onsite
Principal Information Security Operations Engineer - Matson
Systems Engineer
Lead the security operations team, designing and executing advanced threat detection, incident response, and cloud security strategies across a global logistics environment using SIEM, SOC tools, and AWS security services.
About the role
Key Responsibilities
- Architect and maintain a world‑class Security Operations Center (SOC) that monitors, detects, and responds to threats across on‑premise and cloud environments.
- Lead incident response efforts, coordinating cross‑functional teams to contain, eradicate, and recover from security incidents.
- Design and implement SIEM solutions, including log collection, correlation rules, and alert tuning to reduce noise and improve detection accuracy.
- Drive continuous improvement of threat hunting processes, leveraging threat intelligence feeds and advanced analytics.
- Collaborate with cloud architects to secure AWS workloads, enforce IAM best practices, and implement automated security controls.
- Develop and deliver security awareness training and playbooks for internal stakeholders.
Requirements
- 10+ years of experience in information security, with 5+ years in a SOC or incident response leadership role.
- Deep expertise in SIEM platforms (e.g., Splunk, QRadar, ArcSight) and incident response frameworks.
- Hands‑on experience securing AWS environments, including IAM, GuardDuty, Security Hub, and Config.
- Strong analytical skills, with the ability to design and implement automated detection and response workflows.
- Excellent communication skills and a proven track record of leading cross‑functional security initiatives.