remote
Senior Security Operations Engineer I - Samsara
Systems Engineer
Senior Security Operations Engineer responsible for monitoring, detecting, and responding to security incidents across a large-scale IoT cloud platform, leveraging SIEM tools, Python automation, and AWS security services.
About the role
Key Responsibilities
- Monitor and analyze security events using SIEM platforms (e.g., Splunk) to identify threats and anomalies in real time.
- Lead incident response activities, including triage, containment, eradication, and post‑mortem analysis.
- Develop and maintain automated detection and remediation scripts in Python to improve response efficiency.
- Collaborate with engineering and cloud teams to design and implement security controls within AWS environments.
- Conduct threat hunting and vulnerability assessments to proactively reduce risk.
- Document security incidents, create actionable reports, and contribute to continuous improvement of security processes.
Requirements
- 5+ years of experience in security operations, incident response, or related fields.
- Strong hands‑on experience with SIEM tools (Splunk, QRadar, etc.) and log analysis.
- Proficiency in Python for automation and scripting.
- Deep understanding of AWS security services (IAM, GuardDuty, CloudTrail, etc.) and cloud‑native security best practices.
- Experience with threat hunting, vulnerability management, and developing security playbooks.
Skills
siemsplunkpythonaws