Security Engineer

Verathon Inc

Duluth (GA)

On-site

USD 110,000 - 165,000

Full time

7 days ago
Be an early applicant

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Neptune is seeking a Security Engineer to join its SOC in Duluth, GA. You will design, implement, and optimize security tools while leading incident detection and response efforts. Collaborate with IT Operations, Cloud, and Engineering to improve threat detection and remediation.

You will develop playbooks, automate workflows, and mentor SOC Analysts, contributing to governance and compliance with NIST CSF, CIS Controls, ISO 27001.

Qualifications

  • Bachelor's degree or equivalent cybersecurity-related experience.
  • 2–5 years in cybersecurity, SOC, or related field.
  • Experience investigating security alerts and incidents.
  • Experience working in a Security Operations Center (SOC).
  • Experience with SIEM and EDR platforms.
  • Strong written and verbal communication skills.

Responsibilities

  • Design, configure, and maintain security platforms including SIEM, EDR/XDR, SOAR, IAM, DLP, and cloud security.
  • Develop automation and orchestration workflows to improve efficiency.
  • Support cloud security and Zero Trust initiatives enterprise-wide.
  • Develop and tune detections; perform threat hunting with telemetry analysis.
  • Lead incident investigation and provide escalation guidance during security incidents.
  • Coordinate remediation with IT Operations, Infrastructure, and Engineering.
  • Create engineering standards and operational procedures.
  • Mentor SOC Analysts and document SOC operations.
  • Support audits and compliance with NIST CSF, CIS Controls, ISO 27001.

Skills

SIEM
EDR/XDR
SOAR
IAM
Vulnerability Management
Cloud Security
Detection Engineering
Threat Hunting
Automation
Incident Response
Python
PowerShell

Education

Bachelor's degree in Cybersecurity, Information Technology, Computer Science, or related field
Equivalent military, technical, or professional experience

Tools

CrowdStrike Falcon
Google SecOps Chronicle
Splunk
QRadar
Microsoft Sentinel
AWS
Azure
SOAR platforms
Security Platforms

Job description

As a Security Engineer within Neptune's Security Operations Center (SOC), you will design, implement, administer, and optimize Neptune's cybersecurity technologies while serving as a technical leader within the SOC. This role combines security engineering with operational security by supporting incident detection, investigation, response, and remediation while continuously improving Neptune's security capabilities through automation, tool integration, detection engineering, and process enhancement.

The Security Engineer partners closely with SOC Analysts, IT Operations, Infrastructure, Cloud, and Engineering teams to implement and maintain security solutions, tune detections, develop response playbooks, support vulnerability management, and enhance security monitoring across the enterprise — providing advanced technical expertise during cybersecurity incidents and driving continuous improvements to strengthen Neptune's overall security posture.

Responsibilities
Security Engineering & Tool Administration
  • Design, configure, implement, and maintain security platforms including SIEM, EDR/XDR, SOAR, Identity and Access Management (IAM), Data Loss Prevention (DLP), Vulnerability Management, and Cloud Security solutions
  • Evaluate, test, and deploy new security technologies, including Proof of Concept (POC) evaluations
  • Develop automation and orchestration workflows to improve operational efficiency
  • Support cloud security and Zero Trust initiatives across the enterprise
Detection Engineering & Threat Hunting
  • Develop and tune security detections, correlation rules, and dashboards to improve threat detection capabilities and reduce false positives
  • Perform proactive threat hunting and analyze security telemetry across endpoint, network, identity, cloud, and SIEM platforms
  • Identify opportunities to improve detection and response capabilities across the environment
  • Monitor emerging threats, vulnerabilities, and industry best practices to inform detection strategy
  • Provide technical leadership during investigation, containment, eradication, and recovery for complex and escalated security incidents
  • Investigate advanced cyber threats and complex security alerts
  • Collect and analyze forensic artifacts, logs, and endpoint telemetry during investigations
  • Participate in the on-call rotation and provide advanced technical support during critical security incidents
  • Support root cause analysis and post-incident reviews
Vulnerability Management & Remediation
  • Validate vulnerability findings and coordinate remediation activities with IT Operations, Infrastructure, and Engineering teams
  • Implement security controls to address identified risks
  • Track and support remediation efforts across the vulnerability management program
Security Operations, Mentorship & Documentation
  • Partner with SOC Analysts, IT Operations, Infrastructure, Cloud, and Engineering teams to implement and maintain security solutions
  • Develop response playbooks, engineering standards, and operational procedures
  • Provide mentorship and technical guidance to SOC Analysts
  • Create and maintain technical documentation supporting SOC operations
  • Collaborate with Neptune's MSSP and third-party security partners on engineering and investigation initiatives
Compliance & Governance Support
  • Support compliance initiatives aligned with NIST CSF, CIS Controls, ISO 27001, and Roper Cybersecurity requirements
  • Recommend improvements that strengthen Neptune's security posture, resilience, and compliance
  • Assist with audit requests, evidence collection, and security documentation
Relevant Platforms (experience with several expected):
  • CrowdStrike Falcon
  • Google SecOps (Chronicle)
  • SIEM Platforms
  • Endpoint Detection and Response (EDR) Platforms
  • Security Orchestration, Automation, and Response (SOAR)
  • Identity and Access Management (IAM) / Microsoft Entra ID
  • Cloud Security Platforms (AWS, Azure)
  • Vulnerability Management Platforms
Minimum Qualifications:
  • Bachelor's degree in Cybersecurity, Information Technology, Computer Science, or related field (or equivalent experience)
  • 2–5 years of experience in cybersecurity, security operations, incident response, or related technical field
  • Experience investigating security alerts, detections, and cybersecurity incidents
  • Experience working in a Security Operations Center (SOC) environment
  • Experience with SIEM and EDR platforms
  • Understanding of security engineering concepts, including detection engineering, automation, and security tool administration
  • Strong analytical, troubleshooting, and problem-solving skills
  • Strong written and verbal communication skills
Preferred Qualifications:
  • Bachelor's degree in Cybersecurity, Computer Science, Information Technology, Information Systems, or related field
  • 2–5 years of experience in Security Operations, Cybersecurity, Incident Response, Vulnerability Management, or Information Technology
  • Experience with SIEM platforms such as Google SecOps, Chronicle, Splunk, QRadar, Microsoft Sentinel, or similar technologies
  • Experience with Endpoint Detection and Response (EDR) platforms such as CrowdStrike Falcon or Microsoft Defender
  • Familiarity with the MITRE ATT&CK Framework, threat hunting, and threat intelligence methodologies
  • Experience supporting vulnerability management programs and remediation activities
  • Knowledge of Windows, Active Directory, Microsoft Entra ID, networking fundamentals, and cloud security concepts
  • Experience working with AWS and/or Azure environments
  • Familiarity with NIST Cybersecurity Framework, CIS Controls, ISO 27001, and security best practices
  • Experience with scripting or automation using PowerShell, Python, or similar languages
Certifications (One or More Preferred):
  • Security+
  • CySA+
  • GSEC
  • GCIH
  • GCIA
  • GCED
  • CISSP (Associate or Full)
  • SC-200
  • SC-100
  • CrowdStrike Certifications
  • Google SecOps Certifications
  • AWS or Azure Security Certifications
Years of Experience (IT, Security & Compliance)
  • 2–5 years of Information Technology, Cybersecurity, Security Operations, Compliance, or Incident Response experience
Education
  • Bachelor's Degree in Cybersecurity, Information Technology, Computer Science, Information Systems, or related field preferred
  • Equivalent military, technical, or professional experience will be considered
Travel Requirements:

Typically requires overnight travel less than 10% of the time.

Equal Opportunity Employer/Protected Veterans/Individuals with Disabilities
This employer is required to notify all applicants of their rights pursuant to federal employment laws.For further information, please review the Know Your Rights notice from the Department of Labor.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Security Analyst
Security Analyst

Verathon Inc • Duluth (GA), Tallassee (AL)

On-site
USD 70,000 - 90,000
Security Operations Engineer
Security Operations Engineer

Reserv • Atlanta (GA)

Hybrid
USD 80,000 - 100,000
Generous health-insurance package
401(k) retirement plan with employer matching
Competitive PTO policy
+1
Senior Security Engineer
Senior Security Engineer

Jobtailor • Palo Alto (CA)

On-site
USD 180,000 - 260,000
Cyber Defense Detection and Automation Engineer
Cyber Defense Detection and Automation Engineer

Crane NXT • United States

On-site
USD 120,000 - 150,000
Security Engineer
Security Engineer

Weather Group • Atlanta (GA)

On-site
USD 90,000 - 120,000
Senior Security Engineer
Senior Security Engineer

Novacoast • Salt Lake City (UT)

On-site
USD 100,000 - 130,000
Cyber Defense Detection and Automation Engineer
Cyber Defense Detection and Automation Engineer

Crane NXT, Co. • Northern (KY)

Hybrid
USD 100,000 - 180,000
Senior Security Operations Analyst
Senior Security Operations Analyst

nuHarbor • New Jersey

On-site
USD 110,000 - 135,000
Competitive pay
Performance-based bonus opportunities
Generous paid time off
+1
Senior Engineer, Cloud and System Security
Senior Engineer, Cloud and System Security

SES Satellites • McLean (VA)

On-site
USD 140,000 - 180,000
Security Engineer
Security Engineer

Insight Global • Naperville (IL)

On-site
USD 100,000 - 130,000