Security Operations Engineer

vertexinc

United States

On-site

USD 120,000 - 160,000

Full time

3 days ago
Be an early applicant

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Vertex Inc. is seeking a Security Operations Engineer to strengthen security monitoring, incident response, detection engineering, and SecOps automation.

This hands-on role requires working nights and weekends on a rotating schedule to provide continuous coverage across endpoint, identity, network, cloud, SaaS, and application environments.

Qualifications

  • Hands-on knowledge in security operations, incident response, detection engineering, or threat hunting.
  • Strong knowledge of attacker tactics and techniques across endpoints, identity, network, cloud, and email, including MITRE ATT&CK mapping and IOC analysis.
  • Experience with SIEM platforms and proficiency writing and tuning detection queries using KQL, SPL, Sigma, YARA, or equivalent.
  • Experience with EDR/XDR platforms, including triage, investigation, and containment.
  • Scripting or automation using Python, PowerShell, or Bash; AI-assisted development acceptable with explanation, validation, and maintenance.
  • Practical use of AI tooling for securit y -Claude, Copilot, or OpenAI Codex - to accelerate tooling development and analysis workflows.
  • Experience with at least one cloud platform (AWS, Azure, GCP, or OCI).
  • Solid understanding of identity security, MFA, conditional access, privileged access, token abuse, and identity-based attacks.
  • Strong communication skills with the ability to explain complex security issues to diverse audiences.
  • Independent, self-starter, analytical, evidence-driven work style with strong attention to detail.

Responsibilities

  • Monitor, triage, investigate, and respond to security alerts across endpoint, identity, network, cloud, SaaS, and application environments.
  • Lead end-to-end incident response - detection through containment, eradication, recovery, and post-incident improvement - including root-cause analysis and corrective action tracking.
  • Build, tune, and maintain detection logic across SIEM, EDR, cloud, and network platforms; conduct proactive threat hunting aligned to MITRE ATT&CK.
  • Develop and maintain SecOps tooling, scripts, API integrations, and workflow automations to improve investigation speed and response execution.
  • Apply AI responsibly in SecOps workflows, with the ability to explain, validate, test, and maintain all AI-assisted outputs.
  • Collaborate cross-functionally to close telemetry gaps, improve detection coverage, and translate incident findings into lasting security improvements.

Skills

Security ops
Incident response
Threat hunting
MITRE ATT&CK
SIEM tuning
EDR/XDR
Python scripting
PowerShell
Bash
Cloud platforms
Identity security

Education

Bachelor’s in Cybersecurity

Tools

SIEM platforms
EDR/XDR tools
KQL/SPL/Sigma
YARA

Job description

Job Description:

Vertex Inc. is looking for a Security Operations Engineer role to strengthen our security monitoring, incident response, detection engineering, and SecOps automation capabilities. This role is ideal for a hands-on security practitioner who has a passion for investigating threats, responding to incidents, improving security tooling, and building operational solutions that help security teams work faster and more effectively. Given the 24/7/365 nature of the security operations function, the Security Operations Engineer participates in a rotating shift schedule designed to provide continuous security analysis and incident response coverage. Within the coverage, this will require working nights, weekends, holidays, and extended hours based on the assigned coverage and operational needs.

Responsibilities
  • Monitor, triage, investigate, and respond to security alerts across endpoint, identity, network, cloud, SaaS, and application environments.
  • Lead end-to-end incident response - detection through containment, eradication, recovery, and post-incident improvement - including root-cause analysis and corrective action tracking.
  • Build, tune, and maintain detection logic across SIEM, EDR, cloud, and network platforms; conduct proactive threat hunting aligned to MITRE ATT&CK.
  • Develop and maintain SecOps tooling, scripts, API integrations, and workflow automations to improve investigation speed and response execution.
  • Apply AI responsibly in SecOps workflows, with the ability to explain, validate , test, and maintain all AI-assisted outputs.
  • Collaborate cross-functionally to close telemetry gaps, improve detection coverage, and translate incident findings into lasting security improvements.
Required Qualifications
  • Hands-on knowledge in security operations, incident response, detection engineering, or threat hunting, with demonstrated ability to lead significant investigations.
  • Strong knowledge of attacker tactics and techniques across endpoint, identity, network, cloud, and email environments, including MITRE ATT&CK mapping and IOC analysis.
  • Experience with SIEM platforms (Sentinel, Splunk, Chronicle, QRadar , or Elastic) and proficiency writing and tuning detection queries using KQL, SPL, Sigma, YARA, or equivalent.
  • Experience with EDR/XDR platforms (Defender for Endpoint, CrowdStrike, SentinelOne , Cortex XDR, or Carbon Black), including triage, investigation, and containment.
  • Scripting or automation experience using Python, PowerShell, or Bash; AI-assisted development acceptable provided the candidate can explain, validate , test, and maintain the code.
  • Practical use of AI tooling for securit y - such as Claude, GitHub Copilot, or OpenAI Codex - to accelerate tooling development, detection drafting, and a nalysi s workflows.
  • Experience with at least one cloud platform (AWS, Azure, GCP, or OCI), including cloud logging, identity, and security monitoring.
  • Solid understanding of identity security, including MFA, conditional access, privileged access, token abuse, and identity-based attacks.
  • Strong communication skills with the ability to explain complex security issues to technical and non-technical audiences.
  • Independent, self-starter, analytical, evidence-driven work style with strong attention to detail.
Preferred Qualifications
  • Bachelor's degree in Cybersecurity, Information Assurance, Computer Science, or a related field.
  • Experience with threat intelligence, malware triage, digital forensics, or reverse engineering.
  • Experience with vulnerability management or compliance-driven SecOps (SOC 2, ISO 27001, PCI DSS, or HIPAA).
  • Familiarity with detection-as-code, Git-based workflows, CI/CD pipelines, and code review practices.
  • Relevant certifications such as GIAC (GCFA, GCIH, GCFR, GCLD, GDAT, or GEIR), OffSec (OSIR, OSTH, OSCP, or OSAI), AWS Security Specialty, Google Professional Cloud Security Engineer, Microsoft SC-200, or CompTIA CASP+.
  • Equivalent combination of education, training, and relevant professional experience accepted in lieu of a formal degree.
COMMENTS:

The above statements are intended to describe the general nature and level of work being performed by individuals in this position. Other functions may be assigned, and management retains the right to add or change the duties at any time.

Vertex Values: Together We Win
  • We're building a team of people who are passionate about making an impact for our customers and committed to how that impact is achieved. Our values define the behaviors, mindset, and culture that make Vertex a great place to grow and do meaningful work.
  • Play to Win or We Don't Play - If we choose to do something, we're choosing to do it because we plan to win. That mindset raises our bar on product quality, customer outcomes, and how we show up for one another.
  • Work As a Team, Putting the Customer At the Core - Our customers are our true north. Whatever your role, ask: how will this help a customer succeed today? We earn trust through outcomes
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Security Operations Engineer
Security Operations Engineer

Vertex Inc. • Northern (KY)

Hybrid
USD 91,000 - 119,000
Security Operations Engineer
Security Operations Engineer

Vertex, Inc. • King of Prussia (PA)

On-site
USD 91,000 - 119,000
Security Operations Engineer
Security Operations Engineer

Vertex Inc in • King of Prussia (PA)

On-site
USD 91,000 - 119,000
Security Operations Engineer
Security Operations Engineer

Vertex Inc. • United States

On-site
USD 91,000 - 119,000
Security Operations Engineer: Incident Response & Threat Detection
Security Operations Engineer: Incident Response & Threat Detection

Vertex Inc. • United States

On-site
USD 91,000 - 119,000
Security Operations Engineer: Incident Response & Detection
Security Operations Engineer: Incident Response & Detection

Vertex Inc. • Northern (KY)

Hybrid
USD 91,000 - 119,000
Security Response Engineer — AI-Driven SecOps
Security Response Engineer — AI-Driven SecOps

Vertex Inc in • King of Prussia (PA)

On-site
USD 91,000 - 119,000
Sr. Security Operations Analyst
Sr. Security Operations Analyst

enVista • Carmel (IN)

Hybrid
USD 120,000 - 150,000
Competitive pay bonuses
Comprehensive health coverage
PTO and sabbatical programme
+3
Security Engineer
Security Engineer

Insight Global • Naperville (IL)

On-site
USD 100,000 - 130,000
Security Engineer, Incident Response
Security Engineer, Incident Response

United States Digital Space LLC • New York (NY)

On-site
USD 120,000 - 180,000