← All jobs

Remote

Security Operations Engineer

About this role

šŸ“‹ Description Triage and respond to security alerts across endpoints, cloud, and network telemetry. Automate repetitive workflows and use AI to boost speed, scale, and effectiveness. Contain incidents and remediate, following and improving runbooks. Tune SIEM and EDR detections to reduce false positives and close gaps. Apply threat intel (IOCs and TTPs) to active investigations. Participate in on-call and document post-incident findings clearly.

šŸŽÆ Requirements 3+ years in security operations, detection/response, or security engineering. Experience investigating threats across endpoints, cloud, and network telemetry. Strong analytical judgment; calm, methodical incident triage. Hands-on SIEM/EDR experience; tune detections to reduce false positives. Builder mindset; automate repetitive work, using AI to scale. Experience applying threat intel (IOCs/TTPs) to investigations.

Source listing: empllo_remote