Job Closed
This listing is no longer active.
Everything local businesses need to win.
Security Engineer II – Detection, SOC Engineering
Location
Utah
Posted
114 days ago
Salary
0
Seniority
Senior
Job Description
Security Engineer II – Detection, SOC Engineering
Podium
• Design, implement, and tune high-fidelity detections across cloud, endpoint, SaaS, identity, and application environments • Build and optimize queries, alerts, and correlation logic within our SIEM and EDR platforms • Participate in SOC on-call rotation and serve as escalation point for high-severity incidents • Lead complex investigations across endpoint, cloud, SaaS, and identity environments • Triage and validate high-impact alerts, ensuring consistent investigative rigor and documentation • Conduct proactive threat hunting to identify gaps in detection coverage • Drive continuous improvement of playbooks, runbooks, and case management standards • Build custom security tooling to improve alert enrichment, investigation, and response • Develop integrations between security tools and internal systems via APIs • Automate repetitive investigative workflows and containment actions • Improve signal quality and reduce false positives across the stack • Contribute to guardrails and enforcement mechanisms across cloud and SaaS environments • Serve as the technical escalation point for high-severity incidents • Lead complex investigations and root cause analysis • Improve and mature incident response playbooks and processes • Conduct post-incident analysis and drive systemic improvements • Raise the technical bar within the SOC through mentorship and code/detection review • Establish standards for detection quality and investigation rigor • Partner closely with AppSec, Infrastructure Security, IT, and Engineering • Help shape the SOC and detection engineering roadmap
Job Requirements
- 5–7+ years of experience in security engineering, detection engineering, or security operations
- Strong experience with SIEM platforms
- Experience with EDR platforms
- Strong scripting skills (Python, Bash, or similar)
- Experience working in AWS or similar cloud environments
- Experience leading complex incident investigations
- Experience building internal security tools (Preferred)
- Detection-as-code or infrastructure-as-code experience (Preferred)
- Experience integrating tools via APIs (Preferred)
- Experience mentoring junior analysts or engineers (Preferred)
- Familiarity with SaaS security and identity-based attack patterns (Preferred)
Benefits
- Open and transparent culture
- Life insurance, long and short-term disability coverage
- Paid maternity and paternity leave
- Fertility Benefits
- Generous vacation time, plus three 4-day summer holiday weekends
- Excellent medical, dental, and vision benefits
- 401k Plan with company matching
- Bi-annual swag drops with cool Podium gear and apparel
- A stellar HQ (Utah) gym with local professional coaches and classes offered
- Onsite HQ (Utah) child care center, subsidized for employees
Related Guides
Related Categories
Related Job Pages
More Security Operations Jobs
• SIEM Platform Management • Log Source Integration • Content Development and Optimization • Performance Monitoring and Optimization • Documentation and Reporting • Security Incident Response • Client Engagement and Advisory • Collaboration and Support • Continuous Learning and Threat Awareness
• Monitor security events and logs from a variety of systems and networks in Datadog • Identify potential security incidents and threats • Perform analysis and investigations, correlating events and data to detect security incidents • Develop, document, and evolve processes and procedures for responding to security incidents • Provide technical guidance, training, and support to other members of the security team • Maintain an up-to-date knowledge of security threats, vulnerabilities, and countermeasures • Work independently with customers on implementations and remote services • Troubleshoot basic configuration/script issues • Attend requirements review and validation sessions as needed • Utilize strong written and verbal communication skills • Stay on time and on task with assigned customer work
Senior Security Operations Center (SOC) Analyst
RapDevDatadog Premier Partner | ServiceNow Elite Partner
• Monitor security events and logs from a variety of systems and networks in Datadog • Identify potential security incidents and threats • Perform analysis and investigations, correlating events and data to detect security incidents • Develop, document, and evolve processes and procedures for responding to security incidents • Provide technical guidance, training, and support to other members of the security team • Maintain an up-to-date knowledge of security threats, vulnerabilities, and countermeasures • Work independently with customers on implementations and remote services • Troubleshoot basic configuration/script issues • Attend requirements review and validation sessions as needed • Utilize strong written and verbal communication skills • Stay on time and on task with assigned customer work
Senior Manager, Triage Team- Security Operations Center
HuntressManaged endpoint protection, detection and response for the 99% who need it most.
Reports to: Senior Director of Threat Detection and Response Location: Remote US Compensation Range: $170,000 to $205,000 base plus bonus and equity What We Do: Huntress is a fully remote, global team of passionate experts and ethical badasses on a mission to break down the barriers to cybersecurity. Whether creating purpose-built security solutions, hunting down hackers, or impacting our community, our people go above and beyond to change the security game and make a real difference. Founded in 2015 by former NSA cyber operators, Huntress protects all businesses—not just the 1%—with enterprise-grade, fully owned, and managed cybersecurity products at the price of an affordable SaaS application. The Huntress difference is our One Team advantage: our technology is designed with our industry-defining Security Operations Center (SOC) in mind and is never separated from our service. We protect 4M+ endpoints and 7M+ identities worldwide, elevating underresourced IT teams with protection that works as hard as they do. As long as hackers keep hacking, Huntress keeps hunting. What You’ll Do As the Senior Manager of SOC Triage, you will lead the critical "front line" of our Security Operations Center. You are responsible for a team that reviews high-volume, low-fidelity security signals to qualify potential threats for our senior Analysis team. Your mission is to maximize detection surface area while serving as a strategic leader for the SOC's primary talent incubator. You will balance operational excellence—ensuring the "noise" is reviewed effectively—with a deep commitment to people development, preparing the next generation of security analysts for career progression. Roles and Responsibilities: Team Leadership & Talent Pipeline: Lead, mentor, and manage a high-performing Triage team. Develop and hold regular career conversations, facilitating an inclusive environment and acting as a steward of company culture. Operational Strategy: Define team priorities and set measurable goals (e.g., data reviewed, escalation quality, incidents identified. Identify and scope the team’s work in partnership with SOC leadership. Signal & Escalation Oversight: Oversee the "Signal Review & Qualification" function to ensure rapid, consistent decision-making based on established playbooks. Ensure qualified threats are escalated with clear, concise context to the Analysis team. What You Bring To The Team: Experience: 4+ years of progressive experience in Security Operations (SOC), threat hunting, or incident response, with at least 3+ years in a leadership/management role. Leadership Mastery: Proven ability to develop and mentor team members, specifically in a high-volume, entry-to-mid-level technical environment. Analytical Mindset: Expert-level ability to identify and surface patterns in security data and translate those insights into solutions or process improvements. Technical Knowledge: Deep understanding of the modern threat landscape, common attacker TTPs (e.g., suspicious inbox rules, persistence mechanisms), and SOC orchestration tools. Communication: Outstanding ability to articulate the "root cause" of problems using first principles and present technical strategy to executive leadership. Adaptability: A forward-thinking mindset with a passion for driving change in a cloud-first, fully remote environment. What We Offer: 100% remote work environment - since our founding in 2015 Generous paid time off policy, including vacation, sick time, and paid holidays 12 weeks of paid parental leave Highly competitive and comprehensive medical, dental, and vision benefits plans 401(k) with a 5% contribution regardless of employee contribution Life and Disability insurance plans Stock options for all full-time employees One-time $500 reimbursement for building/upgrading home office Annual allowance for education and professional development assistance $75 USD/month digital reimbursement Access to the BetterUp platform for coaching, personal, and professional growth Huntress is committed to creating a culture of inclusivity where every single member of our team is valued, has a voice, and is empowered to come to work every day just as they are. We do not discriminate based on race, ethnicity, color, ancestry, national origin, religion, sex, sexual orientation, gender identity, disability, veteran status, genetic information, marital status, or any other legally protected status. We do discriminate against hackers who try to exploit businesses of all sizes. Accommodations: If you require reasonable accommodation to complete this application, interview, or pre-employment testing or participate in the employee selection process, please direct your inquiries to accommodations@huntresslabs.com . Please note that non-accommodation requests to this inbox will not receive a response. Huntress uses artificial intelligence tools to assist in reviewing and evaluating job applications, including resume screening, skills assessment, and candidate matching and comparisons. These AI tools support our human recruiters in the initial review process but do not make final hiring decisions without human involvement. By submitting your application, you acknowledge this use of AI in our recruitment process. Please review our Candidate Privacy Notice for more details on our practices and your data privacy rights. #BI-Remote



