Senior Cybersecurity Engineer: Detection & Response Leader

on.energy

Houston, Northern (TX, KY)

Hybrid

USD 150,000 - 190,000

Full time

3 days ago
Be an early applicant

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

Medical, dental, and vision insurance
401(k) with company match
Paid time off and company holidays
Professional development and growth

Job summary

ON.energy in Houston, TX is seeking a Sr. Cybersecurity Engineer to own detection and response across the corporate security stack, including Microsoft Sentinel, Defender suite, Purview, and AWS signals.

You will turn telemetry into actionable alerts and drive incident resolution in a SecOps role that interfaces with IT, Legal, and Operations. The ideal candidate has 5+ years in security operations with hands-on detection engineering, experience across multiple telemetry sources, and proficiency

Qualifications

  • 5+ years of hands-on security operations and detection engineering experience.
  • Experience with at least two telemetry sources (endpoint, email, SaaS, or data) and ownership of incident response.

Responsibilities

  • Deploy and own Sentinel data connectors and detections; tune rules for signal quality and cost.
  • Write and tune analytics rules in KQL mapped to MITRE ATT&CK; run tuning board and remove noisy rules.
  • Own the incident response lifecycle end-to-end for Sentinel incidents; maintain playbooks for major scenarios; conduct tabletop exercises.
  • Triage and respond to Defender for Endpoint/Office 365 alerts; investigate, contain, and close loops into Sentinel.
  • Own detection logic for Defender for Cloud Apps; feed into Sentinel; assist governance with SaaS risks.
  • Detect and respond for Purview DLP and insider risk alerts; investigate, assess exposure, and close incidents.
  • Provide technical evidence for SOC 2, ISO 27001, NIST CSF audits; support audits as technical operator.
  • Ingest AWS GuardDuty findings into Sentinel; manage telemetry pipelines from cloud sources.

Skills

Sentinel SIEM
Defender suite
Purview DLP/Insider risk
Entra ID
KQL
PowerShell
Graph API
Python

Tools

AWS GuardDuty

Job description

ON.energy in Houston, TX is seeking a Sr. Cybersecurity Engineer to own detection and response across the corporate security stack, including Microsoft Sentinel, Defender suite, Purview, and AWS signals.

You will turn telemetry into actionable alerts and drive incident resolution in a SecOps role that interfaces with IT, Legal, and Operations. The ideal candidate has 5+ years in security operations with hands-on detection engineering, experience across multiple telemetry sources, and proficiency

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior SecOps: Detection & Incident Response Engineer
Senior SecOps: Detection & Incident Response Engineer

ON.energy • Houston (TX)

On-site
USD 140,000 - 200,000
Medical, dental, and vision insurance
401(k) with company match
Paid time off and holidays
Sr. Cybersecurity Engineer, Detection & Response
Sr. Cybersecurity Engineer, Detection & Response

ON.energy • Houston (TX)

On-site
USD 140,000 - 200,000
Medical, dental, and vision insurance
401(k) with company match
Paid time off and holidays
Sr. Cybersecurity Engineer, Detection & Response New Houston, Texas, United States
Sr. Cybersecurity Engineer, Detection & Response New Houston, Texas, United States

on.energy • Houston (TX), Northern (KY)

Hybrid
USD 150,000 - 190,000
Medical, dental, and vision insurance
401(k) with company match
Paid time off and company holidays
+1
Cybersecurity Operations Analyst - Hybrid SIEM & Cloud
Cybersecurity Operations Analyst - Hybrid SIEM & Cloud

Enterprise Products • Houston (TX)

On-site
USD 85,000 - 115,000
Senior SecOps Analyst: Detection, Response & Threat Hunting
Senior SecOps Analyst: Detection, Response & Threat Hunting

Saronic Technologies • Austin (TX)

On-site
USD 120,000 - 180,000
Medical Insurance
Dental Insurance
Vision Insurance
+8
Senior SOC Analyst: Lead Incident Response & Threat Hunting
Senior SOC Analyst: Lead Incident Response & Threat Hunting

Confidential • Houston (TX)

Hybrid
USD 110,000 - 150,000
SOC Threat Hunter & Incident Response Engineer
SOC Threat Hunter & Incident Response Engineer

Cyberdata Technologies, Inc. • Herndon (VA)

On-site
USD 80,000 - 120,000
Senior Security Engineer: AI-Driven Detection & Response
Senior Security Engineer: AI-Driven Detection & Response

hackerone • San Francisco (CA)

On-site
USD 182,000 - 202,000
Health insurance
Equity stock options
Retirement plans
+4
Cybersecurity Operations & Incident Response Lead
Cybersecurity Operations & Incident Response Lead

AEP Service Corporation • Austin (TX)

On-site
USD 99,000 - 129,000
Benefits package
Senior SOC Engineer: Incident Response & Automation Lead
Senior SOC Engineer: Incident Response & Automation Lead

TENEX.AI • Sarasota (FL)

On-site
USD 90,000 - 120,000