Security Operations Engineer - Level 3

Veriipro

Blue Ash (OH)

On-site

USD 105,000 - 145,000

Full time

3 days ago
Be an early applicant

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Veriipro in Blue Ash, Ohio is seeking an experienced Level 3 Security Engineer to strengthen our security operations and detection capabilities across enterprise environments. You will monitor events with SIEM/SOAR, develop detections, tune alerts, and support incident investigations while collaborating with cross-functional teams and aligning efforts with MITRE ATT&CK.

This role offers hands-on work across cloud platforms (AWS, Azure, GCP) and on-prem security, contributing to ongoing security

Qualifications

  • Hands-on experience in Security Operations and Security Engineering.
  • Experience with SIEM/SOAR, EDR, email security gateways, and firewalls.
  • Proven detection engineering experience.
  • Experience developing and tuning security rules, alerts, and detection logic.
  • Strong knowledge of MITRE ATT&CK framework.
  • Experience with AWS, Azure, and/or GCP security.
  • Familiarity with Google Cloud Security Operations.
  • Strong analytical, troubleshooting, and incident investigation skills.

Responsibilities

  • Monitor and investigate advanced security events using SIEM, SOAR, EDR, email security gateways, and firewalls.
  • Develop, implement, and maintain security detections, rules, and alerts.
  • Perform rule and alert tuning to improve detection accuracy and reduce false positives.
  • Conduct advanced security investigations and support incident response and threat analysis.
  • Map security detections and activities to the MITRE ATT&CK framework, including relevant tactics and techniques.
  • Develop and enhance detection use cases based on emerging threats and attack patterns.
  • Work across AWS, Azure, and/or GCP environments to monitor and improve cloud security.
  • Collaborate with Security Operations, Incident Response, Threat Intelligence, and Engineering teams.
  • Troubleshoot complex security monitoring and detection issues and provide Level 3 technical support.
  • Continuously improve security monitoring, detection coverage, and operational processes.

Skills

Security Operations
Security Engineering
SIEM/SOAR
EDR
Email security
Firewall technologies
Detection engineering
MITRE ATT&CK
Cloud security AWS/Azure/GCP

Job description

We are seeking an experienced Level 3 Security Engineer with strong expertise in Security Operations, Detection Engineering, SIEM/SOAR, EDR, and cloud security. The ideal candidate will support advanced security monitoring, detection development, alert tuning, and incident investigation across enterprise environments.

Primary Responsibilities
  • Monitor and investigate advanced security events using SIEM, SOAR, EDR, email security gateways, and firewalls.
  • Develop, implement, and maintain security detections, rules, and alerts.
  • Perform rule and alert tuning to improve detection accuracy and reduce false positives.
  • Conduct advanced security investigations and support incident response and threat analysis.
  • Map security detections and activities to the MITRE ATT&CK framework, including relevant tactics and techniques.
  • Develop and enhance detection use cases based on emerging threats and attack patterns.
  • Work across AWS, Azure, and/or GCP environments to monitor and improve cloud security.
  • Collaborate with Security Operations, Incident Response, Threat Intelligence, and Engineering teams.
  • Troubleshoot complex security monitoring and detection issues and provide Level 3 technical support.
  • Continuously improve security monitoring, detection coverage, and operational processes.
Required Skills
  • Strong experience in Security Operations / Security Engineering.
  • Hands-on experience with SIEM/SOAR, EDR, email security, and firewall technologies.
  • Proven experience in Detection Engineering.
  • Experience developing and tuning security rules, alerts, and detection logic.
  • Strong understanding of the MITRE ATT&CK framework.
  • Experience with AWS, Azure, and/or GCP security environments.
  • Familiarity with Google Security Operations.
  • Strong analytical, troubleshooting, and incident investigation skills.
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Security Operations Center (SOC) Tier 3 Analyst / Incident Responder
Security Operations Center (SOC) Tier 3 Analyst / Incident Responder

OneMain Financial • Washington

On-site
USD 140,000 - 190,000
Senior Security Operations & Detection Engineer
Senior Security Operations & Detection Engineer

Veriipro • Blue Ash (OH)

On-site
USD 105,000 - 145,000
Security Specialist - Incident.io
Security Specialist - Incident.io

Executive Operations, LLC • South Lyon (MI)

On-site
USD 80,000 - 120,000
Lead Security Engineer
Lead Security Engineer

Compunnel, Inc. • Washington, Northern (KY)

Hybrid
USD 140,000 - 210,000
Senior Security Operations & Incident Response Engineer
Senior Security Operations & Incident Response Engineer

SCIGON • Chicago (IL)

On-site
USD 113,000 - 150,000
Cyber Defense Platforms Staff Engineer
Cyber Defense Platforms Staff Engineer

Scorpion Therapeutics • Cambridge (MA)

On-site
USD 170,000 - 230,000
Cyber Security Engineer
Cyber Security Engineer

Empirical-Food • Dakota Dunes (SD)

On-site
USD 95,000 - 120,000
IT Security Specialist
IT Security Specialist

ibex • Palestine (TX)

On-site
USD 90,000 - 130,000
Detection Engineer, Security Operations & Telemetry
Detection Engineer, Security Operations & Telemetry

Saronic • Austin (TX)

On-site
Security Engineer
Security Engineer

Atlas Search • New York (NY)

On-site
USD 140,000 - 190,000