Job Closed
This listing is no longer active.
Lakeview is an Equal Employment Opportunity employer. All aspects of consideration for employment and employment with the Company are governed on the basis of merit, competence and qualifications without regard to race, color, religion, sex, national origin, age, disability, veteran status, sexual orientation, or any other category protected by federal, state, or local law.
Security Operations Center Engineer
Location
United States
Posted
82 days ago
Salary
$165K - $175K / year
Seniority
Mid Level
Job Description
Security Operations Center Engineer
Lakeview Loan Servicing
Overview The IT Security Team is looking for a seasoned professional to support a passionate, innovative, and results driven team. The Security Operations Center (SOC) Engineer is responsible for managing and maintaining security tools such as Splunk SIEM and SOAR platforms, automating SOC workflows, and configuring log collection across on-premises and cloud environments (Azure, AWS). This role collaborates closely with SOC analysts to enhance detection, response, and automation capabilities using SOAR and SIEM technologies. The ideal candidate is skilled in scripting (Python, PowerShell), cloud security configurations, Linux administration, and integrating diverse security tools. They continuously advance SOC effectiveness by staying current on emerging threats, technologies, and best practices. This role can be remote anywhere in the country. The salary range for this role is $165,000 to $175,000, plus an annual bonus. However Lakeview considers several factors when extending an offer, including but not limited to, the roles and associated responsibilities, a candidate's work experience, education/training, location and key skills. Responsibilities - Maintain and configure Splunk SIEM and SOAR infrastructure to support security operations and incident response efforts. - Ensure accurate and reliable ingestion of security logs from on-premises infrastructure, cloud environments (Azure, AWS), and SaaS applications into the SIEM platform. - Develop and manage integrations between SIEM, SOAR, EDR, and other security tools to streamline alerting, enrichment, and automated response. - Work closely with SOC analysts to identify use cases for automation and build playbooks in SOAR platforms (e.g., Splunk SOAR) to improve triage and response efficiency. - Create and maintain detailed documentation, runbooks, and architectural diagrams for all supported security tools and data flows. - Participate in proof-of-concept testing and implementation of new SOC tools, scripts, and detection technologies. - Monitor the health, performance, and scalability of security infrastructure and recommend enhancements or fixes as needed. - Provide mentorship and technical support to SOC analysts in areas such as scripting, tooling, and automation workflows. - Stay current on evolving threat landscapes, detection techniques, and advances in security technologies to continuously improve SOC capabilities. Qualifications - 10+ years of experience in security engineering, security operations, or security automation roles - Splunk administration experience is required; Splunk certifications such as Splunk Cloud Certified Admin, Splunk Enterprise Certified Architect, or Splunk SOAR Certified Automation Developer are preferred - Experience with SOAR platforms is required; Splunk SOAR (Phantom) is preferred - Experience managing EDR platforms - Proficiency in scripting languages such as Python and PowerShell for automation and tool integration - Strong understanding of Azure and AWS logging architecture, including Azure Monitor, Activity Logs, Defender for Cloud, GuardDuty, and CloudTrail - Linux administration experience with a focus on system security and monitoring - Familiarity with network protocols, firewall rules, and endpoint telemetry as they relate to hybrid and cloud environments - Experience integrating APIs across security tools for automation of enrichment, ticketing, and response workflows - Working knowledge of MITRE ATT&CK, detection engineering, and threat hunting techniques - Bachelor’s degree in Cybersecurity, Computer Science, or a related field, or equivalent work experience Knowledge and Skills Required: - Strong problem-solving and analytical skills with attention to detail. - Ability to work independently and collaboratively in a fast-paced environment. - Self-starter with strong interpersonal, written and verbal communication skills and the ability to interact with technical and non-technical stakeholders. Certifications - Splunk Enterprise Certified Admin, Splunk Enterprise Certified Architect OR Splunk Cloud Certified Admin, Splunk SOAR Certified Automation Developer preferred Physical Demands and Work Environment The physical demands described here are representative of those that must be met by an employee to successfully perform the essential functions of this job. Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions. While performing the duties of this job, the employee is regularly required to sit and use hands to handle, touch or feel objects, tools, or controls. The employee frequently is required to talk and hear. The noise level in the work environment is usually moderate. The employee is occasionally required to stand; walk; reach with hands and arms. The employee is rarely required to stoop, kneel, crouch, or crawl. The employee must regularly lift and/or move up to 10 pounds. Specific vision abilities required by this job include close vision, color vision, and the ability to adjust focus. EEOC Lakeview is an Equal Employment Opportunity employer. All aspects of consideration for employment and employment with the Company are governed on the basis of merit, competence and qualifications without regard to race, color, religion, sex, national origin, age, disability, veteran status, sexual orientation, or any other category protected by federal, state, or local law.
Job Requirements
- 10+ years of experience in security engineering, security operations, or security automation roles.
- Splunk administration experience is required; Splunk certifications such as Splunk Cloud Certified Admin, Splunk Enterprise Certified Architect, or Splunk SOAR Certified Automation Developer are preferred.
- Experience with SOAR platforms is required; Splunk SOAR (Phantom) is preferred.
- Experience managing EDR platforms.
- Proficiency in scripting languages such as Python and PowerShell for automation and tool integration.
- Strong understanding of Azure and AWS logging architecture, including Azure Monitor, Activity Logs, Defender for Cloud, GuardDuty, and CloudTrail.
- Linux administration experience with a focus on system security and monitoring.
- Familiarity with network protocols, firewall rules, and endpoint telemetry as they relate to hybrid and cloud environments.
- Experience integrating APIs across security tools for automation of enrichment, ticketing, and response workflows.
- Working knowledge of MITRE ATT&CK, detection engineering, and threat hunting techniques.
- Bachelor’s degree in Cybersecurity, Computer Science, or a related field, or equivalent work experience.
Related Guides
Related Categories
Related Job Pages
More Security Operations Jobs
Workstream Support – Endpoint & Threat
NavitasPartnersNavitas Partners, LLC is a certified WBENC and one of the fastest-growing Technical / IT staffing firms in the US providing services to numerous clients. We offer the most competitive pay for every position. We understand this is a partnership. You will not be blindsided and your salary will be discussed upfront.
Role Description Seeking a proactive and detail-oriented Workstream Support professional to assist in Endpoint & Threat initiatives. This role requires a strong foundation in security, networking, and analytics, along with the ability to independently manage deliverables and support client-facing activities. Key Responsibilities - Workstream Execution - Drive end-to-end task management, milestone tracking, and status reporting - Maintain accurate and up-to-date project tracking artifacts - Ensure timely delivery of workstream objectives with minimal supervision - Documentation & Reporting - Conduct detailed research and produce high-quality documentation - Develop precise and reliable project deliverables on the first pass - Maintain structured documentation for tracking and reporting purposes - Client Engagement - Prepare executive-level communications, including reports and presentations - Draft client-ready deliverables such as slide decks, status updates, and emails - Communicate effectively with stakeholders and leadership Qualifications - Strong foundation in security (G5), networking principles, and business intelligence - Familiarity with tools such as: - Zscaler - Qlik Sense - Compliance Guardian - KnowBe4 - Understanding of Microsoft ecosystem equivalents for security and analytics tools Requirements - Ability to independently manage tasks and timelines - Strong organizational and tracking skills - Experience creating detailed project documentation Behavioral Competencies - Ownership & Accountability: Self-starter with strong follow-through - Adaptability: Ability to quickly learn new tools and processes - Communication: Strong written and verbal communication skills - Attention to Detail: High accuracy in deliverables with minimal revisions Contact Information For more details reach at resumes@navitassols.com
Senior Security Governance Program Manager - Secure Configuration & Asset Management
Centene CorporationTransforming the health of the communities we serve, one person at a time.
You could be the one who changes everything for our 28 million members. Centene is transforming the health of our communities, one person at a time. As a diversified, national organization, you’ll have access to competitive benefits including a fresh perspective on workplace flexibility. *Applicants for this job have the flexibility to work remote from home anywhere in the Continental United States* Must be authorized to work in the U.S. without the need for employment-based visa sponsorship now or in the future. Sponsorship and future sponsorship are not available for this opportunity, including employment-based visa types H-1B, L-1, O-1, H-1B1, F-1, J-1, OPT, or CPT. Position Purpose: Lead development, monitoring, maintenance, and improvements of a foundational Security Governance pillar (i.e., cloud security governance, security metrics and reporting, security oversight, etc.). Subject matter expert dedicated to support enterprise governance needs for a specific area of governance to improve the enterprise security programs based on compliance and risk factors. - Plan and manage requirements and track completion of objectives for security risk, compliance and assessment related to a specific area within enterprise security such as cloud, security metrics and reporting or the findings and remediation program. - Drive and execute initiatives involving cross-departmental dependencies. - Manage projects to improve and strengthen the enterprise security posture and reduce security risk including requirements collection, initiation, planning, execution, status reporting and closure. - Maintain awareness of existing and proposed enterprise security policies and standards. Provides support in security policy and standard development. - Utilize expert knowledge in multiple security domains, while maintaining in-depth across all security domains. - Identify regulatory changes that will affect information security policies, standards and procedures, and recommends appropriate changes. - Support security control owners with control design and implementation. - Lead the design, evaluation, and oversight of controls for key security and security IT projects, programs, applications, and systems, e.g., the Enterprise Control Framework. - Lead activities related to the lifecycle of remediation activities including, delivery timeline tracking, action plan development, gathering and review of evidence artifacts, providing feedback regarding appropriateness of evidence artifacts, and development of documentation to submit for closure. - Drive the direction, development, and maturity of the enterprise GRC tool(s). - Prepare governance documentation for Senior Management including team, Board, and other reporting initiatives as needed. - Continue to look for ways to improve processes and contributes to excellence in team. - Lead complex projects, on time and on budget, escalating concerns and providing weekly updates. - Develop and implement best practices regarding gathering, reporting and representation of security KPIs and KRIs to various stakeholders. - Performs other duties as assigned. - Complies with all policies and standards. Education/Experience: - Bachelor’s degree in Business, Information Technology, related field, or equivalent experience. - 8+ years of experience in GRC, audit, compliance, and regulatory. License/Certification: - CISA, CGEIT, CRISC CISM, CISSP preferred Pay Range: $107,700.00 - $199,300.00 per year Centene offers a comprehensive benefits package including: competitive pay, health insurance, 401K and stock purchase plans, tuition reimbursement, paid time off plus holidays, and a flexible approach to work with remote, hybrid, field or office work schedules. Actual pay will be adjusted based on an individual's skills, experience, education, and other job-related factors permitted by law, including full-time or part-time status. Total compensation may also include additional forms of incentives. Benefits may be subject to program eligibility. Centene is an equal opportunity employer that is committed to diversity, and values the ways in which we are different. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, veteran status, or other characteristic protected by applicable law. Qualified applicants with arrest or conviction records will be considered in accordance with the LA County Ordinance and the California Fair Chance Act
Security Operations Center Analyst
IonQOur mission: to build the world’s best quantum computers to solve the world’s most complex problems.
Role Description As the leader in quantum technology and quantum infrastructure, we're expanding our security operations capability and looking for an SOC Analyst who is excited to help build and mature our detection and response function. You'll work in an environment that values collaboration, inclusivity, and great ideas — no matter where they come from. We promote teamwork, openness, and a culture where people are encouraged to share improvements and challenge the status quo in a constructive way. In this role, you'll handle the full lifecycle of monitoring, analyzing, and responding to security events across our environment. You'll combine quick, effective triage with deeper investigations, threat hunting, and hands-on remediation. You'll also have opportunities to influence tooling, detections, processes, and personal development as our team grows. Responsibilities: - Monitor SIEM, EDR, IDS/IPS, cloud security, and email security alerts for potential threats or abnormal activity. - Triage, validate, and investigate security alerts; identify false positives; escalate or resolve incidents as appropriate. - Perform in-depth analysis of suspicious activity and correlate logs across multiple systems to determine root cause, scope, and impact. - Execute containment and remediation actions such as host isolation, account lockdown, IOC blocking, vulnerability mitigation, and post-recovery validation. - Conduct proactive threat hunting based on threat intelligence, behavioral patterns, or hypothesis-driven analysis. - Support forensic data collection and examination (endpoint artifacts, system logs, cloud audit logs, etc.). - Analyze suspicious files, scripts, URLs, and domains using sandboxing, tooling, and threat intelligence sources. - Recommend and contribute to improvements in SIEM rules, detections, automation workflows, and security playbooks. - Participate in incident response activities, including documentation, communication with stakeholders, and post-incident reviews. - Monitor and maintain the health and accuracy of security tooling, connectors, and log ingestion pipelines. - Help improve security processes, policies, and standards as part of a growing team. - Maintain clear, organized case notes and produce reports when needed. - Opportunity to help shape a growing SOC and influence detection engineering, automation, and incident response processes. Qualifications - 1–3+ years of experience in a SOC, incident response, or security operations environment. - Hands-on experience with SIEM, EDR, and cloud security tools (e.g., Microsoft Sentinel, Defender XDR, Splunk, CrowdStrike, etc.). - Strong understanding of Windows, Linux, and/or macOS internals; identity security; authentication flows; and network fundamentals (TCP/IP, DNS, HTTP). - Familiarity with threat landscape, threat intelligence workflows, and MITRE ATT&CK. - Ability to write basic queries or scripts (KQL, SPL, PowerShell, Python, etc.). - Analytical thinker with strong troubleshooting skills and a structured approach to incident handling. - Clear communication skills and the ability to document technical findings concisely and accurately. - A commitment to doing work the right way — following sound processes, documenting thoroughly, and maintaining a high standard for quality and security operations. - A genuine desire to learn, grow, and continuously improve as the environment, tools, and challenges evolve. Preferred Qualifications - Experience with the Microsoft security stack (Sentinel, Defender for Endpoint/XDR, Entra ID Protection). - Experience with threat hunting, detection tuning, or security automation. - Certifications such as Security+, CySA+, SC-200, AZ-500, GCIH/GCED/GCIA, or equivalent. - Experience working in fast-paced, high-growth tech environments. Benefits - Comprehensive medical, dental, and vision plans. - Matching 401K. - Unlimited PTO and paid holidays. - Parental/adoption leave. - Legal insurance. - Home technology stipend. Location Ideally, this role will work onsite at our office located in Bothell, WA or College Park, MD. We are open to hybrid and remote options for the right candidate. Travel Minimal, less than 10% Compensation The approximate base salary range for this position is $83,430 - $109,232. The total compensation package includes base, bonus, and equity. Compensation will vary based on individual factors such as education, qualifications, and experience of the final candidate(s), specific office location, and calibration against relevant market data and internal team equity.
Cyber-Security Operations Analyst III, Security Architect
Veeam SoftwareYour Single Backup and Data Management Platform for Cloud, Virtual and Physical
• Perform reviews and approvals for Antivirus Exclusions, Browser Extensions, Email Whitelisting, Firewall Rules, Software Installations, and General Security Guidance. • Complete out-of-band requests and Product Architecture (VDC) alignment/support within SLA targets. • Attend Architecture Committee and AI Committee meetings; provide security input and document decisions. • Ensure security controls are integrated into all reviewed projects and changes. • Maintain and update existing security reference architectures under Senior Director guidance. • Contribute to Technical Standards documentation and special projects (e.g., Polaris). • Apply risk assessment frameworks to ticketed requests and suggest compensating controls. • Support the vulnerability management exception process for assigned items. • Work with CT Security Engineering, Cyber Operations, and business units to apply consistent security best practices. • Escalate complex issues to the Senior Director and assist in policy enforcement. • Stay current with security trends, tools, and threats relevant to daily review tasks. • Recommend tactical improvements to streamline approval workflows.


