Remote SOC Security Engineer — SIEM/SOAR & AWS Automation

BlockchainHQ

United States

Remote

USD 120,000 - 180,000

Full time

14 days+
Application generator

Turn this role into an interview — a resume and cover letter built around what this employer wants.

Get past ATS filters

Benefits offered by this job

Work-from-home arrangement
Competitive compensation
Career growth opportunities

Job summary

Binance is seeking a security-focused engineer to design, build, and maintain SOC platforms and tooling, emphasizing SIEM, SOAR, and automation. You will develop Python services and security integrations with AWS and internal security tools, while supporting SOC operations.

Proficiency in Python and AWS, plus SIEM experience, are required. The role involves on-call incident response and collaboration with SOC teams to enhance detection coverage and platform capabilities.

Qualifications

  • Hands-on Python development experience is required.
  • Experience with AWS, particularly EC2, S3, Lambda, IAM, and CloudWatch.
  • Experience developing production-quality services, automation, APIs, or internal security tools.
  • Practical experience using SIEM platforms for security monitoring, log analysis, and alert investigation.
  • Good understanding of SOC operations and Incident Response (IR), including alert triage and security incident investigation.
  • Understanding of common security threats and experience developing security detections / threat models / SIEM use cases.
  • Familiarity with EDR, security telemetry, REST APIs, Git, Docker, and Linux.
  • Strong problem-solving, troubleshooting, and communication skills.

Responsibilities

  • Design, develop, and maintain SOC security platforms and tooling, with a primary focus on SIEM, SOAR, and security automation.
  • Develop Python-based services, scripts, automation workflows, and security integrations with SIEM, EDR, AWS, and internal security platforms.
  • Build and maintain AWS-based security services and integrations, including EC2, S3, Lambda, IAM, and CloudWatch.
  • Support SIEM operations and detection engineering, including log ingestion, parsing, normalization, correlation, and detection rule development.
  • Develop detection use cases and common security threat models, based on attack scenarios and real-world security incidents.
  • Participate in SOC on-call rotation and incident response, including alert triage, investigation, containment, and post-incident analysis.
  • Work with SOC analysts and security teams to improve security automation, detection coverage, and platform capabilities.

Skills

Python development
Golang
Java
AWS
SIEM
Incident Response
EDR
REST APIs
Docker
Git
Linux
Communication skills
Troubleshooting
Security automation

Tools

Docker
Git
CloudWatch
EC2
S3

Job description

Binance is seeking a security-focused engineer to design, build, and maintain SOC platforms and tooling, emphasizing SIEM, SOAR, and automation. You will develop Python services and security integrations with AWS and internal security tools, while supporting SOC operations.

Proficiency in Python and AWS, plus SIEM experience, are required. The role involves on-call incident response and collaboration with SOC teams to enhance detection coverage and platform capabilities.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

SOC Security Engineer
SOC Security Engineer

BlockchainHQ • United States

Remote
USD 120,000 - 180,000
Work-from-home arrangement
Competitive compensation
Career growth opportunities
SOC Engineer
SOC Engineer

Amentum • Columbia (MD)

On-site
USD 120,000 - 180,000
Senior SIEM & SOAR Platform Engineer
Senior SIEM & SOAR Platform Engineer

Center for Internet Security, Inc. • United States

Remote
USD 129,000 - 225,000
Health insurance
401(k) with company match
Paid time off
Security Automation Engineer (Python) – SIEM & SOAR
Security Automation Engineer (Python) – SIEM & SOAR

Piper Companies • United States

Remote
USD 135,000 - 145,000
Remote work environment
Medical, Dental, Vision Insurance
401(k) with company match
+3
Senior SOC Engineer: Splunk, SOAR & Cloud Expert (Remote)
Senior SOC Engineer: Splunk, SOAR & Cloud Expert (Remote)

Bayview Asset Management, LLC • Coral Gables (FL)

Remote
USD 160,000 - 180,000
Senior SOC Engineer: Detection & Automation Specialist
Senior SOC Engineer: Detection & Automation Specialist

Constellation GovCloud • McLean (VA)

On-site
USD 120,000 - 170,000
On-site gym
Medical, dental, and vision insurance
FSA and EAP
+2
Security Engineer - SOAR and SIEM Automation - 172325
Security Engineer - SOAR and SIEM Automation - 172325

Piper Companies • United States

Hybrid
USD 135,000 - 145,000
Remote work environment
Medical insurance
Dental insurance
+3
Security Operations Center (SOC) Analyst
Security Operations Center (SOC) Analyst

10xTalents • Washington

On-site
USD 80,000 - 110,000
Senior SOC Automation Engineer - Python & Cloud
Senior SOC Automation Engineer - Python & Cloud

Bitdefender • United States

Remote
USD 140,000 - 180,000
Security Operations Center (SOC) Analyst / Engineer
Security Operations Center (SOC) Analyst / Engineer

Zoho • United States

On-site
USD 110,000 - 160,000