Security Engineer - SOC - CrowdStrike - Threat Hunting - Incident Response - MITRE ATT&CK

ORBIS INC.
United States
9 days ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Working hours
Regular working hours

Tech stack

Amazon Web Services Microsoft Azure Cyber Security System Configuration Intrusion Detection and Prevention Cloud Services Runbook Security Information and Event Management Google Cloud Mitre Att&ck Multi-Cloud QRadar
+2 more
Cybercrime Splunk

Job description

Security Engineer - SOC - CrowdStrike - Threat Hunting - Incident Response - MITRE ATT&CK Key Skills

Requirements

  • Strong Security Operations background, with proven experience in a 24/7 SOC environment conducting L2/L3 incident analysis, containment, eradication and recovery
  • Proven hands-on experience administering, configuring and tuning CrowdStrike Falcon, including detection engineering, policy management and cross-domain investigation across endpoint, identity and cloud workloads
  • Experience across SIEM platforms (eg Sentinel, Splunk, QRadar) with the ability to build and refine detection use cases, dashboards and advanced hunting queries
  • Strong understanding of MITRE ATT&CK, Kill Chain and STRIDE frameworks, with experience developing structured threat hunting campaigns
  • Experience with endpoint security, identity and access controls (eg Entra ID, MFA, Conditional Access, PIM/JIT) across hybrid and multi-cloud environments (Azure, AWS, GCP)
  • Ability to develop and maintain automated playbooks, runbooks and SOAR workflows for efficient alert handling and remediation
  • Knowledge of security and compliance frameworks such as ISO 27001, NIST CSF, SOC 2 and GDPR, with experience supporting audit and assurance evidence
  • Strong stakeholder management skills, working closely with engineering, compliance, vendor and senior leadership teams

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on computerjobs.com

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

3:22 min

Transitioning from software engineering to security roles

Anna Oliveira · Coffee With Developers

2:50 min

Introduction and the value of runbooks

Hila Fish · World Congress 2023

2:38 min

Establishing comprehensive monitoring and log management

Michael Eder +1 · LIVE

4:19 min

Introduction to network security and endpoint monitoring architectures

Christoph Ruggenthaler · LIVE

4:01 min

Finding personal fulfillment in the cybersecurity industry

LIVE

1:32 min

Structuring automated incident workflows between runbooks and raw models

Aram Hakobyan Aram Hakobyan +1 · World Congress 2026 Europe

Videos

See all

Related articles

See all