Security Engineer II

The CORE Institute

Phoenix (AZ)

On-site

USD 110,000 - 160,000

Full time

3 days ago
Be an early applicant
Application generator

Stand out for this role — generate a tailored resume and cover letter in about a minute.

Get past ATS filters

Job summary

The CORE Institute in Phoenix, AZ seeks a seasoned SOC Engineer to design and enhance Security Operations Center capabilities, integrate SIEM tools, and automate workflows for 24x7 environments.

You will collaborate with IT and DevOps to implement security controls, respond to incidents, and advance threat detection, risk management, and cloud security across enterprise systems. The role requires 3–6 years in enterprise IT security and strong incident response and automation experience.

Qualifications

  • Associate’s degree in Cybersecurity or IT is required.
  • CISM certification required.
  • 3–6 years IT Systems Engineering experience.
  • 2–5 years Security Engineering experience.
  • Minimum 3 years in SOC Engineering, incident response, or security automation.
  • 3+ years designing secure network and cloud solutions.
  • Azure cloud security design and implementation experience.

Responsibilities

  • Engineer and enhance SOC capabilities and integrate monitoring tools.
  • Implement security frameworks and processes for multi-tenant environments.
  • Deploy, enhance, and maintain enterprise security solutions.
  • Refine incident detection, investigation, and response; participate in 24x7 on-call rotations.
  • Perform advanced analysis of threats and vulnerabilities.
  • Integrate threat intelligence feeds for proactive detection.
  • Ensure security controls comply with NIST, ISO 27001, SOC 2.
  • Define security reference architecture for network and cloud environments.
  • Implement automation strategies for security processes and alert triaging.
  • Collaborate with IT, DevOps, and business units to align security policies.

Skills

SOC Engineering
Security Enablement
Endpoint Security
Incident Response
Threat Intelligence
Risk Management
Automation
Stakeholder Collaboration
Continuous Improvement
Azure Cloud

Education

Associate’s degree in Cybersecurity or IT
CISM Certification
CISSP / GIAC / CCNP Security / PCNSA/PCNSE

Tools

Splunk
Sentinel
QRadar
Palo Alto
Fortinet
Cisco
Check Point
Terraform
ARM templates
PowerShell
Python

Job description

  • SOC Engineering – Engineer and enhance Security Operations Center (SOC) capabilities, integrating security monitoring tools, SIEM solutions, and automation workflows in 24x7 mission critical environments.
  • Security Operations Enablement - Implement security frameworks and processes that enhance the efficiency of security operations teams in multi-tenant and geographically diverse client environments.
  • Endpoint Security Management – Deploy, enhance, and maintain enterprise security solutions to align with best practices to minimize attack surfaces, threats, and security risks within the supported environments.
  • Incident Response Support - Work closely with SOC analysts and Security Engineers to refine incident detection, investigation, and response capabilities including participation in 24x7 on-call escalation rotations while developing and/or modifying incident response procedures. Exercises independent judgment in analyzing and responding to security incidents.
  • Thread Analysis - Performs advanced analysis of security threats and system vulnerabilities
  • Threat Intelligence Integration - Integrate threat intelligence feeds and analytics to improve proactive threat detection and mitigation.
  • Risk Management & Compliance - Ensure security controls comply with industry regulations such as NIST, ISO 27001, and SOC 2.
  • Security Engineering Development - Define and document security reference engineering and best practices for network and cloud environments.
  • Automation & Orchestration - Implement automation strategies for security processes, including security policy management and security alert triaging.
  • Stakeholder Collaboration - Work with IT, DevOps, and business units to align security policies with operational goals.
  • Continuous Improvement - Monitor emerging threats, security trends, and best practices to enhance enterprise security posture.
EDUCATION
  • Education – Associate’s degree in Cybersecurity, Information Technology, and related field hands on experience (required)
  • Preferred Certifications - CISSP, GIAC (GSEC, GCIA, GCIH), CCNP Security, Palo Alto Networks PCNSA/PCNSE, or equivalent.
  • Security Management - Certified Information Security Manager (CISM) required
EXPERIENCE
  • IT Systems Engineering - At least 3-6 years of experience in engineering enterprise IT platforms.
  • Security Engineering - At least 2-5 years of experience managing and implementing enterprise security solutions.
  • SOC Engineering & Security Operations - Minimum of 3 years in SOC engineering, incident response, or security automation.
  • Network Security - Proven experience designing and securing network platforms, including VPNs, proxies, and IDS/IPS solutions.
  • Threat Intelligence & Detection – At least 2-4 years of experience working with SIEM platforms, threat hunting, and endpoint detection response (EDR) solutions.
  • Security Design - A minimum of 3 years of experience in security design and implementation.
  • Azure Cloud Solutions - Proven expertise in designing and deploying Azure cloud solutions including security
KNOWLEDGE
  • Security Operations - In-depth understanding of SOC workflows, log management, and SIEM solutions (Splunk, Sentinel, QRadar, etc.).
  • Firewall Technologies - Expertise in firewalls, including Palo Alto, Fortinet, Cisco, or Check Point.
  • Cloud Technologies – In-depth understanding of cloud computing principles, serverless architectures, and cloud-native development.
  • Cloud Security - Familiarity with cloud security models in AWS, Azure, and Google Cloud.
  • Security Standards & Compliance – Knowledge of cybersecurity principles, authentication protocols (OAuth, SAML).
  • Regulatory Frameworks - Strong knowledge of compliance standards and best practices such as NIST, ISO 27001, SOC-2, PCI-DSS, HIPAA, and GDPR.
  • Automation & Scripting - Experience with Python, PowerShell, or Bash for security automation.
  • Continuous Learning Mindset – Passion for staying up to date with industry trends, emerging technologies, and best practices.
SKILLS
  • Security Design - Ability to design and implement secure architectures.
  • Incident Response & Threat Hunting - Strong analytical skills for investigating security incidents.
  • Security Automation - Proficiency in automating security processes and threat detection workflows.
  • Project Management - Ability to manage security projects and drive cross-functional initiatives.
  • Communication & Leadership - Strong ability to present security concepts to technical and non-technical stakeholders.
  • Strategic Thinking - Align security initiatives with business and IT strategies.
  • Risk Assessment - Identify and prioritize security risks with data-driven analysis.
  • Technical Leadership - Guide teams in implementing best practices for security operations.
  • Adaptability - Stay ahead of emerging cybersecurity threats and technologies
  • Automation & Scripting - Proficiency in PowerShell, Terraform, and ARM templates.
  • Detail-Oriented - Maintain strong attention to detail and organizational skills.
  • Leadership & Mentorship – Strong ability to mentor and guide technical teams, fostering technical growth and collaboration.
  • Effective Communication – Ability to translate complex technical concepts into clear insights for both technical and non-technical audiences.
  • Project & Time Management – Skill in managing multiple projects, prioritizing tasks, working independently, and delivering high-quality solutions within deadlines.
ENVIRONMENTAL WORKING CONDITIONS
  • Standard office environment
  • Position may require travel depending on operational and project requirements.
PHYSICAL/MENTAL DEMANDS
  • Requires prolonged periods of sitting and working at a computer
  • Frequent use of hands for typing and data entry
  • Ability to analyze and respond to high-volume alerts in a fast-paced environment
ORGANIZATIONAL REQUIREMENTS
  • HOPCo Mission, Vision and Values must be acknowledged and adhered to

This description is intended to provide only basic guidelines for meeting job requirements. Responsibilities, knowledge, skills, abilities and working conditions may change as needs evolve.

Equal Opportunity Employer
This employer is required to notify all applicants of their rights pursuant to federal employment laws.For further information, please review the Know Your Rights notice from the Department of Labor.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Security Engineer II
Security Engineer II

Socket.dev • Phoenix (AZ)

On-site
USD 110,000 - 150,000
Security Operations & Engineering Lead
Security Operations & Engineering Lead

Jobtailor • Brea (CA)

On-site
USD 170,000 - 250,000
Network Cybersecurity Analyst - ONSITE (CURRENT TX RESIDENTS)
Network Cybersecurity Analyst - ONSITE (CURRENT TX RESIDENTS)

Chandra Technologies, Inc • Austin (TX)

On-site
USD 70,000 - 100,000
Network Security Analyst
Network Security Analyst

ArnAmy, Inc. • Austin (TX)

On-site
USD 85,000 - 120,000
Network Security Analyst – Level 1
Network Security Analyst – Level 1

Jobtailor • Austin (TX)

On-site
USD 95,000 - 130,000
Security Engineer
Security Engineer

Securiport LLC • Reston (VA)

On-site
USD 110,000 - 170,000
Sr. Security Engineer - SIEM, Automation & Elastic Security
Sr. Security Engineer - SIEM, Automation & Elastic Security

Red Lobster, Inc. • Orlando (FL)

On-site
USD 90,000 - 130,000
Senior Advanced Cyber Security Architect
Senior Advanced Cyber Security Architect

Jobtailor • Duluth (GA)

On-site
USD 120,000 - 160,000
Engineer, Security
Engineer, Security

11:11 Systems • United States

On-site
USD 120,000 - 160,000
SOC Analyst 2
SOC Analyst 2

Mbi Llc • Harrisburg

On-site
USD 60,000 - 90,000