Security Engineer - Automation

Remote Full-time
Description Job Summary: Ark is looking for a Security Engineer to build, maintain, and improve automation for our Managed Detection & Response platform. You will work with other Security Engineers and directly with the Security Operations Center (SOC) to enhance and improve security and response processes. This may include deployments, threat data enrichment, reporting & metrics, case management, and integrations with other platforms. While automation will be your primary responsibility, there will be ample opportunity to work on threat detection rules & tuning, incident response, and internal security controls. Please note this role is hybrid remote and located in one of Ark Data Centers states. Essential Functions • Manage the security automation platform within ark, focusing on accuracy and integrity • Work with other Security Engineers & SOC Analysts to ensure automation and integration of our security tool chain across platforms • Work closely with various teams: • Sales Engineering to provide SME knowledge during the pre-sales / scoping phase • Project Management to help lead multiple deployments for our customers, ensuring deadlines are met and issues are escalated • Coordinate with the SOC for configuration and tuning activities to ensure a smooth transition to operations • Internal cloud and network teams to tightly integrate their platforms with our tools • Proactively maintain platform health for our customers by periodically reviewing the deployments, and identifying potential issues while working with the customer to resolve • Projects & research work as needed • Incident handling • Evaluating and recommending new and emerging security products & technologies Requirements Qualifications: • Bachelor’s degree in information security, Information Assurance or related field, or equivalent work • 5+ years of hands-on experience managing MDR/SIEM platforms • 5+ years of demonstrable security automation & integration experience (Microsoft Azure DevOps & Power Automate preferred) • Security certifications preferred (CySA+, CISSP, vendor certs) • Understanding of system & network security Technical Knowledge • Proven experience with enterprise-class SIEM tools & technologies – Sumo Logic preferred • Experience in creating standard processes & configuration documentation • Strong understanding of data architecture and storage tiering as it relates to log ingestion into the SIEM • Software development/scripting background • Strong understanding of DevOps concepts and CI/CD pipelines to drive automation within the platforms • Experience with automation and integration into a security stack • Experience creating custom threat detections in an enterprise-class SIEM platform • Knowledge of network protocols and related services (e.g., TCP/IP, UDP, IPSEC, HTTP, HTTPS, SMB, SSH, routing protocols, etc.) Compensation The compensation for this position is $100,425 - $165,315 annually. Final offer amounts are determined by multiple factors including experience and skillsets. Apply tot his job
Apply Now

Similar Opportunities

Associate Engineer, SOAR Information Security

Remote Full-time

Senior Cybersecurity & Compliance Analyst

Remote Full-time

Sr. IT Security Compliance Analyst

Remote Full-time

Senior Security Analyst (Security Compliance)

Remote Full-time

Navient Senior Security and Product Compliance Analyst – Remote, US in Jefferson City, Missouri

Remote Full-time

Compliance and Security Specialist

Remote Full-time

Security Specialist, Compliance

Remote Full-time

Lead Regional Compliance Specialist

Remote Full-time

[Remote] Compliance Program Strategist

Remote Full-time

[Remote] Lead Corp Security Consultant - Executive Services

Remote Full-time

Freelance Market Research Field Researcher (HCP & Patient Interviews)

Remote Full-time

Experienced Remote Live Chat Support Specialist - Customer Service Excellence at blithequark

Remote Full-time

**Experienced Full Stack Cloud AI Enterprise Customer Engineer – AI-Optimized Infrastructure and Cloud Platform Development**

Remote Full-time

Investigator - Asset Protection Operations Center - Corporate

Remote Full-time

Clinical Informatics Systems Analyst _ Remote _ Only on w2 in Abbott Park, IL

Remote Full-time

Arbitration Case Specialist - IDR Claims

Remote Full-time

**Experienced Customer Care Associate – Work from Home Opportunity with arenaflex**

Remote Full-time

**Experienced Customer Service Representative – Work From Home Opportunity at arenaflex**

Remote Full-time

Community Outreach Associate (Russian Speaking)

Remote Full-time

**Experienced Project Manager, Global Customer Care – Hybrid Work Environment at blithequark**

Remote Full-time
← Back to Home