Description
The SOC Engineer serves as the technical lead for the organization's SIEM platform and Tier 3 escalation resource. The role owns SIEM analytics, detection content, data connectors, dashboards, SOAR playbooks, automation, incident investigation, forensics, and SOC performance metrics, while mentoring Tier 1 and Tier 2 analysts and partnering with security teams. The position requires at least four years of cybersecurity experience, including two years with an enterprise SIEM, plus incident response, forensics, scripting, and security-integration experience.
