Senior SOC & Incident Response Engineer

SCIGON

Chicago (IL)

On-site

USD 113,000 - 150,000

Full time

8 days ago
Application generator

Get a reply from this employer — a resume and cover letter tailored to exactly what they’re hiring for.

Get past ATS filters

Job summary

SCIGON is seeking a Senior Security Operations & Incident Response Engineer in Chicago to advance our security operations program. You will own incident response investigations, develop playbooks, and drive detections and automation across hybrid cloud environments (GCP, Azure).

The role requires 5+ years in incident response, strong SIEM/SOAR experience, and proficiency in Python/PowerShell/Bash. Collaboration with cross-functional teams is essential to reduce risk and improve time-to-respond.

Qualifications

  • Bachelor's degree and 5+ years in incident response and SOC tooling.
  • Deep knowledge of SIEM/SOAR platforms and hybrid cloud environments (GCP, Azure).
  • Experience leading incident response as Incident Commander.
  • Scripting in Python, PowerShell, Bash, and XQL preferred.
  • Understanding MITRE ATT&CK, NIST, and ISO frameworks.

Responsibilities

  • Lead deep-dive investigations including memory, network, and malware analysis.
  • Develop and refine incident response playbooks and guidelines.
  • Build threat models and translate pen-test findings into detections.
  • Design and tune detection rules and automated remediation workflows.
  • Tune SIEM rules with the SOC team to maximize fidelity and reduce alerts.
  • Review threat intel, brand protection, and dark web monitoring.
  • Collaborate across teams and act as Incident Commander when needed.
  • Proficiency in scripting and automation, with SOAR tooling.

Skills

Incident response
SOC tooling
Threat modeling
Scripting (Python)
XQL
SOAR automation
Communication

Education

Bachelor's degree

Tools

SIEM
SOAR
GCP
Azure

Job description

SCIGON is seeking a Senior Security Operations & Incident Response Engineer in Chicago to advance our security operations program. You will own incident response investigations, develop playbooks, and drive detections and automation across hybrid cloud environments (GCP, Azure).

The role requires 5+ years in incident response, strong SIEM/SOAR experience, and proficiency in Python/PowerShell/Bash. Collaboration with cross-functional teams is essential to reduce risk and improve time-to-respond.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior Security Operations & Incident Response Engineer
Senior Security Operations & Incident Response Engineer

SCIGON • Chicago (IL)

On-site
USD 113,000 - 150,000
Remote Security Operations & Incident Response Engineer
Remote Security Operations & Incident Response Engineer

Jobgether • United States

Hybrid
USD 125,000 - 190,000
Remote or hybrid work
SOC/IR Engineer: Threat Detection & Response (Hybrid)
SOC/IR Engineer: Threat Detection & Response (Hybrid)

beneschlaw • Chicago (IL)

Hybrid
USD 112,000 - 139,000
Senior Cybersecurity Engineer - Incident Response
Senior Cybersecurity Engineer - Incident Response

ConsultNet Technology Services and Solutions • Chicago (IL)

Hybrid
USD 150,000 - 190,000
Engineer - Security Operations and Incident Response
Engineer - Security Operations and Incident Response

Jobgether • United States

Hybrid
USD 125,000 - 190,000
Remote or hybrid work
SOC Threat Hunter & Incident Response Engineer
SOC Threat Hunter & Incident Response Engineer

Cyberdata Technologies, Inc. • Herndon (VA)

On-site
USD 80,000 - 120,000
Cyber Defense Incident Responder - On-Call Incident Leader
Cyber Defense Incident Responder - On-Call Incident Leader

EY • Chicago (IL)

Hybrid
USD 91,000 - 171,000
Hybrid work model
Competitive compensation
Comprehensive benefits
Senior SOC Lead — Hybrid Incident Response
Senior SOC Lead — Hybrid Incident Response

Legends Global • West Conshohocken (PA)

Hybrid
USD 120,000 - 160,000
Medical insurance
Dental insurance
Vision insurance
+3
Senior SOC Analyst
Senior SOC Analyst

Soni • Philadelphia

On-site
USD 90,000 - 120,000
SOC Lead
SOC Lead

Soni • Philadelphia

On-site
USD 140,000 - 180,000