Mid-Level Security Platform Engineer - SIEM / SOAR
Spirit AeroSystems Wichita, Kansas, United States
Aviation and Aerospace Component Manufacturing · 10,001+ employees
About the role
The Security Platform Engineer is responsible for the design, implementation, and maintenance of enterprise SIEM, SOAR, and identity detection capabilities. They will also support audit compliance, mentor junior staff, and optimize security workflows to improve incident response and threat detection.
What they look for
Requirements
Candidates must have at least 5 years of experience in cybersecurity, security engineering, or related fields. A bachelor's degree or advanced professional certification in security or infrastructure is required.
Benefits
Full description
Overview
This role is at Spirit AeroSystems, Inc. a wholly owned subsidiary of The Boeing Company, supporting Spirit’s Commercial Business Units (“Spirit Commercial”). Spirit Commercial designs and builds commercial aerostructures, including for Boeing Commercial Airplanes, one of Boeing’s three business units and the premier manufacturer of commercial jetliners for decades. Spirit Commercial’s core products include fuselages, pylons, nacelles and wing components, with a focus on innovative composite and aluminum manufacturing solutions.
The Security Platform Engineer III is responsible for the implementation, maintenance, optimization, and maturation of enterprise SIEM, SOAR, and Identity Detection and Response capabilities. This role ensures that security technologies supporting monitoring, incident response, threat hunting, detection engineering, automation, identity threat visibility, case management, reporting, and compliance are reliable, integrated, scalable, and aligned with program needs.
This role is focused on platform strategy, technical enablement, data quality, integrations, automation, workflow improvement, operational readiness, and long-term maturity. The engineer enables analysts, responders, and threat hunters by improving security visibility, alert fidelity, response consistency, investigation speed, and technology-driven risk reduction through effective use of security detection and response platforms.
Responsibilities
Position Responsibilities:
- Design, implement, maintain, and optimize enterprise SIEM, SOAR, and Identity Detection and Response capabilities.
- Support platform upgrades, configuration changes, integrations, capability rollouts, application updates, content updates, and continuous improvement initiatives.
- Support audit and compliance activities by ensuring required logs, reports, evidence, access records, and operational documentation are accurate and available.
- Create technical documentation, architecture diagrams, workflow diagrams, operating procedures, readiness reports, metrics, and leadership summaries.
- Mentor junior engineers or analysts on security detection platform capabilities, data usage, query practices, automation workflows, identity detection concepts, and security operations enablement.
Qualifications
Basic Qualifications
- Minimum 5 years of relevant cybersecurity, security engineering, security operations, incident response, detection engineering, automation, identity security, infrastructure, platform administration, or related experience.
- Advanced cybersecurity, security engineering, security operations, automation, identity security, cloud, infrastructure, or platform certification. Degree may qualify in lieu of certification.
- Hands-on experience administering, engineering, or supporting enterprise security monitoring, automation, detection, or response platforms.
- Strong understanding of SIEM, SOAR, and Identity Detection and Response concepts, including data ingestion, normalization, enrichment, alerting, workflows, case management, automation, identity context, and reporting.
- Strong documentation, troubleshooting, communication, stakeholder management, and technical coordination skills.
Preferred Qualifications
- Bachelor’s degree in cybersecurity, information technology, computer science, engineering, or related field required.
- Experience with enterprise SIEM, SOAR, User and Entity Behavior Analytics, security analytics, identity threat detection, or related security operations platforms.
- Experience with SOAR playbook development, integrations, custom functions, enrichment workflows, case management, response automation, and approval workflows.
- Familiarity with NIST guidelines, CIS Controls, ISO 27002, CMMC, FedRAMP, and/or other security and compliance frameworks.
- Experience with scripting, automation, APIs, data pipelines, search or query languages, detection support, advanced analytics, dashboards, and reporting.
Drug Free Workplace:
We are a Drug Free Workplace where post offer applicants and employees are subject to testing for marijuana, cocaine, opioids, amphetamines, PCP, and alcohol when criteria are met as outlined in our policies.
Pay & Benefits:
We strive to deliver a Total Rewards package that will attract, engage and retain the top talent. Elements of the Total Rewards package include competitive base pay and variable compensation opportunities.
We also provide eligible employees with an opportunity to enroll in a variety of benefit programs, generally including health insurance, flexible spending accounts, health savings accounts, retirement savings plans, life and disability insurance programs, and a number of programs that provide for both paid and unpaid time away from work.
The specific programs and options available to any given employee may vary depending on eligibility factors such as geographic location, date of hire, and the applicability of collective bargaining agreements.
Pay is based upon candidate experience and qualifications, as well as market and business considerations.
Summary Pay Range: $107,050 - $164,150
Kansas Tax Credit: Join Spirit AeroSystems’ Kansas team and you may be eligible for a $5,000 state of Kansas Aviation tax credit for up to five years. Click here for more information on the tax credit.