security engineer in cloud security operations

MatchPoint

United States

Remote

USD 100,000 - 150,000

Full time

2 days ago
Be an early applicant
Application generator

A complete application in a minute — tailored resume and cover letter, ready to send.

Get past ATS filters

Job summary

MatchPoint ищет специалиста SOC, который будет контролировать операциононые процессы, отслеживать безопасность в облаке AWS и реагировать на инциденты. В задачи входит управление инструментами безопасности, расследование тревог и эскалация критических событий.

Кандидат должен иметь опыт работы в SOC, знание AWS и CI/CD, а также умение сотрудничать с распределенными командами. Роль предполагает контрактный формат и работу в гибком режиме.

Qualifications

  • Опыт настройки и эксплуатации инструментов безопасности.
  • Опыт работы в SOC с фокусом на мониторинг и реагирование на инциденты.
  • Знание процессов AWS облачных рабочих процессов.
  • Умение работать с CI/CD и GitHub.

Responsibilities

  • Управление повседневной работой SOC: мониторинг событий, расследование тревог и triage.
  • Мониторинг, расследование и реагирование на тревоги endpoint-защиты.
  • Поддержка и оптимизация SIEM: сбор логов, кореляция и оповещение.
  • Поддержка Wazuh и TheHive для эффективного обнаружения угроз и отслеживания инцидентов.
  • Обслуживание инструментов безопасности в AWS, на рабочих станциях и в корпоративной среде.
  • Расследование подозрительной активности, эскалация критических инцидентов.
  • Поддержка рабочих процессов реагирования на инциденты и координация с партнерами.

Skills

SOC experience
Security monitoring
Incident response
GitHub knowledge

Tools

SentinelOne Singularity Complete
Wazuh
TheHive
Okta
Cisco Umbrella
AWS
GitHub
CI/CD

Job description

Описание

The company supports critical security operations within a cloud-based enterprise environment.

Задачи
  • Manage day-to-day SOC operations, including security event monitoring, alert investigation, and incident triage
  • Monitor, investigate, and respond to endpoint security alerts using SentinelOne Singularity Complete
  • Maintain and optimize SIEM infrastructure, including log collection, ingestion, correlation, and alerting
  • Support Wazuh and TheHive to ensure effective threat detection and incident tracking
  • Oversee security instrumentation and ensure appropriate visibility across AWS cloud infrastructure, endpoints, and enterprise systems
  • Investigate suspicious activity, identify potential security threats, and elevate critical incidents when necessary
  • Support incident response workflows and coordinate with external forensic and incident response partners during major security events
  • Manage and troubleshoot security integrations across AWS, Okta, SentinelOne, and Cisco Umbrella
  • Evaluate security monitoring processes and recommend improvements to detection, alerting, and operational efficiency
  • Maintain documentation of security incidents, investigations, monitoring procedures, and operational processes
  • Work independently and collaborate with distributed technical teams across multiple time zones
  • Build monitoring and alerting scripts
  • Support response and investigation when serious incidents arise
Требования
  • Experience configuring and operating security tooling
  • Experience in a SOC role, with a strong focus on monitoring, alerting, and incident response
  • Working knowledge of AWS cloud engineering workflows
  • Working knowledge of modern CI/CD and GitHub
Условия

Contract position

Working hours: 8-5 PM Estonia time

2-3 Openings

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

security engineer in network security
security engineer in network security

MatchPoint • United States

Remote
USD 64,000 - 100,000
security engineer in cloud environments
security engineer in cloud environments

Brandwatch • United States

On-site
USD 90,000 - 130,000
security engineer in enterprise security
security engineer in enterprise security

Samsara • United States

Remote
USD 120,000 - 160,000
Performance-based bonus
Professional development stipend
Health plan
+2
Security Operations Engineer - Incident Response & Monitoring
Security Operations Engineer - Incident Response & Monitoring

MatchPoint • United States

Remote
USD 64,000 - 100,000
SOC Engineer - US
SOC Engineer - US

Inforcer Ltd. • United States

Hybrid
USD 90,000 - 135,000
Competitive salary
Nest pension
Hybrid/remote
+4
SOC Engineer
SOC Engineer

Amentum • Columbia (MD)

On-site
USD 120,000 - 180,000
Security Operations Analyst
Security Operations Analyst

Intrinsicamerica • Northern (KY)

Hybrid
USD 70,000 - 90,000
Cloud Security Engineer
Cloud Security Engineer

MANTECH • Herndon (VA)

On-site
USD 130,000 - 180,000
Information Security Analyst
Information Security Analyst

Cisive • Maryland

On-site
USD 80,000 - 110,000
Security Operations Center (SOC) Analyst / Engineer
Security Operations Center (SOC) Analyst / Engineer

Zoho • United States

On-site
USD 110,000 - 160,000