Security Operations Engineer II

Posted 39ds ago

Employment Information

Education
Salary
Experience
Job Type

Report this job

Job expired or something wrong with this job?

Job Description

Security Operations Engineer II optimizing systems and responding to security threats in cybersecurity. Monitoring, detecting, and analyzing, while enhancing infrastructure security from real-world threats.

Responsibilities:

  • Monitor, detect, analyze, and respond to security threats in real time.
  • Lead incident response efforts—from containment to recovery.
  • Hunt for threats, analyze logs, and fine‑tune detection rules.
  • Perform forensic investigations and reconstruct attack paths.
  • Harden servers, workstations, and network infrastructure using CIS, STIGs, and best practices.
  • Manage and optimize firewalls (Palo Alto, Fortinet, SonicWall), IDS/IPS, SIEM, and EDR tools.
  • Drive vulnerability management and partner with teams to remediate risks.
  • Create clear documentation, playbooks, and security reports.

Requirements:

  • 5+ years Windows/Linux admin experience + 3+ years in security operations/IR/forensics.
  • Deep knowledge of OS internals, firewalls, network security, and security frameworks.
  • Hands-on experience with SIEM, EDR, IDS/IPS, and vulnerability scanners.
  • Strong analytical, communication, and documentation skills.
  • Ability to stay calm and effective during high-severity incidents.
  • Passion for continuous learning and staying ahead of emerging threats.
  • Experience with MSP/MSSP environments a plus; SonicWall experience preferred.