Senior SOC Engineer
Job Summary
Requirements
Mandatory Certification (any one):
Preferred Certifications:
Benefits
Required Skills:
Security Monitoring & Incident Response Investigate security incidents and provide advanced technical support for detection and response. Perform real-time monitoring across SIEM XDR/EDR NDR OT and cloud security platforms. Conduct root cause analysis (RCA) and document lessons learned. Coordinate containment eradication and recovery actions during incidents. Ensure adherence to defined SLAs and KPIs for incident handling and escalation. Detection Engineering & Use Case Management Develop and tune SIEM/XDR correlation rules aligned with MITRE ATT&CK. Reduce false positives and enhance detection coverage. Implement advanced detection use cases for ransomware insider threats data exfiltration and APT activity. Onboard log sources develop parsers and normalize data for improved visibility. Continuously review and optimize detection thresholds and logic. Vulnerability Management Lead the full vulnerability management lifecycle from discovery to remediation validation. Correlate vulnerability data with threat intelligence and exploitability context. Prioritize remediation based on CVSS business impact and asset criticality. Validate remediation effectiveness through rescans and testing support. Prepare executive dashboards and reports on risk exposure and remediation trends. Threat Hunting & Intelligence Integration Perform proactive threat hunting using hypothesis-driven methodologies. Integrate threat intelligence feeds into SIEM/XDR platforms. Track emerging TTPs and adjust detection strategies accordingly. Support adversary simulation and red-team validation exercises. Share actionable threat intelligence insights with stakeholders. Reporting & Stakeholder Management Track critical and high-risk vulnerabilities and SLA breaches. Provide remediation and risk trend reporting. Maintain audit-ready documentation and compliance evidence. Prepare executive-level reports on threat posture and security metrics.
Required Education:
8 years of experience in IT security operations or information security. Bachelors degree in Cybersecurity Information Security Computer Science or related field. Mandatory Certification (any one): Tenable Certified Nessus Professional (TCNP) Tenable Certified Security Center (TCSC) Qualys VMDR Specialist Qualys WAS Specialist
Company Industry
IT Services and IT Consulting
Key Skills
- APIs
- C/C++
- Computer Graphics
- Go
- React
- Redux
- Node.js
- AWS
- Library Services
- Assembly
- GraphQL
- High Voltage
About Company
0-50 employees
Black & Grey HR is a talent acquisition company that can redefine the concept of ‘experience’ in the recruitment process & build great employer brands. We understand that technological advancements, including mobile internet, social media, automation and artificial intelligence, are ... View more