Security Engineer II

Healthcare Outcomes Performance Co. (HOPCo)

Phoenix (AZ)

On-site

USD 120,000 - 170,000

Full time

11 hours ago
Be an early applicant
Application generator

Stand out for this role — generate a tailored resume and cover letter in about a minute.

Get past ATS filters

Job summary

Healthcare Outcomes Performance Co. (HOPCo) is seeking a senior SOC engineer to enhance and automate security operations across 24x7 environments in Phoenix.

You will implement SIEM integrations, develop incident response procedures, and collaborate with IT, DevOps, and business units to align security with operations. The role requires hands-on experience in SOC workflows, threat hunting, and cloud security, with strong scripting skills and leadership capabilities to mentor junior engineers and

Qualifications

  • Associate’s degree in Cybersecurity or related field required.
  • CISM certification required; CISSP/GIAC preferred.
  • Minimum 3–6 years IT systems engineering and 2–5 years security engineering experience.

Responsibilities

  • Engineer and enhance SOC capabilities with SIEM and automation in 24x7 environments.
  • Implement security frameworks and processes across multi-tenant client environments.
  • Deploy and maintain enterprise security solutions to minimize risk.
  • Participate in on-call escalation rotations and refine incident response procedures.
  • Integrate threat intelligence feeds to improve proactive detection.
  • Collaborate with IT, DevOps, and business units to align security with operations.
  • Monitor threats and continuously improve security posture.

Skills

Security operations
Incident response
Threat hunting
Cloud security
Automation & scripting

Education

Associate’s degree in Cybersecurity/IT
CISM
CISSP/GIAC preferred
CCNP Security or PCNSA/PCNSE

Tools

SIEM platforms
Python scripting

Job description

  • SOC Engineering – Engineer and enhance Security Operations Center (SOC) capabilities, integrating security monitoring tools, SIEM solutions, and automation workflows in 24x7 mission critical environments.
  • Security Operations Enablement - Implement security frameworks and processes that enhance the efficiency of security operations teams in multi-tenant and geographically diverse client environments.
  • Endpoint Security Management – Deploy, enhance, and maintain enterprise security solutions to align with best practices to minimize attack surfaces, threats, and security risks within the supported environments.
  • Incident Response Support - Work closely with SOC analysts and Security Engineers to refine incident detection, investigation, and response capabilities including participation in 24x7 on-call escalation rotations while developing and/or modifying incident response procedures. Exercises independent judgment in analyzing and responding to security incidents.
  • Thread Analysis - Performs advanced analysis of security threats and system vulnerabilities
  • Threat Intelligence Integration - Integrate threat intelligence feeds and analytics to improve proactive threat detection and mitigation.
  • Risk Management & Compliance - Ensure security controls comply with industry regulations such as NIST, ISO 27001, and SOC 2.
  • Security Engineering Development - Define and document security reference engineering and best practices for network and cloud environments.
  • Automation & Orchestration - Implement automation strategies for security processes, including security policy management and security alert triaging.
  • Stakeholder Collaboration - Work with IT, DevOps, and business units to align security policies with operational goals.
  • Continuous Improvement - Monitor emerging threats, security trends, and best practices to enhance enterprise security posture.
Essential Functions
  • SOC Engineering – Engineer and enhance Security Operations Center (SOC) capabilities, integrating security monitoring tools, SIEM solutions, and automation workflows in 24x7 mission critical environments.
  • Security Operations Enablement - Implement security frameworks and processes that enhance the efficiency of security operations teams in multi-tenant and geographically diverse client environments.
  • Endpoint Security Management – Deploy, enhance, and maintain enterprise security solutions to align with best practices to minimize attack surfaces, threats, and security risks within the supported environments.
  • Incident Response Support - Work closely with SOC analysts and Security Engineers to refine incident detection, investigation, and response capabilities including participation in 24x7 on-call escalation rotations while developing and/or modifying incident response procedures. Exercises independent judgment in analyzing and responding to security incidents.
  • Thread Analysis - Performs advanced analysis of security threats and system vulnerabilities
  • Threat Intelligence Integration - Integrate threat intelligence feeds and analytics to improve proactive threat detection and mitigation.
  • Risk Management & Compliance - Ensure security controls comply with industry regulations such as NIST, ISO 27001, and SOC 2.
  • Security Engineering Development - Define and document security reference engineering and best practices for network and cloud environments.
  • Automation & Orchestration - Implement automation strategies for security processes, including security policy management and security alert triaging.
  • Stakeholder Collaboration - Work with IT, DevOps, and business units to align security policies with operational goals.
  • Continuous Improvement - Monitor emerging threats, security trends, and best practices to enhance enterprise security posture.
EDUCATION
  • Education – Associate’s degree in Cybersecurity, Information Technology, and related field hands on experience (required)
  • Preferred Certifications - CISSP, GIAC (GSEC, GCIA, GCIH), CCNP Security, Palo Alto Networks PCNSA/PCNSE, or equivalent.
  • Security Management - Certified Information Security Manager (CISM) required
Experience
  • IT Systems Engineering - At least 3-6 years of experience in engineering enterprise IT platforms.
  • Security Engineering - At least 2-5 years of experience managing and implementing enterprise security solutions.
  • SOC Engineering & Security Operations - Minimum of 3 years in SOC engineering, incident response, or security automation.
  • Network Security - Proven experience designing and securing network platforms, including VPNs, proxies, and IDS/IPS solutions.
  • Threat Intelligence & Detection – At least 2-4 years of experience working with SIEM platforms, threat hunting, and endpoint detection response (EDR) solutions.
  • Security Design - A minimum of 3 years of experience in security design and implementation.
  • Azure Cloud Solutions - Proven expertise in designing and deploying Azure cloud solutions including security
KNOWLEDGE
  • Security Operations - In-depth understanding of SOC workflows, log management, and SIEM solutions (Splunk, Sentinel, QRadar, etc.).
  • Firewall Technologies - Expertise in firewalls, including Palo Alto, Fortinet, Cisco, or Check Point.
  • Cloud Technologies – In-depth understanding of cloud computing principles, serverless architectures, and cloud-native development.
  • Cloud Security - Familiarity with cloud security models in AWS, Azure, and Google Cloud.
  • Security Standards & Compliance – Knowledge of cybersecurity principles, authentication protocols (OAuth, SAML).
  • Regulatory Frameworks - Strong knowledge of compliance standards and best practices such as NIST, ISO 27001, SOC-2, PCI-DSS, HIPAA, and GDPR.
  • Automation & Scripting - Experience with Python, PowerShell, or Bash for security automation.
  • Continuous Learning Mindset – Passion for staying up to date with industry trends, emerging technologies, and best practices.
Skills
  • Security Design - Ability to design and implement secure architectures.
  • Incident Response & Threat Hunting - Strong analytical skills for investigating security incidents.
  • Security Automation - Proficiency in automating security processes and threat detection workflows.
  • Project Management - Ability to manage security projects and drive cross-functional initiatives.
  • Communication & Leadership - Strong ability to present security concepts to technical and non-technical stakeholders.
  • Strategic Thinking - Align security initiatives with business and IT strategies.
  • Risk Assessment - Identify and prioritize security risks with data-driven analysis.
  • Technical Leadership - Guide teams in implementing best practices for security operations.
  • Leadership & Mentorship – Strong ability to mentor and guide technical teams, fostering technical growth and collaboration.
  • Effective Communication – Ability to translate complex technical concepts into clear insights for both technical and non-technical audiences.
  • Project & Time Management – Skill in managing multiple projects, prioritizing tasks, working independently, and delivering high-quality solutions within deadlines.
ENVIRONMENTAL WORKING CONDITIONS
  • Standard office environment
  • Position may require travel depending on operational and project requirements.
PHYSICAL/MENTAL DEMANDS
  • Requires prolonged periods of sitting and working at a computer
  • Frequent use of hands for typing and data entry
  • Ability to analyze and respond to high-volume alerts in a fast-paced environment
Organizational Requirements
  • HOPCo Mission, Vision and Values must be acknowledged and adhered to

This description is intended to provide only basic guidelines for meeting job requirements. Responsibilities, knowledge, skills, abilities and working conditions may change as needs evolve.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Security Engineer II
Security Engineer II

Socket.dev • Phoenix (AZ)

On-site
USD 110,000 - 150,000
Security Engineer II
Security Engineer II

The CORE Institute • Phoenix (AZ)

On-site
USD 110,000 - 160,000
Network Security Analyst
Network Security Analyst

ArnAmy, Inc. • Austin (TX)

On-site
USD 85,000 - 120,000
Network Cybersecurity Analyst - ONSITE (CURRENT TX RESIDENTS)
Network Cybersecurity Analyst - ONSITE (CURRENT TX RESIDENTS)

Chandra Technologies, Inc • Austin (TX)

On-site
USD 70,000 - 100,000
IT Security - Sr. Analyst
IT Security - Sr. Analyst

CKE Restaurants, Inc. • Franklin (TN)

On-site
USD 85,000 - 110,000
Security Operations & Engineering Lead
Security Operations & Engineering Lead

Jobtailor • Brea (CA)

On-site
USD 170,000 - 250,000
Sr. Security Engineer - SIEM, Automation & Elastic Security
Sr. Security Engineer - SIEM, Automation & Elastic Security

Red Lobster, Inc. • Orlando (FL)

On-site
USD 90,000 - 130,000
Network Security Analyst – Level 1
Network Security Analyst – Level 1

Jobtailor • Austin (TX)

On-site
USD 95,000 - 130,000
Security Engineer
Security Engineer

Securiport LLC • Reston (VA)

On-site
USD 110,000 - 170,000
Information Security Engineer
Information Security Engineer

Clinical Reference Laboratory • Lenexa (KS)

On-site
USD 95,000 - 180,000
Medical, Dental, Vision
Life/AD&D
Section 125 FSA Plan
+4