Security Operations Engineer

🔥 0 minutes ago

🇺🇸 United States – Remote

💵 $104.3k - $157.9k / year

⏰ Full Time

🟡 Mid-level

🟠 Senior

🛡️ Security Operations

🦅 H1B Visa Sponsor

infoinfo

👻 Ghost score 0%

infoinfo

🗣️🇪🇸 Spanish Required

Apply Now
Find Similar Remote Jobs

📊 Check your resume score for this job

Improve your chances of getting an interview by checking your resume score before you apply.

Logo of Tokio Marine HCC

Tokio Marine HCC

1001 - 5000 employees

📦 Logistics

💼 Consulting

✈️ Travel

Logistics • Consulting • Travel

Tokio Marine HCC is a global specialty insurance and reinsurance group that underwrites more than 100 classes of specialty insurance across 180+ countries. The company offers a wide range of commercial products—including accident & health, aviation, casualty, cyber & tech, energy, marine, travel, crop, and transactional risk—serving brokers, enterprises, and program partners. With strong financial ratings (AM Best A++ / Fitch AA- / S&P A+) and a multi-billion dollar premium base, Tokio Marine HCC combines underwriting expertise, program management, and claims services as part of the Tokio Marine Group.

📋 Description

• Review and investigate MDR alerts requiring customer follow-up. • Support incident validation, scoping, and remediation activities. • Conduct log analysis and security investigations. • Assist customers with containment and recovery validation. • Document investigative findings and recommendations. • Support deployment and administration of Sophos MDR technologies. • Assist with endpoint onboarding, integrations, and configuration activities. • Troubleshoot technical issues involving MDR platforms. • Validate policy configurations and security controls. • Maintain technical documentation and operational runbooks. • Support Cyber Hygiene assessments and compliance reviews. • Assist with security maturity evaluations. • Review customer environments for security improvement opportunities. • Provide technical recommendations aligned to security best practices. • Work closely with TAMs on customer engagements. • Coordinate with Sophos MDR teams during investigations. • Support DFIR personnel during escalated incidents. • Participate in service improvement initiatives. • Prioritize investigations, technical support requests, and operational activities. • Prepare technical reports, investigation summaries, and operational documentation. • Analyze security events, endpoint telemetry, cloud audit logs, network traffic, and security platform data. • Validate alerts, identify root causes, and recommend remediation actions. • Maintain awareness of emerging threats, attack techniques, and cybersecurity best practices. • Comply with corporate security policies, confidentiality requirements, and regulatory obligations. • Contribute to operational processes and technical playbooks. • Partner with Technical Account Managers, Sophos MDR personnel, internal engineering teams, and DFIR consultants during investigations and escalations. • Support knowledge sharing and continuous improvement across the Managed Services organization.

🎯 Requirements

• Minimum 4 Year Bachelors Degree in Cyber security, Computer Science, information Technology related degree. • 3+ years in security operations, cybersecurity engineering, SOC operations, incident response, or IT security. • Knowledge of Microsoft 365, Google Workspace, endpoint security, network security technologies, log analysis, and security investigation methodologies. • Strong troubleshooting and analytical skills. • Experience supporting MSSP, MDR, or SOC environments. • Familiarity with NIST CSF, CIS Controls, and common compliance frameworks. • Experience supporting Microsoft Defender, Sophos, CrowdStrike, SentinelOne, or similar platforms. • Professional proficiency in Spanish (written and verbal) with the ability to communicate technical and security concepts to Spanish-speaking customers. • Ability to effectively communicate technical and security concepts to both technical and non-technical audiences in English; Spanish language proficiency is a plus. • Preferred Security+, CySA+, SC-200, Sophos Engineer, or similar certifications a plus. • DFW based candidates preferred. • Detail-oriented and process-driven. • Collaborative team player.

🏖️ Benefits

• Competitive salary and employee benefit package • Strong learning culture • Growth perspectives • 6% 401K match • 20 days of PTO and 2 Floating Days • Paid parental leave • An opportunity to love what you do

Apply Now

Similar Jobs

🔥 2 hours ago

SANS Institute

201 - 500

🔒 Cybersecurity

📚 Education

☁️ SaaS

Senior SOC Engineer building SANS’s agentic SOC, detection engineering, and security automation. Securing cloud, identity, applications, vulnerabilities, and incident response.

🔥 22 hours ago

Valiant Solutions

201 - 500

💼 Consulting

🎖️ Defense

🔒 Cybersecurity

Tier III SOC Analyst conducting forensic investigations, detection engineering, and incident escalation. Supporting Valiant Solutions’ public-sector cybersecurity contracts through remote telework.

🕒 Yesterday

Concentric

201 - 500

🔐 Security

💼 Consulting

Program Manager overseeing embedded employees, vendors, and protective operations for Concentric, a global risk consultancy. Managing client relationships, security resources, compliance, and operational delivery.

🕒 2 days ago

Mondelēz International

10,000+ employees

💼 Consulting

📣 Marketing

📦 Logistics

Operations Analyst supporting Mondelēz International’s cyber defense operations. Assessing information security risks, testing controls, implementing security technology, and training teams.

🕒 2 days ago

Samsara

1001 - 5000

📦 Logistics

🏗️ Construction

🏥 Healthcare

Senior Security Operations Engineer monitoring incidents and leading forensics for Samsara’s Connected Operations IoT platform. Building security automation and supporting insider-threat investigations.