Information Security Engineer - Security Operations (SOC)

Harris Health
Bellaire, TX, United States
29 days ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Experienced
Experience required
2 years minimum
Compensation
$99,216.0 - $129,002.0
Working hours
Regular working hours

Tech stack

Microsoft Azure Cyber Security Identity and Access Management Intrusion Detection and Prevention Python (Programming Language) Microsoft Office Windows PowerShell Kusto Query Language Runbook Security Information and Event Management Scripting Data Ingestion
+5 more
Microsoft Power Automate Mitre Att&ck Mttr Azure Security Center Microsoft Sentinel

Job description

The Information Security SOC Engineer is a hands-on cybersecurity professional responsible for engineering, operating, and automating detection and response capabilities. The engineer designs and maintains content in Microsoft Sentinel (data connectors, analytics rules, hunting queries, workbooks), enhances protections with Microsoft Defender (Endpoint/XDR, Office 365, Identity), and builds automation using Azure Logic Apps., Typical duties may include: Detection Engineering & SIEM Operations (Microsoft Sentinel and Rapid 7) Own Sentinel content lifecycle including data ingestion, analytic rules, KQL queries, UEBA tuning, watchlists, and dashboards. Develop hunting queries and proactive threat detection logic. Implement incident enrichment and correlation across multiple data sources. Endpoint, Email, and Identity Protection (Microsoft Defender) Engineer configurations within Microsoft Defender for Endpoint/XDR, Defender for Office 365, and Identity protection. Integrate Defender alerting with Sentinel for enhanced detection correlation.

Automation & Orchestration (Azure Logic Apps) Build, deploy, and manage Logic Apps SOAR playbooks for automated triage, enrichment, and response. Implement approval flows, track automation metrics, and improve MTTR.

Incident Response & Collaboration Support containment, eradication, and recovery of security incidents. Conduct post-incident reviews and update detection logic and processes accordingly.

Runbooks, Documentation & Continuous Improvement Maintain engineering runbooks, playbooks, and process documentation. Track SOC metrics and produce security operational dashboards.

Requirements

Bachelor’s degree in Cybersecurity/IT or equivalent experience. 2 - 4+ years in SOC, SIEM engineering, or detection/response roles. Experience building automation. Strong understanding of incident response and MITRE ATT&CK. Experience integrating MSSP feeds and third-party tools. Certifications such as SC-200, SC-100, AZ-500, Security+, CEH Strong analytical and communication skills. Team-oriented with a positive and professional approach.

Preferred Qualifications: Hands-on experience with Microsoft Sentinel (KQL, analytics rules, workbooks, connectors). Hands-on experience with Microsoft Defender (Endpoint/XDR, Office 365, Identity). Scripting experience (PowerShell, Python). Experience building automation using Azure Logic Apps.

About the company

Harris Health is the public healthcare safety-net provider established in 1966 to serve the residents of Harris County, Texas. As an essential healthcare system, Harris Health champions better health for the entire community, with a focus on low-income uninsured and underinsured patients, through acute and primary care, wellness, disease management and population health services. Ben Taub Hospital (Level 1 Trauma Center) and Lyndon B. Johnson Hospital (Level 3 Trauma Center) anchor Harris Health’s robust network of 39 clinics, health centers, specialty locations and virtual (telemedicine) technology. Harris Health is among an elite list of health systems in the U.S. achieving Magnet(r) nursing excellence designation for its hospitals, the prestigious National Committee for Quality Assurance designation for its patient-centered clinics and health centers and its strong partnership with nationally recognized physician faculty, residents and researchers from Baylor College of Medicine; McGovern Medical School at The University of Texas Health Science Center at Houston (UTHealth); and The University of Texas MD Anderson Cancer Center.

At Harris Health, we prioritize the well-being of our most valuable asset–our people–ensuring a culture of compassion, collaboration and excellence in serving Harris County’s most in need. With integrity and accountability at our core, we commit to ‘leading with love’, embodying our dedication to quality care, education, and a steadfast respect for every individual’s contribution to our mission.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on kshealthjobs.net

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

4:01 min

Finding personal fulfillment in the cybersecurity industry

LIVE

2:50 min

Introduction and the value of runbooks

Hila Fish · WWC 2023

3:08 min

Aligning engineering processes with core business impact metrics

Chris Riley · WWC 2021

1:04 min

Introduction to Bitcoin script parsing tools

Steve Shadders · LIVE

3:22 min

Transitioning from software engineering to security roles

Anna Oliveira · Coffee With Developers

1:32 min

Structuring automated incident workflows between runbooks and raw models

Aram Hakobyan Aram Hakobyan +1 · WWC Europe 2026

Videos

See all

Related articles

See all