Senior SOC Security Engineer

Tential 

📍 Rockville, MD, United States 🇺🇸

full-time
senior
Expired
Posted —
This job posting has expired View All Embedded Systems Engineer Jobs

Key Skills

SplunkSOCAPIAWSEDR

Industry

CybersecurityTelecommunications

Job Description

About The Role

We are seeking a highly skilled Senior SOC Security Engineer with deep expertise in Splunk ES and Splunk SOAR to join our dynamic cybersecurity team. This role blends real-time threat detection and response with deep knowledge of Splunk ES and Splunk SOAR for automation priorities.

As a senior member of the SOC, you will lead incident response efforts, mentor junior analysts, and collaborate with internal Splunk team on automation project initiatives.

Key Responsibilities

  • Monitor, detect, and respond to security incidents using SIEM and EDR tools
  • Conduct deep-dive investigations into complex threats and vulnerabilities
  • Perform threat hunting and develop detection use cases for emerging attack vectors
  • Collaborate with internal Splunk team on automation initiatives
  • Implementation and configuration of SOAR
  • Develop and implement automation playbooks and orchestrations for incident response, threat hunting, and other security operations tasks
  • Develop and maintain playbooks for incident response and other ad hoc use cases
  • Mentor SOC analysts and contribute to continuous improvement of SOC processes
  • Stay current with threat intelligence, zero-days, and security trends

Required Skills & Qualifications

  • Bachelor’s or Master’s degree in Cybersecurity, Information Systems, or a related technical field
  • Equivalent experience may be considered in lieu of formal education for exceptional candidates
  • 5+ years of experience in SOC operations and incident response
  • Desired Certifications such as CISSP, Splunk Certified SOAR Engineer, CEH

Technical Skills

  • SIEM & EDR Tools: Proficiency with platforms like Splunk, Sentinel, CrowdStrike
  • Experience with RESTful API’s, webhooks and other integration methods
  • Familiar with programming/scripting languages (e.g. Python, Powershell, Bash) for automation
  • Cloud Security: Familiarity with AWS, Azure, or GCP security configurations and container security
  • Threat Modeling & Vulnerability Management: Ability to assess risks and guide mitigation strategies
  • In-depth technical skills for troubleshooting and security related investigations

Soft Skills & Leadership

  • Strong analytical thinking and attention to detail
  • Excellent communication skills for cross-functional collaboration
  • Ability to mentor junior analysts and lead incident response efforts

#DICE