Engenharia de Segurança III (Pleno) - Operações do SOC

7 hours, 48 minutes ago
Full-time
Mid Level
Cybersecurity
Harford County Public Library

Harford County Public Library

Access, Information, Service, Anytime, Anywhere

Diversified Consumer Services
51-250
Founded 1945

Description

  • Monitor and triage security alerts, and respond to incidents or crisis situations in corporate and production environments.
  • Improve detection engineering processes by refining correlation rules, analyzing logs, and maintaining monitoring effectiveness across SOC tools.
  • Conduct proactive threat hunting to identify threats and anomalies in the environment.
  • Support the collection and structuring of missing logs or data needed for investigations.
  • Participate in troubleshooting and resolving issues involving security tools and environment integrity.
  • Assist product, development, and infrastructure teams with technical analysis, validation, and remediation of vulnerabilities identified by the SOC.
  • Identify opportunities to automate incident response playbooks and SecOps routines to improve operational efficiency.
  • Operate and evolve security technologies such as SIEM, EDR/XDR, WAF, NIDS/IPS, and Proxy solutions.

Requirements

  • Experience in SOC, defensive security engineering, or incident response teams.
  • Hands-on experience analyzing security logs and using monitoring tools, with understanding of common attack vectors.
  • Familiarity with SOC security technologies such as SIEM, EDR/XDR, WAF, IPS/IDS, or Proxy.
  • Practical knowledge of cloud security concepts and services in AWS, Azure, or GCP.
  • Strong understanding of computer networks and connectivity, including TCP/IP, VPNs, network topologies, and traffic analysis.
  • Knowledge of security frameworks and best practices such as MITRE ATT&CK, NIST, or SANS CIS Controls.
  • Intermediate English for reading technical documentation and supporting international tools.
  • Completed or in-progress degree in Information Security, Computer Science, Engineering, or related fields.
  • Scripting skills for SOC automation, such as Python or Bash, are a plus.
  • Previous experience in financial services or familiarity with PCI-DSS is a plus.
  • Security certifications such as Security+, CySA+, CEH, or vendor certifications from Elastic, Palo Alto, Microsoft, Fortinet, AWS, or CrowdStrike are a plus.

Benefits

  • Health and dental insurance.
  • 24/7 virtual hospital access.
  • Meal and/or food allowance.
  • Remote work allowance for remote positions.
  • Flexible working hours.
  • Education benefit with access to books, podcasts, training, video lessons, and internal learning platforms.
  • Gym and wellness benefits through Wellhub and TotalPass.
  • Childcare assistance.
  • Profit sharing bonus (PLR).
  • Life insurance.
  • Transportation voucher for on-site positions.

Interested in this position?

Apply directly on the company website

Apply Now

Similar Roles

IT & Security Engineer (Contract)

Parachute Health 51-250 Health Care Providers & Services

Parachute Health is hiring a contractor for its IT & Security team to support secure, compliant, and efficient healthcare technology operations across identity, endpoint, network, and cloud security.

AWS Bash CrowdStrike DHCP DNS GCP Git GitHub HIPAA Linux macOS OAuth PostgreSQL PowerShell Python SAML Splunk SQL TLS
2 hours, 2 minutes ago

Sr. Solutions Architect (DevSecOps) II (6444)

MetroStar 251-1K IT Services

MetroStar is seeking a Sr. Solutions Architect (DevSecOps) II to lead secure platform and cloud solution efforts for containerized, microservices-based environments while ensuring compliance, continuous monitoring, and incident response readiness.

AWS CI/CD Cybersecurity DevSecOps Jenkins Kubernetes Microservices OpenShift SonarQube Splunk
3 hours, 28 minutes ago

Senior DevSecOps Consultant (Azure / Secrets Management)

Trility Consulting 51-250 Internet Software & Services

Trility Consulting is seeking a remote Senior DevSecOps Consultant to lead a short-term Azure security engagement focused on strengthening secrets management, application security, and repeatable DevSecOps standards across client environments.

Azure CI/CD DevSecOps GitHub .NET Python Secrets Management SQL Server
4 hours, 6 minutes ago

Lead Manager, IT Security Engineer

Make-A-Wish America 1K-5K Diversified Consumer Services

Make-A-Wish is hiring an Information Technology Security professional to help protect the organization’s information, infrastructure, and stakeholders through enterprise security design, operations, and incident support.

Azure Windows Server
4 hours, 32 minutes ago

You're on a roll! Sign up now to keep applying.

Sign Up

Already have an account? Log in

Used by 14,729+ remote workers