As a Deployment Engineer, you will onboard customers, provide technical support, and manage deployment challenges while enhancing the customer experience.
SNOC Engineer III
📜 Description
- Drive continuous improvement across SNOC operations by identifying opportunities to strengthen monitoring, incident response, automation, workflows, and operational efficiency.
- Serve as the primary escalation point for complex and high-severity incidents, leading advanced analysis and supporting containment, eradication, recovery, and root cause investigations.
- Perform advanced threat analysis using SIEM, EDR, identity protection, network telemetry, and other security monitoring platforms.
- Investigate complex alerts and correlated incidents across endpoint, identity, email, cloud, and network environments.
- Develop and refine detection capabilities, including SIEM analytics rules, threat-hunting queries, alert enrichment logic, and automated response playbooks.
- Mentor junior SNOC engineers during investigations, troubleshooting, and incident response activities.
🛠️ Requirements
- Bachelor's degree in Cybersecurity, Information Technology, or a related field preferred, or equivalent professional experience.
- Advanced knowledge of security operations, incident investigation, threat detection methodologies, and operational best practices.
- Experience working with SIEM and monitoring platforms such as Microsoft Sentinel, Wazuh, SentinelOne, or comparable technologies.
- Strong understanding of networking fundamentals, endpoint protection, identity security, and cloud environments such as Azure and AWS.
- Demonstrated ability to troubleshoot complex technical issues and provide leadership during high-severity operational events.
- Preferred certifications include GIAC GCIH, GCIA, or GCFA; CompTIA CySA+ or CASP+; Microsoft Certified: Azure Security Engineer Associate; AWS Certified Specialty.
✨ Benefits
- Annual salary of $105,000.
- Fully remote work.
- Standard business hours, first shift schedule.
- Medical
- Dental
- Vision coverage
- Life insurance.
- 401(k) with company match.
- Paid holidays.
- FSA and HSA options.
Full job description
This position is listed on behalf of a partner company, who manages all applications and next steps. Our partner is looking for a SNOC Engineer III based in United States.
This role offers an opportunity to provide advanced technical leadership within a fast-paced security and network operations environment. You will take ownership of complex incidents, conduct sophisticated threat investigations, and help strengthen monitoring and detection capabilities. Working across network, endpoint, identity, email, and cloud environments, you will play a key role in protecting critical client systems. You will also drive operational improvements through automation, detection engineering, and enhanced response workflows. The position combines hands-on technical expertise with mentorship, documentation, compliance support, and cross-functional collaboration. It is well suited to an experienced security professional who enjoys solving complex problems and improving operational maturity.
Accountabilities:
- Drive continuous improvement across SNOC operations by identifying opportunities to strengthen monitoring, incident response, automation, workflows, and operational efficiency.
- Serve as the primary escalation point for complex and high-severity incidents, leading advanced analysis and supporting containment, eradication, recovery, and root cause investigations.
- Perform advanced threat analysis using SIEM, EDR, identity protection, network telemetry, and other security monitoring platforms.
- Investigate complex alerts and correlated incidents across endpoint, identity, email, cloud, and network environments.
- Develop and refine detection capabilities, including SIEM analytics rules, threat-hunting queries, alert enrichment logic, and automated response playbooks.
- Identify potential risks, vulnerabilities, and suspicious activity and recommend appropriate remediation and long-term risk mitigation strategies.
- Support the onboarding and integration of telemetry from new platforms and technologies into the monitoring environment.
- Maintain and improve operational documentation, including runbooks, investigation guides, incident response procedures, and knowledge base materials.
- Mentor junior SNOC engineers during investigations, troubleshooting, and incident response activities.
- Collaborate with engineering, infrastructure, and client teams to implement remediation measures and improve security operations.
- Ensure incidents, investigations, and operational actions are accurately documented in ticketing and case management systems.
- Support compliance initiatives, audits, incident reporting, disaster recovery validation, and operational readiness exercises.
- Bachelor's degree in Cybersecurity, Information Technology, or a related field preferred, or equivalent professional experience.
- Advanced knowledge of security operations, incident investigation, threat detection methodologies, and operational best practices.
- Experience working with SIEM and monitoring platforms such as Microsoft Sentinel, Wazuh, SentinelOne, or comparable technologies.
- Strong understanding of networking fundamentals, endpoint protection, identity security, and cloud environments such as Azure and AWS.
- Experience with advanced log analysis, threat hunting, alert triage, and investigation across multiple telemetry sources.
- Demonstrated ability to troubleshoot complex technical issues and provide leadership during high-severity operational events.
- Experience improving security monitoring through detection engineering, alert tuning, automation, and analytics.
- Strong written and verbal communication skills, including the ability to produce clear operational documentation and communicate effectively with clients and internal teams.
- Familiarity with relevant security frameworks, compliance standards, and operational best practices.
- Preferred certifications include GIAC GCIH, GCIA, or GCFA; CompTIA CySA+ or CASP+; Microsoft Certified: Azure Security Engineer Associate; AWS Certified Specialty; and Cisco CCNP or equivalent.
- Annual salary of $105,000.
- Fully remote work.
- Standard business hours, first shift schedule.
- Medical, dental, and vision coverage.
- Life insurance.
- 401(k) with company match.
- Paid holidays.
- FSA and HSA options.
- Pet insurance.
- Certification, training, and professional development opportunities.
- Collaborative environment focused on technical growth, mentorship, and continuous improvement.
Requirements:
Benefits:
Similar jobs
Search more Software Engineer jobsLMR Application Support & ROL Testing Engineer
Support and test the Radio Online (ROL) application by providing user support, conducting system testing, and collaborating within an Agile team to enhance application performance.
Develop and evolve a high-availability distributed PostgreSQL solution, focusing on architecture, software development, and performance optimization in a remote EMEA role.
Develop and evolve a high-availability distributed PostgreSQL solution, focusing on architecture, software development, and performance optimization within a remote, globally distributed team.
Develop and evolve a high-availability distributed PostgreSQL solution, focusing on architecture, software development, and performance optimization within a remote EMEA team.
