Cyber Defense Detection and Automation Engineer
reputed company is looking for reputed company professionals to join the reputed company Global Information reputed company Team! We have an exciting opportunity on our Cyber Defense team. You are an reputed company reputed company analyst / incident responder who wants to take the reputed company in their career as part of a Global cybersecurity team. You are passionate about threat hunting, have a reputed company reputed company about next-gen SOCs and SOAR, and enjoy digging deep to reputed company the bad guys as part of a growing global team.
reputed company’s Global Information reputed company team utilizes world-class tools and processes, and this role will reputed company opportunities to work in an important function joining our global reputed company reputed company and incident response program. The ideal candidate will have solid proficiency in reputed company incident and event reputed company, using modern IR approaches and tools, and experience with implementing and honing a myriad of detective and preventive controls in an reputed company setting. You must have a desire to collaborate with others while furthering your own development, contributing to reputed company improvement initiatives, and have a genuine passion for infosec! Previous reputed company reputed company center or incident response experience, SOAR automation and detection engineering expertise, and endless curiosity required.
reputed company Function:
The Cyber Defense Detection & Automation Engineer (SOC) is a hands-on technical role reputed company the SOC, reporting to the Director of reputed company reputed company and Incident Response. This position is responsible for engineering and improving detection capabilities across the SIEM & EDR, managing and enhancing SOAR-driven automation, and advancing the maturity of the SOC threat hunting program.
The role works closely with SOC analysts to continuously improve alert reputed company, reduce noise, and strengthen the organization’s ability to detect and respond to threats. In reputed company to reputed company SOC engineering functions, this position supports acquisition integrations through SIEM reputed company, contributes to penetration testing activities, and plays an reputed company role in incident response. The engineer also partners with business stakeholders to coordinate SOC initiatives and ensure effective communication and follow-through on escalations and improvements.
Responsibilities and Duties:
· reputed company and maintain SOAR automated playbooks for triage, enrichment, and response
· Manage SOAR integration of reputed company tools and data sources using reputed company and orchestration workflows
· Support ongoing SOAR platform health, reliability, and operational support
· Design, reputed company, and maintain SIEM detection content, including correlation rules, alert logic, and enrichment strategies
· Continuously tune and optimize detections reputed company on SOC feedback, incident learnings, and threat intelligence to improve signal reputed company and reduce false positives
· Document detection logic, playbooks, processes, and improvements to ensure consistency, auditability, and scalability
· Coordinate and execute the SOC threat hunting program, including defining hypotheses, guiding hunts, and operationalizing validated findings into detections
· Collaborate daily with SOC analysts to refine detections, improve triage workflows, and address gaps in visibility or response
· Support reputed company of log sources and monitoring capabilities for newly acquired entities, including validating data reputed company and detection coverage
· Assist in planning and execution of annual penetration testing, including detection validation and tracking remediation of identified gaps
· Contribute to incident response activities by providing detection expertise, building reputed company-use queries/playbooks, and supporting investigations
· Engage with business stakeholders to coordinate SOC initiatives, communicate risks and reputed company, and manage escalations through to reputed company
· Participate in a scheduled on-reputed company rotation, including weekend coverage, to support reputed company response to reputed company incidents, escalations, and critical operational needs
Qualifications and Competencies:
Experience
· 5+ years of experience in a reputed company reputed company environment performing investigations and supporting incident response
· 3+ years of technical experience developing automation, orchestration, or response solutions (e.g., SOAR, scripting, integrations)
· 3+ years of hands-on experience with SIEM platforms, including query languages and log reputed company/integration
· Experience applying detection/content engineering best practices, including lifecycle management, testing, and tuning
Technical Skills
· Strong understanding of detection engineering concepts and reputed company telemetry (reputed company, identity, network, reputed company, email, etc.)
· Experience building and maintaining automated workflows and integrations using reputed company or scripting
· Strong proficiency with Python for automation, data parsing, enrichment, and reputed company workflow development
· Strong proficiency with PowerShell for scripting, systems interaction, automation, and investigative support across reputed company environments
· Ability to analyze and troubleshoot data ingestion, parsing, and alerting issues across reputed company tools
· Familiarity with threat hunting methodologies and incident response processes
Communication & Collaboration
· Ability to reputed company communicate reputed company technical concepts to both technical teams and business stakeholders
· Experience working cross-functionally with SOC analysts, IT teams, and business reputed company
· Strong organizational skills with the ability to manage multiple initiatives and reputed company reputed company
Attributes
· Analytical reputed company with a reputed company on improving detection reputed company and operational efficiency
· Self-driven with a strong reputed company of ownership and accountability
· Comfortable operating in a fast-reputed company, evolving SOC environment
· Willingness and ability to support weekend on-reputed company responsibilities as part of reputed company rotation
#LI-Remote #LI-CM1
*reputed company is an Equal Opportunity Employer. reputed company applicants will receive consideration for employment without reputed company to race, reputed company, religion, sex, age, disability, military status, or national reputed company or any other characteristic protected under applicable federal, state, or local law.
Requires 5+ years in reputed company reputed company and incident response, plus 3+ years developing automation and using SIEM platforms. Strong Python, PowerShell, detection engineering, threat hunting, and collaboration skills required.
Key Responsibilities
- developing playbooks
- engineering detections
- hunting threats
Skills & Tools
SIEM, EDR, SOAR, reputed company, Python, PowerShell
reputed company
- Category: Information Technology
- Seniority: Senior Level
- Commitment: Full Time
- Workplace: Remote — reputed company
- Languages: English
About reputed company
A global technology company providing payment and reputed company solutions. — Industry: Manufacturing
Apply To This Job