Senior SecOps: Detection & Incident Response Engineer

ON.energy

Houston (TX)

On-site

USD 140,000 - 200,000

Full time

44 hours ago
Be an early applicant

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

Medical, dental, and vision insurance
401(k) with company match
Paid time off and holidays

Job summary

ON.energy in Houston seeks a Sr. Cybersecurity Engineer to own detection and response across the SIEM, Defender suite, SaaS applications, and data movements. You will translate telemetry into actionable alerts and drive incident resolution in a fast-paced SecOps environment.

You will tune detections, write KQL rules, and support audits (SOC 2, ISO 27001, NIST CSF) while collaborating with IT, Legal, and Operations. Hybrid MS/AWS experience and energy infrastructure familiarity are preferred.

Qualifications

  • 5+ years of hands-on security operations and detection engineering experience, with depth in at least two telemetry sources (endpoint, email, SaaS, or data security).
  • Experience owning incident response lifecycle end-to-end and ability to lead post-incident reviews.
  • Experience supporting technical audits (SOC 2, ISO 27001, NIST CSF, or similar) as the technical operator.

Responsibilities

  • Detection Engineering & Incident Response: deploy and own Sentinel, write detections, and manage IR lifecycle.
  • Endpoint, Email, App & Data Security: triage and respond to Defender alerts; manage detections in Sentinel.
  • Data Security: own DLP and insider risk detections flowing into Sentinel; investigate matches and drive closure.
  • Control Frameworks & Audit Support: provide technical evidence for audits and answer security questions for customers.
  • Consume AWS GuardDuty findings into Sentinel and write detections against them.

Skills

KQL
PowerShell
Graph API
Python
Microsoft Sentinel
Defender suite
Purview
Entra ID

Tools

Microsoft Sentinel
Defender for Endpoint
Defender for O365
Defender for Cloud Apps
Purview
Entra ID

Job description

ON.energy in Houston seeks a Sr. Cybersecurity Engineer to own detection and response across the SIEM, Defender suite, SaaS applications, and data movements. You will translate telemetry into actionable alerts and drive incident resolution in a fast-paced SecOps environment.

You will tune detections, write KQL rules, and support audits (SOC 2, ISO 27001, NIST CSF) while collaborating with IT, Legal, and Operations. Hybrid MS/AWS experience and energy infrastructure familiarity are preferred.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior Cybersecurity Engineer: Detection & Response Leader
Senior Cybersecurity Engineer: Detection & Response Leader

on.energy • Houston (TX), Northern (KY)

Hybrid
USD 150,000 - 190,000
Medical, dental, and vision insurance
401(k) with company match
Paid time off and company holidays
+1
Sr. Cybersecurity Engineer, Detection & Response
Sr. Cybersecurity Engineer, Detection & Response

ON.energy • Houston (TX)

On-site
USD 140,000 - 200,000
Medical, dental, and vision insurance
401(k) with company match
Paid time off and holidays
Sr. Cybersecurity Engineer, Detection & Response New Houston, Texas, United States
Sr. Cybersecurity Engineer, Detection & Response New Houston, Texas, United States

on.energy • Houston (TX), Northern (KY)

Hybrid
USD 150,000 - 190,000
Medical, dental, and vision insurance
401(k) with company match
Paid time off and company holidays
+1
Cybersecurity Operations Analyst - Hybrid SIEM & Cloud
Cybersecurity Operations Analyst - Hybrid SIEM & Cloud

Enterprise Products • Houston (TX)

On-site
USD 85,000 - 115,000
Senior SecOps Analyst: Detection, Response & Threat Hunting
Senior SecOps Analyst: Detection, Response & Threat Hunting

Saronic Technologies • Austin (TX)

On-site
USD 120,000 - 180,000
Medical Insurance
Dental Insurance
Vision Insurance
+8
Senior SecOps Engineer — Hybrid, Incident Response Lead
Senior SecOps Engineer — Hybrid, Incident Response Lead

o9 Solutions, Inc. • United States

Hybrid
USD 136,000 - 187,000
Competitive Salary
Flexible Work (work from home two days
Diversity & Inclusion
+1
Senior SOC Analyst: Lead Incident Response & Threat Hunting
Senior SOC Analyst: Lead Incident Response & Threat Hunting

Confidential • Houston (TX)

Hybrid
USD 110,000 - 150,000
SOC Threat Hunter & Incident Response Engineer
SOC Threat Hunter & Incident Response Engineer

Cyberdata Technologies, Inc. • Herndon (VA)

On-site
USD 80,000 - 120,000
Jr. Security Operations Analyst
Jr. Security Operations Analyst

bickhamservices • Houston (TX)

Hybrid
USD 61,992 - 68,880
Hybrid Senior SecOps Engineer II - Incident Response
Hybrid Senior SecOps Engineer II - Incident Response

o9 Solutions • Dallas (TX)

Hybrid
USD 136,000 - 187,000
Competitive salary
Windows or PC laptop
Flexible work – 2 days from home
+2