Principal Security Operations Engineer

Quantum Software

Redmond (WA)

On-site

USD 150,000 - 210,000

Full time

14 days+
Application generator

Get a reply from this employer — a resume and cover letter tailored to exactly what they’re hiring for.

Get past ATS filters

Job summary

Quantum Software seeks a security analytics lead to manage insider and external threat incident analysis from initial indicators through triage, forensic review, and root-cause analysis, producing defensible narratives for executive, legal, and compliance review. Drive changes to systems and processes based on incident learnings for an AI-enabled QSIT SOC.

The role defines requirements, architecture, operating model, and backlog for security operations across distributed environments, evaluating

Qualifications

  • Doctorate in Statistics, Mathematics, CS, or related field with 3+ years in security and software lifecycle.
  • Master's Degree in Statistics, Mathematics, CS, or related field with 4+ years in security analytics.
  • Bachelor's Degree in Statistics, Mathematics, CS, or related field with 6+ years in security analytics.

Responsibilities

  • Protect critical infrastructure, sensitive IP, and operations from complex cybersecurity threats.
  • Design automated detection workflows and incident response protocols.
  • Collaborate with legal, compliance, and engineering teams to ensure regulatory alignment.

Skills

SOC architecture
Threat analytics
Incident response
Forensic investigation
AI integration
Post-quantum crypto

Education

Doctorate in Statistics/Math/CS
Master's Degree in Statistics/Math/CS
Bachelor's Degree in Statistics/Math/CS

Tools

Purview
DTEX
Proofpoint ITM
Magnet Axiom
Forcepoint

Job description

Manage insider and external threat incident analysis and triage from initial indicators through scoping, forensic review, evidence preservation, case disposition, and root-cause analysis, producing defensible investigative narratives for executive, legal, and compliance review. Drive changes to systems and processes based on incident and risk learnings that cross and impact other teams. Define and drive the requirements, architecture, operating model, and prioritized engineering backlog for an AI-enabled QSIT SOC, covering signal enrichment, triage, investigation, response recommendations, analyst-in-the-loop controls, auditability, and sensitive-data handling. Translate AI SOC needs into measurable capabilities and acceptance criteria, evaluate first- and third-party solutions, guide implementation, and assess operational effectiveness, risk, and readiness for production use. Doctorate in Statistics, Mathematics, Computer Science, or related field AND 3+ years experience in software development lifecycle, large-scale computing, threat modeling, cyber security, anomaly detection, Security Operations Center (SOC) detection, threat analytics, security incident and event management (SIEM), information technology (IT), or operations incident response OR Master's Degree in Statistics, Mathematics, Computer Science, or related field AND 4+ years experience in software development lifecycle, large-scale computing, threat modeling, cyber security, anomaly detection, Security Operations Center (SOC) detection, threat analytics, security incident and event management (SIEM), information technology (IT), or operations incident response OR Bachelor's Degree in Statistics, Mathematics, Computer Science, or related field AND 6+ years experience in software development lifecycle, large-scale computing, threat modeling, cyber security, anomaly detection, Security Operations Center (SOC) detection, threat analytics, security incident and event management (SIEM), information technology (IT), or operations incident response Doctorate in Statistics, Mathematics, Computer Science, or related field AND 5+ years experience in software development lifecycle, large scale computing, threat modeling, cyber security, or anomaly detection OR Master's Degree in Statistics, Mathematics, Computer Science, or related field AND 8+ years experience in software development lifecycle, large scale computing, threat modeling, cyber security, or anomaly detection OR Bachelor's Degree in Statistics, Mathematics, Computer Science, or related field AND 12+ years experience in software development lifecycle, large scale computing, threat modeling, cyber security, or anomaly detection OR equivalent experience. CISSP CISA CISM SANS OSCP Security+ 6+ years of experience in cybersecurity, security operations, incident response, insider threat, threat analytics, security information and event management (SIEM), or equivalent experience. Demonstrated experience leading complex security incidents end-to-end, including technical investigation, containment, recovery, root-cause analysis, executive communication, and post-incident remediation. CISSP certification or other relevant (CISA, CISM, SANS GCIA, GCIH, OSCP, Security+). Experience collaborating with corporate insider threat, investigations, legal, or trade compliance functions; exposure to dedicated insider threat platforms such as Purview, DTEX, Proofpoint ITM, Magnet Axiom, or Forcepoint. Experience designing, deploying, or evaluating agentic AI or LLM-based automation in a security operations context is strongly desired; familiarity with post-quantum cryptography concepts and CNSA 2.0. Experience or interest in the specific challenges of protecting strategic research programs from sustained external targeting; familiarity with export control (EAR / ITAR) and government program environments.

Role context:

This role exists to protect critical organizational infrastructure, sensitive IP, and technical operations from complex cybersecurity threats. Positioned within the security engineering function, it connects live threat detection, incident triage, and forensic investigation with overarching system architecture. Professionals in this capacity design automated detection workflows, establish incident response protocols, and refine operational models to defend core assets. They collaborate with legal, compliance, and engineering teams to ensure regulatory alignment and build resilient defenses across distributed computing environments.

Quantum ecosystem relevance:

The position supports the quantum ecosystem by securing sensitive quantum research programs and preparing organizational infrastructure for emerging post-quantum cryptographic standards. As quantum computing advances, protecting intellectual property from targeted external threats and insider risks becomes critical. Furthermore, implementing post-quantum cryptography frameworks ensures that high-value systems remain resilient against future quantum-enabled decryption techniques. Positioned within the protective infrastructure layer, this function helps safeguard long-term technological assets and specialized research operations.

Capability signals:
  • Deep technical knowledge of security operations center architecture and incident response frameworks
  • Experience integrating advanced artificial intelligence models into automated threat detection workflows
  • Expertise in forensic investigation, root-cause analysis, and threat telemetry enrichment methods
  • Familiarity with post-quantum cryptography transition standards and cryptographic migration planning
  • Understanding of compliance standards, export control regulations, and trade governance protocols
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Principal Security Specialist - 939
Principal Security Specialist - 939

Quantinuum • Broomfield (CO)

On-site
USD 160,000 - 200,000
Senior Cybersecurity Engineer - 930
Senior Cybersecurity Engineer - 930

Quantinuum • Broomfield (CO)

On-site
USD 112,000 - 140,000
Flexible work schedule
Health, dental, and vision insurance
401(k) match
XTN-2584703 | L3 SOC ANALYST
XTN-2584703 | L3 SOC ANALYST

Visa Hunt • United States

On-site
USD 90,000 - 130,000
Work flexibly from anywhere in over 20
Access to KMC's exclusive pantry (MadM
AI-Enabled SOC Architect & Incident Response Lead
AI-Enabled SOC Architect & Incident Response Lead

Quantum Software • Redmond (WA)

On-site
USD 150,000 - 210,000
INFORMATION TECHNOLOGY
INFORMATION TECHNOLOGY

Solidigm Inc. • Rancho Cordova (CA)

On-site
USD 140,000 - 190,000
Cybersecurity DevSecOps Engineer
Cybersecurity DevSecOps Engineer

Quantum Sky • United States

Remote
USD 130,000 - 160,000
Health/Dental/Vision
401(k) match
Paid Time Off
+1
Security Operations Lead
Security Operations Lead

Jobtailor • Pennsylvania

On-site
USD 120,000 - 160,000
Incident Response Analyst - Americas
Incident Response Analyst - Americas

The Carlyle Group • Washington

On-site
USD 120,000 - 180,000
Security Operations Center (SOC) Tier 3 Analyst / Incident Responder
Security Operations Center (SOC) Tier 3 Analyst / Incident Responder

OneMain Financial • Washington

On-site
USD 140,000 - 190,000
Sr. Security Architect (Cybersecurity architecture and infrastructure)
Sr. Security Architect (Cybersecurity architecture and infrastructure)

Connect Tech+Talent • Frisco (TX)

On-site
USD 180,000 - 230,000