Security Engineer II – Detection, SOC Engineering

Remote Full-time
Job Description:
• Design, implement, and tune high-fidelity detections across cloud, endpoint, SaaS, identity, and application environments
• Build and optimize queries, alerts, and correlation logic within our SIEM and EDR platforms
• Participate in SOC on-call rotation and serve as escalation point for high-severity incidents
• Lead complex investigations across endpoint, cloud, SaaS, and identity environments
• Triage and validate high-impact alerts, ensuring consistent investigative rigor and documentation
• Conduct proactive threat hunting to identify gaps in detection coverage
• Drive continuous improvement of playbooks, runbooks, and case management standards
• Build custom security tooling to improve alert enrichment, investigation, and response
• Develop integrations between security tools and internal systems via APIs
• Automate repetitive investigative workflows and containment actions
• Improve signal quality and reduce false positives across the stack
• Contribute to guardrails and enforcement mechanisms across cloud and SaaS environments
• Serve as the technical escalation point for high-severity incidents
• Lead complex investigations and root cause analysis
• Improve and mature incident response playbooks and processes
• Conduct post-incident analysis and drive systemic improvements
• Raise the technical bar within the SOC through mentorship and code/detection review
• Establish standards for detection quality and investigation rigor
• Partner closely with AppSec, Infrastructure Security, IT, and Engineering
• Help shape the SOC and detection engineering roadmap

Requirements:
• 5–7+ years of experience in security engineering, detection engineering, or security operations
• Strong experience with SIEM platforms
• Experience with EDR platforms
• Strong scripting skills (Python, Bash, or similar)
• Experience working in AWS or similar cloud environments
• Experience leading complex incident investigations
• Experience building internal security tools (Preferred)
• Detection-as-code or infrastructure-as-code experience (Preferred)
• Experience integrating tools via APIs (Preferred)
• Experience mentoring junior analysts or engineers (Preferred)
• Familiarity with SaaS security and identity-based attack patterns (Preferred)

Benefits:
• Open and transparent culture
• Life insurance, long and short-term disability coverage
• Paid maternity and paternity leave
• Fertility Benefits
• Generous vacation time, plus three 4-day summer holiday weekends
• Excellent medical, dental, and vision benefits
• 401k Plan with company matching
• Bi-annual swag drops with cool Podium gear and apparel
• A stellar HQ (Utah) gym with local professional coaches and classes offered
• Onsite HQ (Utah) child care center, subsidized for employees

Apply Now

Apply Now
Apply Now

Similar Opportunities

Experienced Registered Behavior Technician for In-Home ABA Therapy - Atlanta, GA

Remote Full-time

Immediate Hiring: Experienced Registered Behavioral Technician (RBT) for Clinic-Based ABA Therapy Services

Remote Full-time

Experienced Registered Behavioral Technician (RBT) - ABA Therapy for Children with Autism Spectrum Disorder

Remote Full-time

Experienced Registered Nurse - Telehealth: Providing Remote Care Coordination and Patient Support

Remote Full-time

Experienced Substitute Teacher for Riverside County Schools - Join Scoot Education's Innovative Team

Remote Full-time

Experienced Substitute Teacher for San Bernardino County - Flexible Schedules & Competitive Pay

Remote Full-time

Experienced School Year Instructional Coach for High-Dosage Tutoring Programs in Edgewater Park, NJ

Remote Full-time

Experienced School Year Tutor for K-8 Students in Math and Literacy - Mickleton, NJ

Remote Full-time

Experienced Secondary Social Studies Teacher for Kansas - Flexible Hybrid Remote Arrangement

Remote Full-time

USPS Office Helper

Remote Full-time

Remote Contact Center Representative (5027) | WFH

Remote Full-time

Small Business Relationship Manager VP

Remote Full-time

Patient Care Customer Service Evenings & Weekends REMOTE

Remote Full-time

Part Time CVS Remote Data Entry Job - Hiring Now

Remote Full-time

**Remote Email/Chat Support Clerk Assistant (Entry Level) at blithequark**

Remote Full-time

Information Systems Security Officer - Senior job at MTSI - Modern Technology Solutions, Inc. in Dayton, OH

Remote Full-time

Senior Data Analyst

Remote Full-time

Chief Investment Management Officer XLT Strategies Trader

Remote Full-time

Experienced Customer Service Advocate I – First-Line Support and Resolution Expert for Member and Provider Inquiries at blithequark

Remote Full-time

Accounting Manager - Corporate Accounting

Remote Full-time
← Back to Home