicants. We do not discriminate on the basis of race, color, religion, sex (including pregnancy, sexual orientation, or gender identity), national origin, age, disability, genetic information, veteran status, or any other legally protected characteristic. All employment decisions are based on qualifications, merit, and business needs.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

IT Security Engineer IV – DFIR & Detection
IT Security Engineer IV – DFIR & Detection

Gravity IT Resources • Northern (KY)

Hybrid
USD 120,000 - 150,000
Senior Detection and Response Analyst
Senior Detection and Response Analyst

Prestige Staffing • Dallas (TX)

On-site
USD 120,000 - 180,000
Contract extension potential
Remote work
Career growth
+2
Senior Cybersecurity Analyst #3344
Senior Cybersecurity Analyst #3344

Genius Road, LLC • Austin (TX)

On-site
USD 150,000 - 190,000
Certified Women’s Business Enterprise
Equal Opportunity Employer
Sr. IT Security Engineer (Hybrid)
Sr. IT Security Engineer (Hybrid)

Belk • Town of Charlotte (NY)

On-site
USD 150,000 - 210,000
Detection & Response Engineering Manager
Detection & Response Engineering Manager

InfraTech Solutions LLC • Chicago (IL)

On-site
USD 150,000 - 180,000
Health, dental, and vision insurance
Paid time off and holidays
Parental leave
+2
SOC Manager
SOC Manager

TEKsystems • Rocklin (CA)

On-site
USD 96,000 - 103,000
Medical, dental & vision
401(k) Retirement Plan
Life Insurance
+5
Cyber Security Analyst
Cyber Security Analyst

Clinisoltech • Huntsville (AL)

Hybrid
USD 80,000 - 90,000
Senior Security Engineer - Threat Detection
Senior Security Engineer - Threat Detection

samsara • United States

Hybrid
USD 150,000 - 190,000
Professional development stipend
Comprehensive health coverage
Parental leave plans
Security Engineer, Incident Response
Security Engineer, Incident Response

Eliassen Group • Burbank (CA)

Hybrid
Confidential
Medical insurance
Dental insurance
Vision insurance
+2
IT Security Engineer IV (Part Time) (Remote)
IT Security Engineer IV (Part Time) (Remote)

Kforce Inc • San Diego (CA)

On-site
USD 110,000 - 140,000