SOC / Security Automation & Integration Engineer - 171462

ZP Group

Raleigh (NC)

On-site

USD 110,000 - 135,000

Full time

14 days+
Application generator

Turn this role into an interview — a resume and cover letter built around what this employer wants.

Get past ATS filters

Benefits offered by this job

Medical insurance
Dental insurance
Vision insurance
401K

Job summary

Piper Companies seeks a SOC / Security Automation & Integration Engineer to join a mission-driven cybersecurity environment supporting advanced security operations and threat detection initiatives. This on-site, long-term consulting role acts as the technical bridge between security platforms, threat intelligence, monitoring tools, and operational workflows to create a more automated and resilient SOC.

The engineer will design, implement, and maintain integrations, develop automation tooling in

Qualifications

  • Active Secret Clearance required.
  • Experience progressing from SOC Analyst, Incident Response, Detection Engineering, or similar security operations roles into security engineering or platform integration responsibilities.
  • Hands-on expertise with Splunk Enterprise, including SPL development, alerting, dashboard creation, data onboarding, and security analytics.
  • Proven experience integrating security technologies, threat intelligence feeds, APIs, case management solutions, and monitoring platforms into Splunk environments.
  • Strong scripting and automation experience using Python for workflow orchestration, data enrichment, tool integration, and operational efficiency improvements.

Responsibilities

  • Design, implement, and maintain integrations between security platforms, threat intelligence systems, case management solutions, and Splunk to improve SOC efficiency and visibility.
  • Develop automation workflows and Python-based tooling that streamline investigation, escalation, enrichment, and incident response processes.
  • Build and optimize Splunk dashboards, alerts, correlation searches, reports, and custom applications to strengthen security monitoring capabilities.
  • Establish and manage data quality and telemetry validation processes to ensure security data is accurate, complete, and actionable for analysts and detection teams.
  • Partner with SOC analysts, threat intelligence personnel, and security engineering teams to translate operational requirements into scalable technical solutions.

Skills

Python scripting
Automation workflows
SOC operations
Security engineering

Tools

Splunk Enterprise
SPL

Job description

Piper Companies is seeking a SOC / Security Automation & Integration Engineer to join a mission-driven cybersecurity environment supporting advanced security operations and threat detection initiatives. This SOC / Security Automation & Integration Engineer will serve as the technical bridge between security platforms, threat intelligence sources, monitoring tools, and operational workflows, helping create a more automated, scalable, and resilient SOC. This is a full-time, fully on-site, long-term consulting opportunity.

Responsibilities
  • Design, implement, and maintain integrations between security platforms, threat intelligence systems, case management solutions, and Splunk to improve SOC efficiency and visibility.
  • Develop automation workflows and Python-based tooling that streamline investigation, escalation, enrichment, and incident response processes.
  • Build and optimize Splunk dashboards, alerts, correlation searches, reports, and custom applications to strengthen security monitoring capabilities.
  • Establish and manage data quality and telemetry validation processes to ensure security data is accurate, complete, and actionable for analysts and detection teams.
  • Partner with SOC analysts, threat intelligence personnel, and security engineering teams to translate operational requirements into scalable technical solutions.
Qualifications
  • Active Secret Security Clearance required.
  • Experience progressing from SOC Analyst, Incident Response, Detection Engineering, or similar security operations roles into security engineering or platform integration responsibilities.
  • Hands-on expertise with Splunk Enterprise, including SPL development, alerting, dashboard creation, data onboarding, and security analytics.
  • Proven experience integrating security technologies, threat intelligence feeds, APIs, case management solutions, and monitoring platforms into Splunk environments.
  • Strong scripting and automation experience using Python for workflow orchestration, data enrichment, tool integration, and operational efficiency improvements.
Compensation

Salary Range: $110,000 - $135,000 annually

Comprehensive Benefits: Medical, Dental, Vision, sick leave if required by law, and 401K

Additional Benefits: 20 Days PTO + 11 Paid Holidays

Application Details
  • Employment Type: Full-Time (40 Hours Per Week)
  • Work Arrangement: Fully On-Site
  • Engagement Type: Long-Term Consulting Opportunity
  • Security Requirement: Active Secret Clearance Required
  • Posted Date: 08/07/2026
  • Apply By: 09/07/2026
Keywords

SOC Engineer, Security Engineer, Splunk Enterprise, SPL, Security Automation, Security Integration, SOC Operations, Threat Intelligence, OpenCTI, TheHive, Incident Response, Detection Engineering, Security Monitoring, SOAR, Cybersecurity, Python Automation, API Integration, Threat Hunting, Log Analysis, Security Analytics, SIEM, Data Integrity, Telemetry Validation, Security Alerting, Dashboard Development, Case Management, Security Platforms, Workflow Automation, Security Tool Integration, Threat Feed Management, Data Quality Assurance, Security Operations Center, Investigations, Security Orchestration, Custom Splunk Apps, Enterprise Security, Blue Team, Cyber Defense, Intelligence Enrichment, Detection Content Development

#LI-HB1

#LI-ONSITE

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

SOC / Security Automation & Integration Engineer - 171462
SOC / Security Automation & Integration Engineer - 171462

Piper Companies • Raleigh (NC)

On-site
USD 110,000 - 135,000
Medical, Dental, Vision
Sick leave as required by law
401K
+1
SOC / Security Automation & Integration Engineer - 171462
SOC / Security Automation & Integration Engineer - 171462

Zachary Piper Solutions • Raleigh (NC), Northern (KY)

On-site
USD 110,000 - 135,000
Medical Insurance
Dental Insurance
Vision Insurance
+1
On-Site SOC Automation & Integration Engineer (Splunk/Python)
On-Site SOC Automation & Integration Engineer (Splunk/Python)

ZP Group • Raleigh (NC)

On-site
USD 110,000 - 135,000
Medical insurance
Dental insurance
Vision insurance
+1
Splunk / SOC Engineer - 174235 - 174717 - 175230
Splunk / SOC Engineer - 174235 - 174717 - 175230

Zachary Piper Solutions • North Carolina

Hybrid
USD 100,000 - 120,000
Splunk / SOC Engineer - 174235 - 174717
Splunk / SOC Engineer - 174235 - 174717

Piper Companies • United States

Hybrid
USD 100,000 - 120,000
Medical benefits
Dental benefits
Vision benefits
+1
Splunk / SOC Engineer - 174235 - 174717 - 175230
Splunk / SOC Engineer - 174235 - 174717 - 175230

Piper Companies • North Carolina

Hybrid
USD 100,000 - 120,000
Splunk / SOC Engineer - 174235 - 174717
Splunk / SOC Engineer - 174235 - 174717

Zachary Piper Solutions • Northern (KY)

Hybrid
USD 100,000 - 120,000
Splunk / SOC Engineer - 174235 - 174717 - 175230
Splunk / SOC Engineer - 174235 - 174717 - 175230

ZP Group • North Carolina

Hybrid
USD 100,000 - 120,000
Medical insurance
Dental insurance
Vision insurance
+2
Security Engineer - SOAR and SIEM Automation - 172325
Security Engineer - SOAR and SIEM Automation - 172325

Zachary Piper Solutions • United States

Remote
USD 135,000 - 145,000
Remote Work Environment
Medical Insurance
401(k) with Company Match
+1
Security Engineer - 174488
Security Engineer - 174488

Zachary Piper Solutions • United States

Remote
USD 135,000 - 145,000
Medical, dental, vision insurance
401(k) with company match
Paid time off and holidays
+1