
Security Operations Engineer
Posted 22 hours ago

Posted 22 hours ago
This is a fully remote position, open to applicants in United States, +1 more state.
• Serve as the primary internal technical authority for third-party security evaluations and external vulnerability assessments.
• Oversee security vendors, manage project timelines, and monitor remediation efforts.
• Direct the design, implementation, and ongoing management of SIEM capabilities.
• Establish log analysis pipelines for environmental logs and system telemetry.
• Utilize AI tools and automation frameworks to enhance incident detection, minimize false positives, and automate repetitive tasks.
• Create a proactive threat intelligence review process and distribute actionable security advice.
• Take ownership of the secure setup, configuration, and baseline hardening of infrastructure, applications, and corporate systems.
• Develop documentation and runbooks, transitioning hardened systems to the Support team.
• Manage systems engineering, application onboarding, and lifecycle ownership within EIT.
• Collaborate with IT Support on handover workflows, threat intelligence, and incident response.
• Evaluate security-related findings and requests escalated to DevOps, addressing SecOps issues and forwarding only DevOps-specific matters.
• Set logging standards, enhance time-to-detection, implement compliance and security initiatives, and reduce unpredictable DevOps ticket volume.
• 6–8 years of experience in Systems Administration, Systems Engineering, or IT Operations.
• Demonstrated success in shifting career focus towards security operations.
• Proven experience in configuring SIEM platforms, managing log aggregation, and developing alerting logic.
• Practical experience with automation scripts, tools, or AI-driven capabilities in security operations.
• Extensive technical expertise in securing cloud environments, network configurations, identity providers, and enterprise SaaS ecosystems.
• Proven capability to lead cross-functional technical projects and engage with external third-party security vendors.
• Ability to convert vulnerability data into actionable remediation steps.
• Proficiency in creating clear runbooks from complex system architectures.
• Communication skills to translate technical threat intelligence into understandable updates for non-technical teams.
• Security-focused certifications such as Security+, CEH, or GISF are highly regarded.
• Cloud/Systems certifications such as AWS or Google certifications are highly regarded.
• Experience with AWS, Google Workspace, infrastructure-as-code, identity and access management, continuous compliance and audit automation, logging, monitoring, and alerting.
• A mission-driven company culture.
• Fully remote work environment.
• Competitive salary and benefits package.
• Fully covered employee premiums for Medical, Dental, and Vision.
• 401k Program.
• Monthly stipends for Education, Well-being, and Work From Home expenses.
• Non-accrual Paid Time Off (PTO).
• Opportunities for growth.
• Company retreats.
• Medical and Family/Parental Leave.
SafelyYou
Arctiq
Dragonfli Group
Get handpicked remote jobs straight to your inbox weekly.