Security Engineer II

Socket.dev

Phoenix (AZ)

On-site

USD 110,000 - 150,000

Full time

3 days ago
Be an early applicant
Application generator

Stand out for this role — generate a tailored resume and cover letter in about a minute.

Get past ATS filters

Job summary

Socket.dev is seeking a seasoned SOC Engineer to enhance security operations for 24x7 environments, integrating SIEMs and automation. You will lead incident response, threat hunting, and secure network/cloud designs while collaborating with IT, DevOps, and business units.

The role emphasizes security design, automation, and governance across Azure and cloud-native environments, with on-call rotations and on-site collaboration in a dynamic enterprise setting.

Qualifications

  • Bachelor-level equivalent education in cybersecurity or IT with hands-on experience.
  • CISSP, GIAC (GSEC, GCIA, GCIH), CCNP Security, PCNSA/PCNSE or equivalent preferred.
  • CISM certification required for security management.

Responsibilities

  • Engineer and enhance SOC capabilities and automation workflows for 24x7 environments.
  • Implement security frameworks and processes for multi-tenant client environments.
  • Deploy and maintain enterprise security solutions to minimize attack surfaces.
  • Refine incident detection, investigation, and response with SOC analysts and engineers, including on-call rotations.
  • Integrate threat intel feeds to improve proactive threat detection.
  • Ensure security controls comply with NIST, ISO 27001, SOC 2, PCI-DSS, HIPAA, GDPR.

Skills

Security design
Incident response
Security automation
Project management
Communication & leadership
Strategic thinking
Risk assessment
Technical leadership
Adaptability
Automation & scripting
Detail-oriented
Leadership & mentorship
Effective communication
Project & time management

Education

Associate’s degree in Cybersecurity/IT
CISSP certification, GIAC certifications, CCNP Security, PCNSA/PCNSE
CISM certification

Tools

Splunk
Microsoft Sentinel
QRadar
Palo Alto Networks

Job description

ESSENTIAL FUNCTIONS
  • SOC Engineering – Engineer and enhance Security Operations Center (SOC) capabilities, integrating security monitoring tools, SIEM solutions, and automation workflows in 24x7 mission critical environments.
  • Security Operations Enablement - Implement security frameworks and processes that enhance the efficiency of security operations teams in multi-tenant and geographically diverse client environments.
  • Endpoint Security Management – Deploy, enhance, and maintain enterprise security solutions to align with best practices to minimize attack surfaces, threats, and security risks within the supported environments.
  • Incident Response Support - Work closely with SOC analysts and Security Engineers to refine incident detection, investigation, and response capabilities including participation in 24x7 on-call escalation rotations while developing and/or modifying incident response procedures. Exercises independent judgment in analyzing and responding to security incidents.
  • Thread Analysis - Performs advanced analysis of security threats and system vulnerabilities
  • Threat Intelligence Integration - Integrate threat intelligence feeds and analytics to improve proactive threat detection and mitigation.
  • Risk Management & Compliance - Ensure security controls comply with industry regulations such as NIST, ISO 27001, and SOC 2.
  • Security Engineering Development - Define and document security reference engineering and best practices for network and cloud environments.
  • Automation & Orchestration - Implement automation strategies for security processes, including security policy management and security alert triaging.
  • Stakeholder Collaboration - Work with IT, DevOps, and business units to align security policies with operational goals.
  • Continuous Improvement - Monitor emerging threats, security trends, and best practices to enhance enterprise security posture.
EDUCATION
  • Education – Associate’s degree in Cybersecurity, Information Technology, and related field hands on experience (required)
  • Preferred Certifications - CISSP, GIAC (GSEC, GCIA, GCIH), CCNP Security, Palo Alto Networks PCNSA/PCNSE, or equivalent.
  • Security Management - Certified Information Security Manager (CISM) required
EXPERIENCE
  • IT Systems Engineering - At least 3-6 years of experience in engineering enterprise IT platforms.
  • Security Engineering - At least 2-5 years of experience managing and implementing enterprise security solutions.
  • SOC Engineering & Security Operations - Minimum of 3 years in SOC engineering, incident response, or security automation.
  • Network Security - Proven experience designing and securing network platforms, including VPNs, proxies, and IDS/IPS solutions.
  • Threat Intelligence & Detection – At least 2-4 years of experience working with SIEM platforms, threat hunting, and endpoint detection response (EDR) solutions.
  • Security Design - A minimum of 3 years of experience in security design and implementation.
  • Azure Cloud Solutions - Proven expertise in designing and deploying Azure cloud solutions including security
KNOWLEDGE
  • Security Operations - In-depth understanding of SOC workflows, log management, and SIEM solutions (Splunk, Sentinel, QRadar, etc.).
  • Firewall Technologies - Expertise in firewalls, including Palo Alto, Fortinet, Cisco, or Check Point.
  • Cloud Technologies – In-depth understanding of cloud computing principles, serverless architectures, and cloud-native development.
  • Cloud Security - Familiarity with cloud security models in AWS, Azure, and Google Cloud.
  • Security Standards & Compliance – Knowledge of cybersecurity principles, authentication protocols (OAuth, SAML).
  • Regulatory Frameworks - Strong knowledge of compliance standards and best practices such as NIST, ISO 27001, SOC-2, PCI-DSS, HIPAA, and GDPR.
  • Automation & Scripting - Experience with Python, PowerShell, or Bash for security automation.
  • Continuous Learning Mindset – Passion for staying up to date with industry trends, emerging technologies, and best practices.
SKILLS
  • Security Design - Ability to design and implement secure architectures.
  • Incident Response & Threat Hunting - Strong analytical skills for investigating security incidents.
  • Security Automation - Proficiency in automating security processes and threat detection workflows.
  • Project Management - Ability to manage security projects and drive cross-functional initiatives.
  • Communication & Leadership - Strong ability to present security concepts to technical and non-technical stakeholders.
  • Strategic Thinking - Align security initiatives with business and IT strategies.
  • Risk Assessment - Identify and prioritize security risks with data-driven analysis.
  • Technical Leadership - Guide teams in implementing best practices for security operations.
  • Adaptability - Stay ahead of emerging cybersecurity threats and technologies
  • Automation & Scripting - Proficiency in PowerShell, Terraform, and ARM templates.
  • Detail-Oriented - Maintain strong attention to detail and organizational skills.
  • Leadership & Mentorship – Strong ability to mentor and guide technical teams, fostering technical growth and collaboration.
  • Effective Communication – Ability to translate complex technical concepts into clear insights for both technical and non-technical audiences.
  • Project & Time Management – Skill in managing multiple projects, prioritizing tasks, working independently, and delivering high-quality solutions within deadlines.
ENVIRONMENTAL WORKING CONDITIONS
  • Standard office environment
  • Position may require travel depending on operational and project requirements.
PHYSICAL/MENTAL DEMANDS
  • Requires prolonged periods of sitting and working at a computer
  • Frequent use of hands for typing and data entry
  • Ability to analyze and respond to high-volume alerts in a fast-paced environment
ORGANIZATIONAL REQUIREMENTS
  • HOPCo Mission, Vision and Values must be acknowledged and adhered to

This description is intended to provide only basic guidelines for meeting job requirements. Responsibilities, knowledge, skills, abilities and working conditions may change as needs evolve.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Security Engineer II
Security Engineer II

The CORE Institute • Phoenix (AZ)

On-site
USD 110,000 - 160,000
Sr. Security Engineer - SIEM, Automation & Elastic Security
Sr. Security Engineer - SIEM, Automation & Elastic Security

Red Lobster, Inc. • Orlando (FL)

On-site
USD 90,000 - 130,000
IT Security - Sr. Analyst
IT Security - Sr. Analyst

CKE Restaurants, Inc. • Franklin (TN)

On-site
USD 85,000 - 110,000
Network Security Analyst
Network Security Analyst

ArnAmy, Inc. • Austin (TX)

On-site
USD 85,000 - 120,000
Security Engineer
Security Engineer

Securiport LLC • Reston (VA)

On-site
USD 110,000 - 170,000
Network Cybersecurity Analyst - ONSITE (CURRENT TX RESIDENTS)
Network Cybersecurity Analyst - ONSITE (CURRENT TX RESIDENTS)

Chandra Technologies, Inc • Austin (TX)

On-site
USD 70,000 - 100,000
Senior Security Engineer
Senior Security Engineer

Socket.dev • Merrill (WI)

Hybrid
USD 140,000 - 180,000
Security Operations & Engineering Lead
Security Operations & Engineering Lead

Jobtailor • Brea (CA)

On-site
USD 170,000 - 250,000
Information Security Engineer
Information Security Engineer

International Executive Service Corps • Lenexa (KS), Northern (KY)

Hybrid
USD 95,000 - 180,000
Medical, Dental, Vision
Life/AD&D
Supplemental Life/AD&D
+6
Network Security Analyst – Level 1
Network Security Analyst – Level 1

Jobtailor • Austin (TX)

On-site
USD 95,000 - 130,000