Security Operations & Incident Response Engineer - Remote

Pearl Consulting Group.

Northern (KY)

Hybrid

USD 110,000 - 170,000

Full time

14 days+
Application generator

Turn this role into an interview — a resume and cover letter built around what this employer wants.

Get past ATS filters

Job summary

Pearl Consulting Group is seeking an Engineer in Security Operations and Incident Response. The role focuses on maturing the organization's SOC and IR program, with responsibilities spanning digital forensics, playbook development, threat modeling, and detection engineering in hybrid cloud environments.

Ideal candidates bring 5+ years in IR, strong SIEM/SOAR experience, and proficiency in scripting. This position supports remote and hybrid work arrangements across North America.

Qualifications

  • Bachelor’s degree with 5+ years in incident response and SOC tooling.

Responsibilities

  • Provide expert support for deep‑dive investigations including digital forensics.
  • Author IR playbooks and guidelines to keep the team agile.
  • Develop threat models and incorporate pen-test findings into detection strategies.
  • Design complex detection rules and automated remediation workflows.
  • Utilize threat intel and MITRE ATT&CK to identify visibility gaps.
  • Maintain docs of detection strategies and incident timelines.
  • Tune SIEM rules to maximize detection and minimize alert fatigue.
  • Review threat intel and dark web monitoring systems.
  • Script and query using Python/PowerShell/Bash/XQL; leverage SOAR.
  • Support IR leadership as backup on IR activities.

Skills

Incident response
SOC tooling
Threat modeling
Scripting languages
Python
PowerShell
Bash
XQL
Communication
Hybrid cloud ops

Education

Bachelor’s degree

Tools

Microsoft Sentinel
Cortex XSIAM
XSOAR

Job description

Pearl Consulting Group is seeking an Engineer in Security Operations and Incident Response. The role focuses on maturing the organization's SOC and IR program, with responsibilities spanning digital forensics, playbook development, threat modeling, and detection engineering in hybrid cloud environments.

Ideal candidates bring 5+ years in IR, strong SIEM/SOAR experience, and proficiency in scripting. This position supports remote and hybrid work arrangements across North America.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Engineer - Security Operations and Incident Response
Engineer - Security Operations and Incident Response

Pearl Consulting Group. • Northern (KY)

Hybrid
USD 110,000 - 170,000
Engineer - Security Operations and Incident Response
Engineer - Security Operations and Incident Response

Pearl Consulting Group • United States

Hybrid
USD 120,000 - 170,000
Senior Incident Response Engineer - Remote/Hybrid
Senior Incident Response Engineer - Remote/Hybrid

LinkedIn • United States

Hybrid
USD 129,000 - 212,000
Annual bonus
Stock plans
Benefits
Security Analyst-Incident Response
Security Analyst-Incident Response

Consulting Solutions • Pittsburgh

Hybrid
USD 120,000 - 160,000
Senior Incident Response Engineer — Remote Leader
Senior Incident Response Engineer — Remote Leader

FICO • Northern (KY)

Hybrid
USD 137,000 - 215,000
Remote Security Operations Analyst - Threat Detection & Response
Remote Security Operations Analyst - Threat Detection & Response

Remote Genie • Northern (KY)

Hybrid
USD 70,000 - 90,000
Remote-first culture
Unlimited PTO
Medical, dental, vision covered
+2
SOC Threat Hunter & Incident Response Engineer
SOC Threat Hunter & Incident Response Engineer

Cyberdata Technologies, Inc. • Herndon (VA)

On-site
USD 80,000 - 120,000
Senior Security Operations & Incident Response Engineer
Senior Security Operations & Incident Response Engineer

SCIGON • Chicago (IL)

On-site
USD 113,000 - 150,000
Remote Information Security Engineer - Incident Response
Remote Information Security Engineer - Incident Response

Keepersecurity • United States

On-site
USD 90,000 - 130,000
Medical, Dental & Vision
401K (Roth/Traditional)
Generous PTO plan
+1
Senior Security Ops Analyst: Incident Response & Threats
Senior Security Ops Analyst: Incident Response & Threats

Solomon Page • Village of Great Neck (NY)

On-site
USD 120,000 - 140,000