Senior Engineer, IT – SecOps

Job not on LinkedIn

🔥 3 minutes ago

Apply Now
Find Similar Remote Jobs

📊 Check your resume score for this job

Improve your chances of getting an interview by checking your resume score before you apply.

Logo of Dayforce

Dayforce

5001 - 10000 employees

👥 HR Tech

☁️ SaaS

🏢 Enterprise

💰 $1G Post-IPO Debt - Dayforce on 2024-03

HR Tech • SaaS • Enterprise

Dayforce is a cloud-based human capital management (HCM) platform offering integrated payroll, HR, benefits administration, workforce management, and talent management capabilities. It is designed for employers to manage the full employee lifecycle in a single SaaS application, with features for payroll processing, time and attendance, scheduling, recruiting, and performance management.

📋 Description

• Monitor SIEM/XDR/SOAR and other telemetry for alerts, anomalies, and indicators of compromise (IOCs). • Perform Level 1–2 triage, enrichment, scoping, and prioritization of events. • Execute response playbooks (isolation, containment, account/device quarantine, EDR actions, network blocks). • Lead or support incident investigations (forensics acquisition, timeline analysis, root cause). • Document incidents thoroughly (IR tickets, evidence handling, post-incident reports). • Conduct proactive hunts using hypotheses tied to current TTPs (e.g., MITRE ATT&CK). • Draft, test, and deploy high-fidelity detections and correlation rules; reduce alert noise. • Operationalize threat intel (IOCs, behavioral analytics) into monitoring and detections. • Track and respond to emerging threats and vulnerabilities impacting our stack. • Maintain shift logs, knowledge base updates, runbooks, and handoffs. • Support deployment, configuration, and maintenance of SIEM/XDR/SOAR, IDS/IPS, E-mail security, WAF, CASB, DLP, PAM, and endpoint security platforms. • Build and maintain data sources, parsers/normalization, health checks, and content packs. • Implement security baselines, hardening guides, and secure configurations across endpoints, servers, cloud, and network devices. • Integrate cloud telemetry (AWS/GCP/Azure), identity signals (Entra ID/Okta/AD), and SaaS logs into monitoring with robust detections.

🎯 Requirements

• 5+ years relevant work experience. • Clear written and verbal communication, decision-making under pressure, and strong collaboration across IT and business teams. • Ability to work independently on shift and drive incidents to closure. • Certifications: GCIA, GMON, GDAT, CySA+, CASP+, CISSP (or equivalent experience). • Experience with SentinelOne, Zscaler ZIA, Google Secops, Azure/M365 security tooling, E-mail security and PAM.

🏖️ Benefits

• This job has no supervisory responsibilities. • Subject to both typical office environment and outside locations with temperature and weather variations. • Must be able to lift and carry up to 25 pounds. • Occasional travel may be required.

Apply Now

Similar Jobs

🕒 Yesterday

ProCircular

11 - 50

💼 Consulting

🏥 Healthcare

⚖️ Legal

Security Operations Engineer leading incident response and forensic investigations at ProCircular. Managing critical security incidents and developing detection methodologies in a SOC environment.

🕒 2 days ago

Quorum Federal Credit Union

51 - 200

🛡️ Insurance

💼 Consulting

🏦 Banking

Security Operations Manager administering cybersecurity operations for Quorum Federal Credit Union. Responsible for incident response, identity management, and operational security monitoring.

🕒 2 days ago

Echo Global Logistics

1001 - 5000

📦 Logistics

🚗 Transport

☁️ SaaS

Manager of Security Operations leading AI-powered threat detection and incident response at Echo Global Logistics. Overseeing SOC operations and mentoring analysts to improve security outcomes.

🕒 5 days ago

Allstate

10,000+ employees

💼 Consulting

📦 Logistics

🛡️ Insurance

Service Manager overseeing Supplier Security Due Diligence & Monitoring Service at Allstate. Leading a specialized service intersecting cybersecurity, legal, and business strategy.

🕒 July 18

Twilio

5001 - 10000

🔌 API

🤝 B2B

Senior Security Engineer leading the technical response to incidents and enhancing security processes for Twilio. Working across R&D Engineering and Business teams on security challenges and incident management.