SOC - Engineer
Job Description
We are seeking an experienced SOC Engineer (Level 3) to lead advanced threat detection, incident response, and proactive security operations. The role involves handling critical cybersecurity incidents, conducting threat hunting, and strengthening organizational security posture while serving as a technical escalation point for SOC teams. The ideal candidate should have strong expertise in cyber defense, threat intelligence, and security operations with the ability to communicate risks effectively to stakeholders.
Key Responsibilities
• Lead response to major security incidents and breaches.
• Conduct advanced threat hunting and forensic analysis.
• Analyze zero-day, advanced persistent threats (APTs), and sophisticated attacks.
• Define incident response strategy and decision-making.
• Coordinate with legal, compliance, risk, and executive teams.
• Support digital forensics and evidence preservation.
• Design and optimize SOC architecture, tools, and processes.
• Lead post-incident reviews and lessons learned.
• Provide expert guidance and training to SOC Levels 1 and 2.
Required Skills
• Expert knowledge of cyber attack techniques and defensive strategies.
• Deep understanding of threat intelligence, forensics, and detection engineering.
• Strong scripting and automation skills (Python, PowerShell, KQL, SPL, etc.).
• Ability to communicate technical risks to senior management.
Experience & Certifications
• 5+ years of SOC, incident response, or threat hunting experience.
• Preferred: GCIA, GCIH, GCED, CISSP, CISM, OSCP.
