IT Security Engineer

Pike Electric
Fort Mill, SC, United States
3 days ago
Apply on www.dice.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Experienced
Experience required
2 years minimum
Working hours
Regular working hours
Job source

Tech stack

Artificial Intelligence Build Automation Cyber Security Query Languages Identity and Access Management Intrusion Detection and Prevention Python (Programming Language) Network Security Windows PowerShell Web Application Security Security Information and Event Management Scripting
+5 more
Large Language Models Mitre Att&ck Mttr Information Technology 3-tier Architectures

Job description

The SOC Engineer is the technical lead for the organization’s SIEM platform and serves as the SOC’s Tier 3 escalation resource. This role owns the design, tuning, and continuous advancement of detection content, drives SOAR playbook creation and adherence, and provides deep investigative expertise for the most complex security incidents. The ideal candidate combines strong hands-on SIEM engineering and query-language skills with the judgment and leadership to mentor Tier 1/2 analysts and shape the SOC’s detection strategy., * Own and advance the organization’s SIEM platform, including analytics/correlation rules, dashboards, data connectors, ingestion/cost management, and the overall detection roadmap.

  • Lead detection engineering efforts: design, build, tune, and validate analytics rules across identity, endpoint, cloud, and network telemetry.
  • Serve as the SOC’s Tier 3 escalation point, performing deep technical investigation, root-cause analysis, and forensic collection on the most complex or high-severity incidents.
  • Design, build, and maintain SOAR playbooks and drive consistent analyst adherence to documented playbook procedures.
  • Build automation and enrichment pipelines (including AI-assisted triage where applicable) to reduce manual effort and improve mean time to detect/respond.
  • Mentor and provide technical guidance to Tier 1/2 SOC analysts, including reviewing investigations and coaching on playbook execution.
  • Evaluate, onboard, and tune new log sources, data connectors, and threat intelligence feeds to expand detection coverage.
  • Partner with IAM, endpoint, and network security teams to ensure detection coverage keeps pace with control and infrastructure changes.
  • Track and report on detection engineering and SOC performance metrics (e.g., MTTD, MTTR, playbook adherence, false-positive rates).
  • Maintain thorough documentation of detection logic, playbooks, and incident response procedures.
  • Participate in on-call rotation and respond to security incidents after hours when necessary., NOTE: This job description is not intended to be all-inclusive. Employee may perform other related duties as requested to meet the ongoing needs of the organization.

Requirements

  • 4+ years of experience in cybersecurity, including at least 2 years of hands-on experience with an enterprise SIEM platform and its query language(s).
  • Demonstrated experience leading or serving as a senior/Tier 3 resource within a SOC or incident response function.
  • Strong hands-on experience building and tuning SIEM analytics rules and detection content.
  • Experience designing and maintaining SOAR playbooks or equivalent security orchestration/automation tooling.
  • Solid incident response and forensics experience, including investigation, evidence handling, and documentation.
  • Proficiency with scripting/automation (PowerShell, Python, or similar).
  • Experience integrating security tooling (EDR, email security, identity, network) into a SIEM for detection and correlation.
  • At least one relevant security certification (e.g., GCIA, GCIH, CySA+, Security+, or vendor-specific SIEM certifications).
  • Strong understanding of the MITRE ATT&CK framework and common adversary tactics, techniques, and procedures.
  • Able to respond to security incidents after hours when necessary., * Bachelor’s degree in Computer Science, Information Technology, Cybersecurity, or a related field (or equivalent experience).
  • Experience with SIEM dashboard/reporting development and executive/board-level reporting on security metrics.
  • Experience with AI/LLM-assisted alert enrichment or triage pipelines.
  • Familiarity with common enterprise security stack components (EDR, secure web gateway/CASB, identity providers, email security) and how they integrate into detection workflows.
  • Familiarity with SOC 2, risk assessments, and other GRC functions.
  • Advanced certifications (e.g., GCFA, GCTI, OSCP, CISSP) are a plus.
  • Excellent problem-solving skills and the ability to lead through ambiguity under pressure.
  • Strong communication skills, with the ability to convey technical findings to both technical and non-technical stakeholders.

Physical Demands:

The physical demands described here are representative of those that must be met by an employee to successfully perform the essential functions of this job.

While performing the duties of this job, the employee is regularly required to talk or hear. The employee is frequently required to stand; walk; use hands to fingers, handle, and feel; and reach with hands and arms, and operate objects, tools or controls; reach with hands and arms., * Excellent oral and written communication skills to effectively interact with internal customers and department staff.

  • Self-Motivated
  • Team-Oriented
  • Customer Oriented
  • Must be able to follow Company safety rules and all other Company policies.

About the company

Founded in 1945, Pike is a leading provider of construction, repair and engineering services for electric and gas utilities, as well as telecommunications companies with a growing portfolio of turnkey renewable projects. We work with hundreds of utility clients across the country, and we continuously expand our offerings to supply our customers with the ideas, technology, experience, manpower and equipment to perform any job.

“Essential” is the one word that sums up who we are, the work we do and what our people mean to us. Each of our employees plays a critical role in ensuring that infrastructure systems are up and running when people and businesses need them.

Pike is a family-oriented workplace with a strong culture of safety, collaboration, innovation and exceptional customer service.

About the Team

Corporate

Join our team of operational and safety leaders. We offer exciting opportunities in corporate roles across our family of companies throughout the country.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.dice.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

1:38 min

Using language models to self-detect and flag software vulnerabilities

Julian Totzek-Hallhuber Julian Totzek-Hallhuber · World Congress 2026 Europe

1:04 min

Introduction to Bitcoin script parsing tools

Steve Shadders · LIVE

3:08 min

Aligning engineering processes with core business impact metrics

Chris Riley · World Congress 2021

4:01 min

Finding personal fulfillment in the cybersecurity industry

LIVE

1:53 min

Evaluating traditional scripting languages for modern development tasks

Jens Knipper Jens Knipper · Europe 2026 Virtual

3:22 min

Transitioning from software engineering to security roles

Anna Oliveira · Coffee With Developers

Videos

See all

Related articles

See all