Senior SOC Engineer

Jobtailor

North Carolina

On-site

USD 120,000 - 180,000

Full time

5 days ago
Be an early applicant
Application generator

Don’t send a generic resume — generate a resume and cover letter tailored to this exact role.

Get past ATS filters

Job summary

Jobtailor is seeking a senior Security Operations professional to manage advanced threat detection and incident response. You will develop SIEM content, tune alerts, and collaborate with IT to enforce secure configurations across environments.

You will lead investigations, drive remediation, and contribute to audits while staying current with MITRE ATT&CK, cloud security principles, and scripting for automation. In-office in Raleigh, NC or Salt Lake City, UT.

Qualifications

  • 5+ years in security operations.
  • 10+ years earns bonus consideration.
  • Hands-on SIEM expertise, including content development.
  • Experience with CrowdStrike or Carbon Black (EDR).
  • Experience with Mimecast.
  • Experience with vulnerability management tools.
  • Working knowledge of the MITRE ATT&CK framework.
  • Working knowledge of cloud security principles.
  • Python or Bash scripting for automation and workflow improvement.
  • Strong communication skills for briefing leadership and working across non-security teams.
  • Bachelor's degree in IT Security, Computer Science, or related field — or equivalent experience
  • Equivalent relevant experience may substitute for educational requirements at the hiring manager’s discretion
  • Nice to have: CISSP, GIAC, CCSP, or AWS Security Specialty
  • Nice to have: SOAR experience
  • Nice to have: Cloud-native security tooling
  • Must be able to work full-time in-office in Raleigh, NC or Salt Lake City, Utah
  • WGU is not able to provide visa sponsorship for this role

Responsibilities

  • Perform advanced threat detection, analysis, and response across multiple platforms and environments.
  • Lead investigations into security incidents and coordinate remediation efforts.
  • Develop and tune SIEM content, alerts, and dashboards.
  • Monitor endpoint and network security tools to identify anomalies and enforce security policies.
  • Collaborate with engineering and IT teams to implement secure configurations and best practices.
  • Research emerging threats and recommend innovative solutions to strengthen security posture.
  • Support compliance initiatives and contribute to security audits and risk assessments.
  • Lead security incident investigations and drive remediation to closure.
  • Monitor EDR and network tools for anomalies and enforce security policy.
  • Collaborate with engineering to harden configurations and implement secure design.
  • Conduct threat hunting, vulnerability management, and emerging threat research

Skills

Advanced Threat Detection
Incident Response
SIEM Development
Vulnerability Management
Python Scripting
Bash Scripting
Cloud Security Principles
Threat Hunting
Security Audits
Risk Assessments
Strong Communication

Education

Bachelor's degree in IT Security, Computer Science, or related field
Equivalent experience

Tools

CrowdStrike
Carbon Black
Mimecast
EDR Tools
Cloud-native Security Tooling

Job description

Responsibilities
  • Perform advanced threat detection, analysis, and response across multiple platforms and environments
  • Lead investigations into security incidents and coordinate remediation efforts
  • Develop and tune SIEM content, alerts, and dashboards
  • Monitor endpoint and network security tools to identify anomalies and enforce security policies
  • Collaborate with engineering and IT teams to implement secure configurations and best practices
  • Research emerging threats and recommend innovative solutions to strengthen security posture
  • Support compliance initiatives and contribute to security audits and risk assessments
  • Lead security incident investigations and drive remediation to closure
  • Monitor EDR and network tools for anomalies and enforce security policy
  • Collaborate with engineering to harden configurations and implement secure design
  • Conduct threat hunting, vulnerability management, and emerging threat research
Requirements
  • 5+ years in security operations
  • 10+ years earns bonus consideration
  • Hands-on SIEM expertise, including content development
  • Experience with CrowdStrike or Carbon Black (EDR)
  • Experience with Mimecast
  • Experience with vulnerability management tools
  • Working knowledge of the MITRE ATT&CK framework
  • Working knowledge of cloud security principles
  • Python or Bash scripting for automation and workflow improvement
  • Strong communication skills for briefing leadership and working across non-security teams
  • Bachelor's degree in IT Security, Computer Science, or related field — or equivalent experience
  • Equivalent relevant experience may substitute for educational requirements at the hiring manager’s discretion
  • Nice to have: CISSP, GIAC, CCSP, or AWS Security Specialty
  • Nice to have: SOAR experienceNice to have: Cloud-native security tooling
  • Must be able to work full-time in-office in Raleigh, NC or Salt Lake City, Utah
  • WGU is not able to provide visa sponsorship for this role
Core Competencies

Demonstrates expertise in advanced threat detection, incident response, and security operations, with a strong focus on SIEM content development and vulnerability management. Proficient in collaborating with cross-functional teams to implement secure configurations and enhance security posture.

Highest-signal resume keywords
  • Advanced Threat Detection
  • SIEM Content Development
  • CrowdStrike EDR Experience
  • Vulnerability Management Tools
  • MITRE ATT&CK Framework Knowledge
Hard Skills
  • Threat Detection
  • Incident Response
  • SIEM Development
  • Vulnerability Management
  • Python Scripting
  • Bash Scripting
  • Cloud Security Principles
  • Threat Hunting
  • Security Audits
  • Risk Assessments
Soft Skills
  • Strong Communication Skills
Certifications & Qualifications
  • CISSP
  • GIAC
  • CCSP
  • AWS Security Specialty
Industry Keywords
  • Security Operations
  • Incident Investigation
  • Compliance Initiatives
  • Security Policies
  • Emerging Threat Research
Tools & Technologies
  • CrowdStrike
  • Carbon Black
  • Mimecast
  • EDR Tools
  • Cloud-native Security Tooling
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior Advanced Cyber Security Architect
Senior Advanced Cyber Security Architect

Jobtailor • Duluth (GA)

On-site
USD 120,000 - 160,000
Senior Incident Responder, Global CSIRT
Senior Incident Responder, Global CSIRT

Jobtailor • United States

On-site
USD 120,000 - 180,000
Security Operations & Engineering Lead
Security Operations & Engineering Lead

Jobtailor • Brea (CA)

On-site
USD 170,000 - 250,000
Senior Information Security Engineer – SIEM, Detection
Senior Information Security Engineer – SIEM, Detection

Jobtailor • Washington

On-site
USD 170,000 - 250,000
Senior Information Technology Security Analyst
Senior Information Technology Security Analyst

Jobtailor • Philadelphia

On-site
USD 110,000 - 160,000
Lead, Incident Response – Global CSIRT
Lead, Incident Response – Global CSIRT

Jobtailor • United States

On-site
USD 150,000 - 190,000
Health insurance
Cybersecurity Operations Manager
Cybersecurity Operations Manager

Jobtailor • Dearborn (MO)

On-site
USD 140,000 - 190,000
Senior Security Engineer – Threat Intelligence, Detection
Senior Security Engineer – Threat Intelligence, Detection

Jobtailor • Seattle (WA)

On-site
USD 110,000 - 160,000
Sr. Analyst - Security Operations
Sr. Analyst - Security Operations

Solomon Page • Village of Great Neck (NY)

On-site
USD 120,000 - 140,000
Senior Manager, Cybersecurity – TVM, SIEM/SOAR
Senior Manager, Cybersecurity – TVM, SIEM/SOAR

Jobtailor • Chicago (IL)

On-site
USD 120,000 - 160,000