Security Operations Engineer: Incident Response & SIEM

Encore

Coppell (TX)

On-site

USD 78,000 - 101,000

Full time

13 days ago

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Encore's IT Security Engineering role focuses on protecting our global infrastructure through monitoring, incident detection, and rapid response. You will collaborate with systems and network engineers, and drive improvements across security platforms such as SIEM, EDR/MDR, and email security.

The position emphasizes risk reduction, playbook development, and clear communication of findings with stakeholders across the organization.

Qualifications

  • 3 years of general IT experience (help desk or desktop support).
  • 3 years of incident response experience.
  • 3 years of experience with: DNS security, Endpoint Detection and Response, Phishing Analysis, Email Security, Data Loss Prevention, Security Awareness Training, Identity Protection, Cloud Security.

Responsibilities

  • Monitor security alerts, network traffic, and user risk/activity to identify and respond to potential security incidents.
  • Monitor data flows and user activities to detect and help prevent potential data loss.
  • Perform triage and initial investigation of security events and suspicious activity.
  • Identify false positives, tune detections under guidance, and recommend improvements.
  • Execute incident response activities according to documented playbooks and procedures.
  • Document incidents, findings, root causes, and remediation actions.
  • Investigate security events, categorize incidents, and escalate critical or complex issues as appropriate.
  • Assist with root cause analysis and participate in post-incident reviews.
  • Support containment, eradication, and recovery efforts during incidents.
  • Support the operation, monitoring, and health of security platforms including SIEM, EDR/MDR, email security, DNS security, identity protection, and DLP.
  • Assist with SIEM onboarding, log parsing, tuning, and alert optimization.
  • Assist with configuration, testing, and deployment of new security tools and capabilities.
  • Participate in security platform upgrades, changes, and maintenance activities.
  • Follow change management processes for security system updates and enhancements.
  • Assist in troubleshooting security product issues and integration failures.
  • Generate clear and concise incident reports, findings, and analysis summaries.
  • Communicate security risks, incidents, and recommended actions to stakeholders as appropriate.
  • Collaborate with cross-functional teams to align security operations with organizational objectives.
  • Create, maintain and improve documentation, runbooks, playbooks, and operational procedures.
  • Perform other duties as assigned.

Skills

General IT experience
Incident response
DNS security
EDR/MDR
Phishing analysis
Email security
Data Loss Prevention
Identity protection
Cloud security
Security operations
Blue Team
Incident response tactics
IDS/IPS
Firewalls
Proxies
SIEM
EDR

Education

Security certifications

Tools

SIEM
EDR
IDS/IPS
Firewalls
Proxies

Job description

Encore's IT Security Engineering role focuses on protecting our global infrastructure through monitoring, incident detection, and rapid response. You will collaborate with systems and network engineers, and drive improvements across security platforms such as SIEM, EDR/MDR, and email security.

The position emphasizes risk reduction, playbook development, and clear communication of findings with stakeholders across the organization.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Security Operations Engineer — Incident Response & Detection
Security Operations Engineer — Incident Response & Detection

Encore Global • Coppell (TX)

On-site
USD 78,000 - 101,000
Security Operations Engineer: Incident Response & Threat Detection
Security Operations Engineer: Incident Response & Threat Detection

Vertex Inc. • United States

On-site
USD 91,000 - 119,000
Security Operations Engineer — Incident Response & SIEM
Security Operations Engineer — Incident Response & SIEM

Atmos Energy • Dallas (TX)

On-site
USD 90,000 - 130,000
Senior Cyber Defense Engineer — Incident Response & SIEM Lead
Senior Cyber Defense Engineer — Incident Response & SIEM Lead

Selective Insurance • Short Hills (NJ)

On-site
USD 130,000 - 176,000
Hybrid Senior SecOps Engineer II - Incident Response
Hybrid Senior SecOps Engineer II - Incident Response

o9 Solutions • Dallas (TX)

Hybrid
USD 136,000 - 187,000
Competitive salary
Windows or PC laptop
Flexible work – 2 days from home
+2
Security Operations Engineer: Incident Response & Detection
Security Operations Engineer: Incident Response & Detection

Vertex Inc. • Northern (KY)

Hybrid
USD 91,000 - 119,000
Senior Security Ops Engineer — Incident Response & SIEM
Senior Security Ops Engineer — Incident Response & SIEM

TripAdvisor • New York (NY)

Hybrid
USD 120,000 - 150,000
Competitive compensation packages
Flexible work arrangements
Donation matching
+4
Dynamic Security Incident Responder
Dynamic Security Incident Responder

Acrisure, LLC • Atlanta (GA)

On-site
USD 110,000 - 160,000
Medical insurance
Dental insurance
Vision insurance
+4
Security Engineer: SIEM & Incident Response
Security Engineer: SIEM & Incident Response

Atmos Energy Corporation • United States

On-site
USD 110,000 - 150,000
Security Operations Engineer – Incident Response & Detection
Security Operations Engineer – Incident Response & Detection

Vertex, Inc. • King of Prussia (PA)

On-site
USD 91,000 - 119,000