Security Operations Center Engineer
Jobgether United States · $68K–$162K/yr
Internet Marketplace Platforms · 11-50 employees
About the role
The Security Operations Center Engineer monitors enterprise systems to identify and investigate security threats while coordinating incident response and remediation. They also administer security tools, automate operational tasks, and contribute to disaster recovery and business continuity planning.
What they look for
Requirements
Candidates must have a bachelor's degree in a relevant field and 2-4 years of experience in 24x7x365 security operations. Proficiency in IT infrastructure, networking, security monitoring tools, and incident response processes is required.
Benefits
Full description
This position is listed on behalf of a partner company, who manages all applications and next steps. Our partner is looking for a Security Operations Center Engineer based in the United States.
This role is responsible for protecting enterprise systems, infrastructure, and sensitive information within a 24x7x365 security operations environment. You will monitor security events, investigate potential threats, and coordinate incident response from initial triage through remediation and recovery. The position combines hands-on security operations with administration and optimization of monitoring, detection, and response tools. You will help strengthen security processes, automate operational activities, and reduce risks that could lead to system compromise or business disruption. The role requires close collaboration with technical teams and management, as well as clear documentation of incidents, processes, and security improvements. You will also contribute to disaster recovery and business continuity activities while staying current with evolving security technologies and threats. Success in this position requires curiosity, strong judgment, attention to detail, and the ability to make effective decisions under pressure.
\n
Accountabilities:
- Monitor security tools and systems, reviewing logs, alerts, and other security data to identify suspicious or potentially malicious activity.
- Investigate security alerts and determine whether they represent genuine incidents, vulnerabilities, or other risks requiring action.
- Lead or support security incident response, including preliminary triage, troubleshooting, containment, remediation, eradication, and recovery.
- Gather, preserve, and analyze evidence to determine the scope, impact, and root causes of security incidents.
- Implement or coordinate remediation measures such as patching, configuration changes, and other vulnerability mitigation activities.
- Assist with restoring affected systems and data and provide timely updates to management regarding incidents and response activities.
- Administer SOC/NOC security tools, including scripting, customizations, report creation, alert tuning, automations, and ongoing maintenance.
- Develop security process roadmaps, knowledge-base articles, change-management validations, and documentation covering incident handling and resolutions.
- Identify opportunities to improve security monitoring, automation, operational processes, and overall risk management.
- Help minimize security exposure and reduce the potential for business interruptions across enterprise infrastructure.
- Participate in disaster recovery and Business Continuity Plan events and contribute to organizational readiness.
- Collaborate with IT and other technical teams to resolve security issues and communicate findings effectively to both technical and non-technical stakeholders.
Requirements:
- Bachelor’s degree in Computer Science, Information Technology, a related field, or an equivalent combination of education and professional experience.
- 2–4 years of experience working in 24x7x365 Security Operations and related technologies; 5+ years is preferred.
- Experience supporting enterprise security operations and working with security monitoring, detection, alerting, investigation, and response technologies.
- Strong understanding of IT infrastructure and networking, including operating systems, network protocols, and fundamental infrastructure components.
- Knowledge of security principles, common threats and vulnerabilities, and mitigation technologies such as firewalls, IDS/IPS, and SIEM platforms.
- Hands-on experience with security tools such as ExtraHop, QRadar, Splunk, or comparable technologies.
- Ability to write basic scripts and use automation to streamline security tasks, generate reports, and improve operational efficiency.
- Understanding of incident response processes, including containment, eradication, recovery, and post-incident documentation.
- Strong analytical and critical-thinking skills, with the ability to identify anomalies, determine root causes, and develop effective solutions from complex security data.
- Excellent attention to detail and the ability to identify subtle indicators of compromise or emerging threats within large volumes of information.
- Strong written and verbal communication skills, including technical documentation, knowledge-base article creation, business writing, presentations, and communication with management.
- Ability to make quick, informed decisions and remain effective under pressure during critical security incidents.
- Familiarity with ServiceNow, SIEM solutions, email protection, endpoint detection and response, Microsoft 365 Security, incident communication platforms, web application firewalls, firewalls and networking equipment, secure web gateways, and web content filtering is beneficial.
- Experience with Trustwave, government incident notification processes, load balancers, or related security technologies is a plus.
- ITIL Foundations certification and security certifications such as GSEC, CISSP, CISM, ISSAP, CCSK, or comparable credentials are advantageous.
- Willingness to continuously expand technical knowledge through scripting, coding, certifications, and familiarity with emerging security solutions.
Benefits:
- Competitive annual compensation, with salary ranges varying by location, experience, and skills.
- Published geographic salary ranges from $68,457 to $161,815 annually, with California hiring typically ranging from $110,468 to $153,428.
- Remote work flexibility from anywhere in the United States for most positions.
- Paid vacation and sick time, plus 9 company-paid holidays and volunteer hours.
- Incentive bonus opportunities, including potential holiday, referral, and performance-based bonuses.
- Medical, dental, vision, life, and pet insurance.
- 401(k) retirement savings plan with company matching.
- Education assistance and professional and personal development opportunities.
- Opportunities for career advancement and internal promotion.
- Employee recognition programs.
- Health and wellbeing resources, including mental wellbeing therapy and coaching sessions.
- Childcare and eldercare resources.
- Collaborative and engaging work environment.
- An in-person interview may be required during the hiring process.
\nHow Jobgether works:
We use an AI-powered matching process to ensure your application is reviewed quickly, objectively, and fairly against the role's core requirements. Our system identifies the top-fitting candidates, and this shortlist is then shared directly with the hiring company. The final decision and next steps (interviews, assessments) are managed by their internal team.
We appreciate your interest and wish you the best!
Why Apply Through Jobgether?
Data Privacy Notice: By submitting your application, you acknowledge that Jobgether will process your personal data to evaluate your candidacy and share relevant information with the hiring employer. This processing is based on legitimate interest and pre-contractual measures under applicable data protection laws (including GDPR). You may exercise your rights (access, rectification, erasure, objection) at any time.
#LI-CL1