Security Operations Center Engineer

🔥 12 hours ago

🇺🇸 United States – Remote

💵 $83.7k - $161.8k / year

⏰ Full Time

🟢 Junior

🟡 Mid-level

🛡️ Security Operations

🦅 H1B Visa Sponsor

infoinfo

👻 Ghost score 0%

infoinfo
Apply Now
Find Similar Remote Jobs

📊 Check your resume score for this job

Improve your chances of getting an interview by checking your resume score before you apply.

Logo of Mercury Insurance

Mercury Insurance

5001 - 10000 employees

Founded 1962

🚘 Automotive

💼 Consulting

📦 Logistics

Automotive • Consulting • Logistics

Mercury Insurance is a leading provider of insurance products, focusing on protecting individuals and their assets with a commitment to privacy and customer service. The company operates through independent agents and offers a range of insurance services including auto, home, and other personal insurance products. Mercury Insurance prioritizes the security of personal information and compliance with privacy laws, ensuring that customer data is handled with care and only shared when necessary for account servicing or as legally required.

📋 Description

• Identify, investigate, and escalate security alerts and events in a 7x24x365 environment • Manage and configure security monitoring tools • Assess security systems and measures for weaknesses and improvements • Define security process road maps and knowledge articles • Validate change management and manage user/system-impacting security incidents and resolutions • Administer SOC/NOC-owned tools, including scripting, customizations, report building, alert modifications, automations, and maintenance • Minimize risk and exposure to system security and business interruptions • Monitor security tools and systems by analyzing logs, alerts, and data for suspicious activity • Investigate potential threats, validate alerts, and identify vulnerabilities • Supervise incident/security issues, including preliminary triage, troubleshooting, and remediation • Gather and analyze evidence to determine incident scope and impact • Contain threats and remediate vulnerabilities through patching, configuration changes, or other measures • Assist with recovery of affected systems and data and report incident status to management • Document findings for future reference and improvement • Actively participate in disaster recovery and Business Continuity Plan (BCP) events • Maintain current knowledge of the IT security industry and new or revised security solutions

🎯 Requirements

• BS degree in Computer Science, Information Technology, related field; and/or equivalent combination of education or work experience • 2-4 years of 24x7x365 Security Operations experience and related technologies • Enterprise Security Operations support experience • Enterprise security document creation • Understanding of IT infrastructure and networking, including operating systems, network protocols, and basic infrastructure components • Familiarity with common security threats, vulnerabilities, and mitigation strategies, including firewalls, intrusion detection/prevention systems (IDS/IPS), and SIEM tools • Ability to write basic scripts to automate tasks and generate reports • Understanding of established incident response procedures, including containment, eradication, and recovery • Proficiency in security tools and software used by security organizations • Experience using ExtraHop, Qradar, Splunk and/or other security-related tools for visibility, monitoring, detection, alerting, response, and investigation • Clear and concise communication with technical and non-technical audiences, including public speaking, critical business writing, process documentation, and knowledge base article composition • Ability to analyze complex security data, identify root causes, and develop effective solutions • Meticulous attention to detail • Ability to make quick and informed decisions during critical security incidents • Preferred: GIAC Security Essentials Certification; GIAC Security Leadership Certification; ISACA Certified Information Security Manager; Microsoft Certified Systems Engineer: Security; (ISC)2 SCCP; (ISC)2 CISSP; (ISC)2 ISSAP; CCSK4; ServiceNow; SIEM Solutions; TrustWave; Email Protection Solutions; Endpoint Detection & Response Solutions; Microsoft 365 Security Suite; Incident Management Communication tools; CV/CIRT Gov’t notification process; Load balancers & Web Application Firewall Solutions; Firewall/router/networking equipment; Web Content Filtering (WSS); Secure Web Gateway Solutions; ITIL Foundations certifications (V3 or V4)

🏖️ Benefits

• Competitive compensation • Flexibility to work from anywhere in the United States for most positions • Paid time off (vacation time, sick time, 9 paid Company holidays, volunteer hours) • Incentive bonus programs (potential for holiday bonus, referral bonus, and performance-based bonus) • Medical, dental, vision, life, and pet insurance • 401 (k) retirement savings plan with company match • Engaging work environment • Promotional opportunities • Education assistance • Professional and personal development opportunities • Company recognition program • Health and wellbeing resources, including free mental wellbeing therapy/coaching sessions, child and eldercare resources, and more

Apply Now

Similar Jobs

🔥 17 hours ago

Palo Alto Networks

10,000+ employees

🔒 Cybersecurity

🏢 Enterprise

Manager leading SOC and Detection Engineers at Palo Alto Networks, a cybersecurity company. Driving Python automation, XSIAM detection engineering, threat research, and operational excellence.

🔥 18 hours ago

Rapid7

1001 - 5000

🔒 Cybersecurity

Security Operations Analyst II investigating threats and strengthening Rapid7’s cybersecurity products and services. Conducting incident response, threat hunting, forensic analysis, and detection improvements.

🕒 6 days ago

Teamficient

11 - 50

📦 Logistics

📣 Marketing

✈️ Travel

SOC Analyst monitoring enterprise security alerts and investigating incidents for TeamFicient’s IT services cybersecurity team. Supporting SIEM-based detection, incident response, and threat protection.

🕒 September 2

1Password

501 - 1000

🔒 Cybersecurity

☁️ SaaS

⚡ Productivity

Security incident response manager leading responders and scaling AI-assisted security operations. Protecting 1Password’s password-management and unified access platform.

🕒 September 1

SHI International Corp.

5001 - 10000

💼 Consulting

📦 Logistics

🏭 Manufacturing

Presales Security Operations Architect designing SOC architectures, demos, and integrations for SHI’s enterprise clients. Building SecOps practice collateral, partnerships, and enablement programs.