Security Engineer

Paymentus

Richmond Hill (GA)

On-site

USD 100,000 - 130,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Paymentus is seeking a seasoned SOC Engineer to lead Elastic SIEM initiatives in a fast-paced security operations environment. You will conduct log investigations, optimize the SIEM infrastructure, and automate responses using Python and PowerShell.

The role requires 5 years in a SOC with Elastic SIEM expertise, strong incident response skills, and proficiency with Elasticsearch, Logstash, Kibana, and cloud platforms (AWS/GCP/Azure).

Qualifications

  • 5 years of experience in a SOC environment with Elastic SIEM.
  • Strong knowledge of log analysis, incident response, and threat detection methodologies.
  • Experience with the Elastic SIEM stack (Elasticsearch, Logstash, Kibana).
  • Proficiency in PowerShell and Python scripting.
  • Familiarity with network protocols, cybersecurity frameworks, and attack vectors.
  • Experience with Linux and cloud platforms (AWS, GCP, or Azure).
  • Excellent problem-solving skills and attention to detail.

Responsibilities

  • Investigate security incidents using log data to identify threats and vulnerabilities.
  • Respond to incidents in a timely and efficient manner, ensuring thorough documentation and analysis.
  • Develop and maintain incident runbooks and response procedures.
  • Create and refine SIEM rules, alerts, and dashboards to enhance threat detection capabilities.
  • Continuously optimize detection logic to reduce false positives and improve accuracy.
  • Collaborate with SOC analysts to identify and implement new use cases.
  • Design and maintain a scalable Elastic SIEM infrastructure.
  • Manage data ingestion, ensuring accurate and consistent logging from various sources.
  • Monitor system health and performance, implementing optimizations as needed.
  • Automate repetitive tasks using PowerShell and Python to improve SOC efficiency.
  • Develop custom scripts to enhance log parsing and event enrichment processes.
  • Implement SIEM security measures, including user roles and access controls.
  • Stay updated with the latest security trends and ensure compliance with industry best practices.

Skills

Elastic SIEM
Log analysis
Incident response
Threat detection
Python scripting
PowerShell scripting
Cloud platforms

Tools

Elasticsearch
Logstash
Kibana
PowerShell
Python
Linux
AWS
GCP
Azure

Job description

Summary/Objective

We’re hiring a SOC Engineer! Are you an Elastic SIEM expert with a passion for threat detection and automation? We are looking for a seasoned engineer (5 years experience) to lead our complex log investigations, optimize our SIEM infrastructure, and build out automated response capabilities using Python and PowerShell.

Key Responsibilities
Log Investigation & Incident Response
  • Investigate security incidents using log data to identify threats and vulnerabilities.
  • Respond to incidents in a timely and efficient manner, ensuring thorough documentation and analysis.
  • Develop and maintain incident runbooks and response procedures.
Rule & Dashboard Development
  • Create and refine SIEM rules, alerts, and dashboards to enhance threat detection capabilities.
  • Continuously optimize detection logic to reduce false positives and improve accuracy.
  • Collaborate with SOC analysts to identify and implement new use cases.
Elastic SIEM Management
  • Design and maintain a scalable Elastic SIEM infrastructure.
  • Manage data ingestion, ensuring accurate and consistent logging from various sources.
  • Monitor system health and performance, implementing optimizations as needed.
Scripting & Automation
  • Automate repetitive tasks using PowerShell and Python to improve SOC efficiency.
  • Develop custom scripts to enhance log parsing and event enrichment processes.
Security & Best Practices
  • Implement SIEM security measures, including user roles and access controls.
  • Stay updated with the latest security trends and ensure compliance with industry best practices.
Required Skills & Experience
  • 5 years of experience in a SOC environment with a focus on ELASTIC SIEM
  • Strong knowledge of log analysis, incident response, and threat detection methodologies.
  • Experience with the Elastic SIEM stack (Elasticsearch, Logstash, Kibana).
  • Proficiency in PowerShell and Python scripting.
  • Familiarity with network protocols, cybersecurity frameworks, and attack vectors.
  • Experience with Linux and cloud platforms (AWS, GCP, or Azure).
  • Excellent problem‑solving skills and attention to detail.

Salary Range: $100K-130k

Work Environment

This job operates in a professional office environment. This role routinely uses standard office equipment such as laptop computers, photocopiers and smartphones.

Physical Demands

While performing the duties of this job, the employee is regularly required to talk or hear. Specific vision abilities required by this job include close vision and ability to adjust focus. This would require the ability to lift files, open filing cabinets and bend or stand on a stool as necessary. The employee may be required to stand; walk; use hands to finger, handle, or feel objects, tools, or controls; reach with hands and arms; and stoop, kneel, crouch or crawl. The employee may be required to life up to 25 lbs.

Position Type/Expected Hours of Work

This is a full‑time position. Days and hours of work are Monday through Friday during normal business hours. Occasional evening and weekend work may be required as job duties demand.

Travel

Minimal travel

Other Duties

Please note this job description is not designed to cover or contain a comprehensive listing of activities, duties or responsibilities that are required of the employee for this job. Duties, responsibilities and activities may change at any time with or without notice.

EEO Statement

Paymentus is an equal‑opportunity employer. We enthusiastically accept our responsibility to make employment decisions without regard to race, religious creed, color, age, sex, sexual orientation, national origin, ancestry, citizenship status, religion, marital status, disability, military service or veteran status, genetic information, medical condition including medical characteristics, or any other classification protected by applicable federal, state, and local laws and ordinances. Our management is dedicated to ensuring the fulfillment of this policy with respect to hiring, placement, promotion, transfer, demotion, layoff, termination, recruitment advertising, pay, and other forms of compensation, training, and general treatment during employment.

Reasonable Accommodation

Paymentus recognizes and supports its obligation to endeavor to accommodate job applicants and employees with known physical or mental disabilities who are able to perform the essential functions of the position, with or without reasonable accommodation. Paymentus will endeavor to provide reasonable accommodations to otherwise qualified job applicants and employees with known physical or mental disabilities, unless doing so would impose an undue hardship on the Company or pose a direct threat of substantial harm to the employee or others.

An applicant or employee who believes he or she needs a reasonable accommodation of a disability should discuss the need for possible accommodation with the Human Resources Department, or his or her direct supervisor.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Sr. Security Engineer - SIEM, Automation & Elastic Security
Sr. Security Engineer - SIEM, Automation & Elastic Security

Red Lobster, Inc. • Orlando (FL)

On-site
USD 90,000 - 130,000
Security Software Engineer II, Detection and Response
Security Software Engineer II, Detection and Response

Pinterest • San Francisco (CA)

On-site
USD 123,696 - 254,667
Security Operations Analyst
Security Operations Analyst

Jobgether • United States

Remote
USD 70,000 - 100,000
Remote-first
Unlimited PTO
Medical, dental, vision
+4
Elastic SIEM Engineer - Threat Detection & Automation Lead
Elastic SIEM Engineer - Threat Detection & Automation Lead

Paymentus • Richmond Hill (GA)

On-site
USD 100,000 - 130,000
Security Operations Center (SOC) Analyst (Remote)
Security Operations Center (SOC) Analyst (Remote)

Trace3 • Kansas City (KS)

On-site
USD 70,000 - 90,000
Comprehensive medical, dental and vision plans
401(k) Retirement Plan with Employer Match
Competitive Compensation
+2
Security Engineer, Detection & Response
Security Engineer, Detection & Response

Scale AI, Inc. • Washington

On-site
USD 237,000 - 297,000
Comprehensive health, dental, vision coverage
Retirement benefits
Learning and development stipend
+2
Security Operations Center (SOC) Analyst (Remote)
Security Operations Center (SOC) Analyst (Remote)

Trace3 • Louisville (KY)

On-site
USD 70,000 - 90,000
Comprehensive medical, dental and vision plans
401(k) Retirement Plan with Employer Match
Competitive Compensation
+4
Security Engineer, Detection & Response
Security Engineer, Detection & Response

Scale AI, Inc. • San Francisco (CA)

On-site
USD 237,000 - 297,000
Health benefits
Retirement benefits
Learning and development stipend
+2
Security Engineer, Detection & Response
Security Engineer, Detection & Response

Scale AI, Inc. • New York (NY)

On-site
USD 237,000 - 297,000
Comprehensive health coverage
Equity options
Paid time off
+2
Security Operations Center (SOC) Analyst (Remote)
Security Operations Center (SOC) Analyst (Remote)

Trace3 • Fargo (ND)

On-site
USD 70,000 - 90,000
Comprehensive medical, dental and vision plans
401(k) Retirement Plan with Employer Match
Training and development programs
+1