Senior Security Engineer -- SOC Analyst (Senior Elastic Security)
Cleveland, Ohio, United States
USD 119K-150K (estimate) Senior-level Full Time
Tasks
- Build tune and respond to SIEM alerts
- Collaborate on behavior based detection signatures
- Coordinate incident response activities and document decisions
- Create security processes as needed
- Develop SIEM dashboards and high priority alerts
- Develop control effectiveness metrics
- Identify threat actor trends through search
- Investigate anomalous activity for root cause
- Join shared on call rotation
- Lead incident response investigations
- Maintain incident response procedures and processes
- Participate in security team meetings
- Participate in tabletop exercises
- Plan and optimize SIEM data retention
- Provide security best practice guidance
- Scope indicators of compromise across the enterprise
Perks/Benefits
Skills/Tech-stack
Alert Tuning | Dashboards | Data Retention | Detection engineering | Elastic Security | Incident Response | Linux | SIEM | Security operations | Telemetry | Threat hunting | Windows
Education
N/A
Roles
Analyst | Engineer | SOC Analyst | Security | Security Engineer
Related jobs
-
Sr Network Security Engineer II USD 112K-185KAWS | AWS Security | AWS Security Hub | Access Control | Azure401k match | Flexible work schedule | Health, dental, vision insurance | Paid Holidays | Paid time offSenior-level Full TimeWashington DC R5h ago
-
Cybersecurity Engineer II USD 90K-110KAccess Control | Cybersecurity | Detection Systems | Digital forensics | Encryption401k match | Dental insurance | Disability insurance | Discounted employee stock purchase program | Life insuranceMid-level Full TimeLong Beach, CA10h ago
-
Information Security Systems Engineer USD 133K-240K800-171 | 800-53 | Access Management | CI/CD | CI/CD Security401k match | Dental insurance | Disability insurance | Dog-friendly offices | EquityMid-level Full TimeKent, Washington10h ago
-
Information Security Analyst USD 87K-115KAccess Control | Access Management | Antivirus | Detection Systems | Endpoint SecurityMid-level Full TimeJacksonville, Florida, United States11h ago
-
Access Security Operations Center - Manager USD 87K-87KAccess Control | Alarm systems | Camera systems | Database Query | Emergency responseMid-level Full TimeMiami, FL, United States13h ago
-
System Engineer- Cyber Security Engineering Focus USD 120K-197K800-53 | ACAS | ATO | Assessment and Authorization | CNSSI 1253401k | Dental insurance | Health insurance | Life insurance | Paid HolidaysSenior-level Full TimeSt. Louis, MO - Globe13h ago
-
System Engineer- Cyber Security Engineering Focus USD 120K-197K800-53 | ACAS | Assessment and Authorization | Compliance Scanning | Configuration Management401k match | Paid Holidays | Paid Vacation Leave | Profit sharing | Relocation assistanceSenior-level Full TimeVienna, Virginia, United States13h ago
-
System Engineer- Cyber Security Engineering Focus USD 120K-197K800-53 | ACAS | ATO | Assessment & Authorization | CNSSI 1253Senior-level Full TimeRedlands, CA13h ago
-
Splunk Architect Lead USD 131K-216KBackup | Capacity Planning | Case management | Case management tools | Change ManagementSenior-level Full TimePortland, OR, United States13h ago
-
Senior Splunk Engineer USD 146K-219KAccess Control | Alerting | Dashboards | Data Ingestion | Data ModelSenior-level Full TimePortland, OR, United States13h ago
-
SOC Tier 1 Analyst USD 84K-95KAccess Management | Case management | Cloud Computing | EDR | Endpoint SecurityMid-level Full TimePortland, OR, United States13h ago
-
SOC Tier 2 Analyst USD 85K-104KAccess Management | Alert triage | Application Security | Cloud Security | Correlation rulesMid-level Full TimePortland, OR, United States13h ago
-
SOC Tier 3 Analyst USD 120K-140KAlert Logic | Case management | Cloud Security | Correlation rules | DashboardsSenior-level Full TimePortland, OR, United States13h ago
-
SIEM Infrastructure and Detection Engineer USD 120K-152KAlert Tuning | Ansible | Bash | Carbon Black | ChefClearance support | Healthcare benefits | Hybrid work | Paid time offMid-level Full TimePortland, OR, United States13h ago
-
Security Engineer USD 125K-178KAccess Management | Automation | CIS Controls | Cloud Security | Configuration ManagementSenior-level Full TimePortland, OR, United States13h ago
-
Threat Intelligence Analyst USD 112K-145KCyber Threat | Cyber threat analysis | Incident Response | Indicator of Compromise | Malware analysisMid-level Full TimePortland, OR, United States13h ago
-
SOC Threat Hunter USD 100K-141KCloud logging | Detection engineering | EDR | Endpoint telemetry | Event CorrelationMid-level Full TimePortland, OR, United States13h ago
-
SOC Chief USD 170K-230KAlert triage | Case management | Cybersecurity governance | Detection engineering | EDRExecutive-level Full TimePortland, OR, United States13h ago
-
Senior Security Engineer II, Vulnerability Management USD 165K-242KAWS | AWS Lambda | Admission control | Automation workflows | Azure401k employer match | Disability insurance | Employee stock purchase program ESPP | Flexible PTO | Flexible spending accountSenior-level Full TimeLivingston, NJ / New York, NY …14h ago
-
Bash | Cloud infrastructure | Cloud infrastructure as code | Cloud platform | Data ProcessingAsynchronous culture | Distributed team | Portfolio support | Remote workMid-level Full TimeMiami, FL, USA16h ago
-
Information System Security Officer (ISSO) USD 97K-131KAccess Control | Access Management | Configuration Management | Contingency Planning | Cybersecurity compliance401k | Dental insurance | Health insurance | Life insurance | Paid time offMid-level Full TimeOgden, United States17h ago
-
AlgoSec Resident Engineer, Americas USD 120KAWS | Ansible | Application Connectivity | Azure | Change ManagementCollaborative culture | Home office arrangement | Travel opportunitiesSenior-level Full TimeUnited states, New Jersey, US17h ago
-
Senior Cyber Security Engineer USD 128K-214KAccess Control | Centralized Configuration | Centralized Configuration Management | Certification and accreditation | Change ManagementSenior-level Full TimeUSA-VA-Chantilly18h ago
-
Senior Cyber Security Engineer USD 128K-214KAccess Control | Certification and accreditation | Change Management | DoD Security | DoD Security PolicySenior-level Full TimeUSA-VA-Chantilly18h ago
-
Senior Cyber Security Engineer USD 128K-214KAccess Control | Centralized Configuration | Centralized Configuration Management | Certification and accreditation | Configuration ManagementSenior-level Full TimeUSA-VA-Chantilly18h ago