Federal SOC Engineer Detect and Respond Analyst (US Citizen)

PSI Services LLC
Salem, OR, United States
18 days ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Experienced
Experience required
3 years minimum
Compensation
$125,000.0
Working hours
Regular working hours
Job source

Tech stack

Amazon Web Services Systems Engineering User Authentication Microsoft Azure Cyber Security Intrusion Detection and Prevention Intrusion Detection Systems Network Security Linux System Administration Windows PowerShell Cloud Services Security Information and Event Management
+9 more
Software Vulnerability Management Data Logging Software Security Mttr Cyber Threat Analysis Firewalls (Computer Science) Information Technology Cybercrime CIS Benchmarks

Job description

The SOC Engineer Detect and Respond Analyst is responsible for designing, implementing, and operating PSI’s security infrastructure while actively monitoring, detecting, and responding to security threats across the enterprise. This hybrid role combines engineering ownership of security platforms with hands-on SOC operations , ensuring that systems are not only secure by design but continuously monitored and defended.

This role partners with senior management, business units, and technology teams to build scalable security solutions and maintain a strong operational security posture aligned with ISO 27001, NIST, CIS, SOC 2, and FedRAMP standards. The individual operates as both a technical leader for security tooling and a front-line responder for security incidents, bridging the gap between engineering and operations.

The SOC Engineer Detect and Respond Analyst works within a global team to design, implement, tune, and monitor security controls, improve detection capabilities, and respond to evolving cyber threats.

Role Responsibilities

Security Engineering & Platform Ownership

  • Lead projects to evaluate, select, implement, and optimize security technologies
  • Design, configure, implement, and maintain enterprise security platforms:
  • SIEM and log aggregation solutions
  • EDR/XDR (CrowdStrike)
  • Email security (Proofpoint or equivalent)
  • Firewalls, IDS/IPS, DLP, and vulnerability management tools
  • Develop and tune detection rules, correlation logic, and alerting within SIEM and EDR platforms
  • Integrate cloud (AWS/Azure) telemetry and security controls into centralized monitoring
  • Maintain and enhance security logging architecture across infrastructure and applications
  • Ensure systems are hardened and aligned with CIS benchmarks and DISA STIGs
  • Participate in architecture reviews for on-prem and cloud solutions
  • Automate security processes using scripting (PowerShell, etc.)

SOC Operations & Threat Monitoring

  • Monitor security alerts, logs, and events to identify potential threats and anomalies
  • Perform tier 2/3 incident analysis, including investigation, containment, eradication, and recovery
  • Conduct root cause analysis and develop remediation recommendations
  • Perform threat hunting based on attacker TTPs and emerging intelligence
  • Enrich alerts with contextual data from multiple sources (SIEM, EDR, threat intel)
  • Maintain and improve SOC playbooks and response procedures
  • Participate in on-call rotation and incident response activities

Governance, Compliance & Documentation

  • Ensure adherence to ISO 27001, NIST, SOC2, CIS, and FedRAMP controls
  • Support audits by providing evidence of monitoring, detection, and response capabilities
  • Define and maintain technical security standards and runbooks
  • Maintain accurate and up-to-date documentation of security architecture and processes
  • Report on SOC metrics (MTTD, MTTR, incident trends, detection coverage

Requirements

  • US Citizenship required due to Government client requirements
  • Bachelor’s degree in computer science or equivalent training/certification.
  • 7+ years of working experience as a Security Engineer or Systems Engineer
  • 3+ years of working experience with email security tools such as Proofpoint
  • 3+ years of working experience with CrowdStrike EDR and SIEM solutions
  • Ability to achieve federal security clearance, must be a US Citizen
  • Experience with FedRamp security controls
  • In-depth knowledge and understanding of the integration of AWS with fundamental Information Security methodologies for both architectural review and implementation
  • Strong knowledge of Windows and Linux environments
  • Experience drafting and promoting security policy with all levels of business stakeholders
  • Experience and detailed technical knowledge of security engineering, system and network security, authentication and security protocols, cryptography, and application security
  • Good written and verbal communication skills with the ability to follow a project from beginning to end while providing updates along the way, while prioritizing time and dealing with multiple projects
  • Experience with CIS Hardening Standards and/or DISA STIGs

Benefits & conditions

  • Retirement Benefits: 401(k), pension, or country-specific retirement plans with employer contributions
  • Generous Time Off: Enhanced paid time off/annual leave policies
  • Health & Wellbeing Coverage: Medical insurance tailored to your region, plus:
  • US: Dental, vision, life, and short-term disability insurance
  • UK: Medical cashback plan including dental, vision, and income protection
  • Flexible Spending Accounts (US)
  • Employee Assistance Program (EAP): Confidential support whenever you need it
  • Work-Life Balance: We understand life happens outside of work, and we fully support flexibility
  • Wellness Culture: Regular global wellness initiatives to help you stay healthy and inspired
  • Future Planning: Tools and support to help you grow personally and professionally
  • Giving Back: Enjoy a Volunteer Day each year and opportunities to support our communities and industry
  • Alongside a competitive salary, we offer a comprehensive benefits package designed to support your well-being, your future, and your sense of purpose.

At PSI, we’re more than just a workplace - we’re a global team driven by shared values and real impact. If you’re ready to be part of a company that’s committed to your growth and well-being, we’d love to hear from you.

Equal Opportunity Employer/Protected Veterans/Individuals with Disabilities

This employer is required to notify all applicants of their rights pursuant to federal employment laws.

About the company

We are PSI Services. We power world leading tests. Delivered with trusted science and the very best test taker experience. PSI supports test-takers on their journey to pursuing dreams and gaining certifications that are important to them. They believe that their dreams are worth working for; that their dreams are worth the effort. And we believe that too. This is our core purpose, to empower people to achieve their dreams. We do this by being the best provider of workforce solutions, which foster both technology and science to deliver the best solutions for our test takers.

We are searching for top talent to join our PSI team and help grow our products and services. We have a creative, supportive and inclusive culture where we empower people in their careers to be their authentic self and make the most of their great talent.

At PSI, we are committed to helping people meet their potential and we believe that promoting diversity, equity and inclusion is critical to our success. That’s why you’ll find these ideals are intrinsic to our company culture and applied throughout the employee lifecycle.

Learn more about what we do at: https://www.psiexams.com

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on dejobs.org

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

4:01 min

Finding personal fulfillment in the cybersecurity industry

LIVE

1:10 min

Exposing sensitive information through partial search logs

Dennis Schulz Dennis Schulz +1 · World Congress 2026 Europe

3:08 min

Aligning engineering processes with core business impact metrics

Chris Riley · World Congress 2021

4:34 min

Motivational categories behind modern cybercriminal activities

Mauro Verderosa · LIVE

3:22 min

Transitioning from software engineering to security roles

Anna Oliveira · Coffee With Developers

1:56 min

Discovering incidents using logs, metrics, and traces

Nele Uhlemann · World Congress 2023

Videos

See all

Related articles

See all