Description
Merlin Group is hiring a SOC Engineer to build, operate, and improve security operations capabilities focused on security automation, platform engineering, and detection engineering. The role partners with SOC analysts and other engineering, infrastructure, and GRC teams to develop Splunk detections, normalize log sources across AWS, Azure, and GCP, build Torq workflows, engineer SOC tooling, maintain documentation and audit evidence, and participate in incident escalation and on-call rotations. Candidates need at least four years of relevant SOC, detection, or security engineering experience, strong Splunk expertise, automation and scripting skills, cloud security knowledge, and familiarity with Terraform and ServiceNow.
