Senior IT Security Operations Engineer

Job not on LinkedIn

October 13

Apply Now
Logo of EnrollHere, Inc.

EnrollHere, Inc.

Fintech • Insurance • SaaS

EnrollHere, Inc. is an end-to-end, fully integrated platform that empowers businesses, agencies, and carriers with the resources and tools needed to manage and grow their operations effectively. The platform streamlines processes, optimizes costs, and aids in scaling organizations from leads to commissions, specifically tailored for the insurance sector. EnrollHere stands out as the only platform designed to address every facet of your insurance business, providing the ability to simplify, optimize, and grow operations at any organizational level.

11 - 50 employees

Founded 2024

💳 Fintech

☁️ SaaS

📋 Description

• Monitor, detect, analyze, and respond to security events and incidents using SIEM, EDR, IDS/IPS, and network analytics tools. • Lead or participate in incident response, root cause analysis, post-incident reviews, and remediation planning. • Triage alerts, assess severity, contain threats, and coordinate with IT, networking, and application teams to drive resolution. • Continuously improve detection capabilities and tune alerts to enhance accuracy and reduce false positives. • Conduct proactive threat hunting across endpoints, networks, logs, cloud, and identity environments. • Integrate threat intelligence feeds into detection logic and analytics. • Develop and maintain custom detection rules, scripts, and playbooks to strengthen defenses. • Design, maintain, and optimize logging and monitoring architecture, ensuring scalability and performance. • Manage security tooling such as SIEM, EDR, UEBA, SOAR, and threat intelligence platforms. • Automate detection and response workflows using scripts, APIs, or orchestration tools. • Create and enhance incident response playbooks, standard operating procedures, and runbooks. • Establish key metrics, dashboards, and KPIs to measure SOC performance and maturity. • Conduct regular tabletop exercises and maintain documentation for audit readiness. • Partner with GRC teams to align security operations with regulatory and contractual obligations (HIPAA, PCI, NIST, etc.). • Provide evidence and reporting for audits and risk assessments. • Support prioritization of security initiatives through operational risk insights. • Mentor junior team members and guide investigations within the SOC. • Act as a liaison with IT, cloud, and engineering teams to integrate security controls throughout the tech stack. • Engage vendors and MSSPs to evaluate tools, share threat intelligence, and improve operational efficiency. • Present to leadership on security posture, incidents, and ongoing improvements.

🎯 Requirements

• Bachelor’s degree in Computer Science, Information Security, IT, or related field. • 5–8+ years of experience in cybersecurity, including Security Operations, Incident Response, or SOC roles. • Hands-on experience with tools such as SIEM, EDR, IDS/IPS, and network monitoring. • Skilled in incident handling, investigation, and root cause analysis. • Strong scripting/automation skills (Python, PowerShell, Bash). • Deep understanding of logs, protocols, network fundamentals, and data analysis. • Familiarity with cloud security (AWS, Azure, GCP). • Strong analytical, investigative, and communication skills. • Experience working in or supporting 24x7 SOC operations. • Preferred: • Certifications: CISSP, CISM, GCIH, GCIA, or related. • Experience with SOAR platforms and automated playbooks. • Exposure to threat intelligence, malware analysis, or reverse engineering. • Knowledge of DevSecOps practices and CI/CD integration. • Familiarity with regulatory frameworks (HIPAA, ISO, NIST, PCI). • Experience mentoring or leading SOC team initiatives.

🏖️ Benefits

• Medical: 4 United Healthcare medical plans (including an HSA option) • Dental: 3 dental plans (Aetna and MetLife) • Vision: 2 Aetna vision plans • Wellness & Mental Health: 5 additional Medical Plus benefits, including telehealth support and an annual Talkspace subscription • Ancillary Coverage: 4 ancillary plans and supplemental life insurance • Retirement: 401(k) with a 4% match (after a 90-day exclusionary period) • PTO & Flexibility: Generous PTO and remote work support • Growth: Learning stipends and opportunities for professional development

Apply Now

Similar Jobs

October 12

TAXWELL

2 - 10

Sr. Security Ops Analyst at Taxwell providing cyber security monitoring and incident response. Mentoring junior analysts and conducting threat hunting and incident analysis.

October 1

Technical Project Manager overseeing strategic initiatives in cybersecurity and infrastructure. Managing complex projects while ensuring alignment with stakeholders and organizational goals.

September 24

Cybersecurity Incident Response Administrator managing SIEM, PKI, and Army cyber compliance at GovCIO. Deploys and monitors SIEM dashboards, investigates threats, and supports audits.

August 14

Senior Product Marketing Manager for Sophos SecOps; leads product marketing and go-to-market in North America.

Built by Lior Neu-ner. I'd love to hear your feedback — Get in touch via DM or support@remoterocketship.com