remote
Senior Security Operations Engineer - dispel
Systems Engineer
Lead advanced security operations, orchestrating incident response, threat hunting, and SIEM management across cloud environments using AWS and Python to safeguard enterprise assets.
About the role
Key Responsibilities
- Design, implement, and maintain SIEM solutions to detect, analyze, and respond to security incidents across on‑prem and cloud infrastructures.
- Lead threat hunting initiatives, leveraging behavioral analytics and custom Python scripts to uncover advanced threats.
- Coordinate incident response activities, including containment, eradication, and recovery, while documenting findings and improving playbooks.
- Collaborate with cloud security teams to harden AWS environments, enforce IAM best practices, and automate security controls.
- Develop and maintain security monitoring dashboards, alerts, and reporting for executive stakeholders.
Requirements
- 5+ years of experience in security operations, incident response, or related fields.
- Proficiency with SIEM platforms (e.g., Splunk, QRadar, Sentinel) and threat intelligence feeds.
- Strong scripting skills in Python and familiarity with AWS security services (GuardDuty, Security Hub, IAM).
- Experience with threat hunting frameworks and behavioral analytics.
- Excellent communication skills and ability to work cross‑functionally in a fast‑paced environment.