SOC Security Engineer II: Threat Detection & IR

CSX

Jacksonville (FL)

On-site

USD 110,000 - 140,000

Full time

8 days ago
Application generator

Don’t send a generic resume — generate a resume and cover letter tailored to this exact role.

Get past ATS filters

Job summary

CSX is seeking a Security Engineer II for the Security Operations Center (SOC) to monitor, detect, analyze, investigate, and respond to cybersecurity threats impacting CSX systems, networks, apps, and data. You will work with infrastructure, engineering, and business teams to protect critical railroad operations and corporate assets.

You will leverage advanced security technologies, threat intel, automation, and incident response methodologies to reduce risk and improve CSX's cybersecurity

Qualifications

  • Bachelor's degree in Cybersecurity, Computer Science, Information Technology, Engineering, or a related field.
  • 3+ years of cybersecurity experience.
  • 2 years in SOC/IR/SEC engineering or related security role.
  • Experience investigating incidents across enterprise environments.
  • Experience with Microsoft security technologies and cloud security solutions.

Responsibilities

  • Monitor security alerts and events generated by SIEM, EDR, email security, cloud security, and network security platforms.
  • Investigate and respond to cybersecurity incidents including malware, phishing, ransomware, unauthorized access, data loss, insider threats, and APTs.
  • Develop and maintain security monitoring rules, analytics, dashboards, and alerting mechanisms.
  • Develop and maintain security automation workflows and incident response playbooks.
  • Participate in major incident response activities and cyber crisis management.

Skills

Security monitoring
Incident response
Threat hunting
Threat intelligence
Security automation
PowerShell/Python
MITRE ATT&CK
Windows/Linux

Education

Bachelor's degree in Cybersecurity/CS/IT/Engineering

Tools

Microsoft Sentinel
Microsoft Defender XDR/EndPoint/Office 365
Azure security services
Entra ID

Job description

CSX is seeking a Security Engineer II for the Security Operations Center (SOC) to monitor, detect, analyze, investigate, and respond to cybersecurity threats impacting CSX systems, networks, apps, and data. You will work with infrastructure, engineering, and business teams to protect critical railroad operations and corporate assets.

You will leverage advanced security technologies, threat intel, automation, and incident response methodologies to reduce risk and improve CSX's cybersecurity

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

SOC Security Engineer II: Threat Hunter & Incident Response
SOC Security Engineer II: Threat Hunter & Incident Response

CSX Corporation • Jacksonville (FL)

On-site
USD 110,000 - 150,000
Security Engineer II - Security Operations Center (SOC)
Security Engineer II - Security Operations Center (SOC)

CSX Corporation • Jacksonville (FL)

On-site
USD 110,000 - 150,000
Security Engineer II - Security Operations Center (SOC)
Security Engineer II - Security Operations Center (SOC)

CSX • Jacksonville (FL)

On-site
USD 110,000 - 140,000
Remote SOC Engineer II - Threat Detection & Incident Lead
Remote SOC Engineer II - Threat Detection & Incident Lead

CTS • United States

On-site
USD 80,000 - 85,000
Health Insurance
401(k) with company match
Paid Time Off
+6
SOC Threat Hunter & Incident Response Engineer
SOC Threat Hunter & Incident Response Engineer

Cyberdata Technologies, Inc. • Herndon (VA)

On-site
USD 80,000 - 120,000
Security Operations Engineer II — Threat Detection & IR
Security Operations Engineer II — Threat Detection & IR

Elliot Services • Lexington (KY), Northern (KY)

Hybrid
USD 70,000 - 110,000
Associate SOC Engineer: Threat Detection & Response
Associate SOC Engineer: Threat Detection & Response

Conference of State Bank Supervisors (CSBS) • Washington

Hybrid
USD 70,000 - 110,000
Comprehensive benefits
Hybrid work environment
SOC Analyst II: Threat Hunting & Incident Response
SOC Analyst II: Threat Hunting & Incident Response

JPS Tech Solutions • Harrisburg

On-site
USD 70,000 - 90,000
Cyber Security Engineer II: Incident Response & SOC
Cyber Security Engineer II: Incident Response & SOC

TEEMA Solutions Group • Mississippi

On-site
USD 90,000 - 120,000
Cyber Security Engineer
Cyber Security Engineer

TEEMA Solutions Group • Washington

On-site
USD 90,000 - 120,000