Position Overview:
We are looking for an experienced Security Engineer to take on a senior technical role within our cybersecurity team. This position builds on the analyst function, handling escalated investigations, while also owning the health, configuration, and evolution of our customers' security tooling environments. You will troubleshoot and tune customer platforms, manage change requests and upgrades, engineer new threat detection logic, and drive proactive threat hunting, including leading hunting exercises with SOC analysts. This is a role for someone who wants to move beyond alert triage and take ownership of detection strategy and tooling reliability across a customer base.
About NetCyberOps:
Founded by a pair of seasoned operators from the National Security Agency, our company stands at the forefront of the cybersecurity landscape, dedicated to delivering premier, white-glove cybersecurity services to our clients and partners. With a foundation built on the expertise and insights of our founders, we are deeply committed to upholding the highest standards of quality and reliability. Our focus is not just on meeting, but exceeding the security needs of those we serve, ensuring peace of mind in an ever-evolving digital world.
Technical Requirements:
- Strong understanding of digital signatures, file hashes, and encryption and encoding principles.
- Ability to read, write, and troubleshoot scripts (e.g., Python, PowerShell, Bash).
- Solid knowledge of operating system internals, antivirus/EDR functioning, and virtualization.
- Strong networking knowledge, including TCP/UDP/ICMP protocols, DNS, and packet-level analysis.
- Advanced Windows expertise, including Active Directory, system processes, and common attack paths.
- Working knowledge of Linux administration, including SSH and shell usage.
- Solid understanding of malware classifications, behaviors, and identification techniques.
- Hands-on experience configuring, tuning, and troubleshooting EDR and SIEM platforms required.
- Experience with detection engineering (writing and tuning correlation rules, signatures, or detection logic).
- Experience conducting or leading threat hunting exercises.
- Familiarity with change management processes for production security tooling.
Social Skills:
- Strong technical communication abilities, including the ability to explain technical decisions to both analysts and customers.
- Ability to write clear technical documentation, including tooling configuration guides and detection logic write-ups.
- Capability to lead customer conversations regarding tooling issues, escalations, and threat findings.
Soft Skills:
- Professionalism in all aspects of work.
- Strong critical thinking, root-cause analysis, and problem-solving skills.
- Comfortable mentoring and guiding SOC analysts, including during escalations and hunting exercises.
- Ability to manage multiple customer environments and competing priorities.
- A strong drive to stay current with emerging threats and tooling capabilities.
Responsibilities:
- Handle escalated investigations from SOC analysts, providing deeper analysis and final disposition.
- Ensure customer security tooling environments (EDR, SIEM, and related platforms) are configured correctly and functioning as intended.
- Troubleshoot tooling issues and manage change requests and upgrades across customer environments.
- Design, build, and tune threat detection logic to improve detection coverage and reduce false positives.
- Conduct proactive threat hunting and lead threat hunting exercises with SOC analysts.
- Interact with customers and partners on technical escalations, tooling changes, and threat findings.
- Continuously evaluate and improve tooling, detection content, and SOC processes.
Qualifications:
- A degree in a relevant field (e.g., Computer Science, Information Technology) or equivalent practical experience.
- 3+ years of experience in a SOC, security engineering, or related cybersecurity role.
- Relevant certifications (e.g., CompTIA Security+, GCIH, GCIA, or vendor-specific EDR/SIEM certifications) are a plus.
Benefits:
- Fully Remote Work
- Health Insurance (+ Dental / Vision)
- 401k Retirement
- Competitive PTO with carry-over
- Flexible Holidays (11)
- Other Leave (Parental, Bereavement, etc)
- Home Office equipment fund
- Personal Development opportunities
- and more!
Join our team and grow your career in the fast-paced and ever-evolving field of cybersecurity. Be a part of a proactive team dedicated to maintaining the highest standards of digital security.
Notice: We are unable to consider candidates who require visa sponsorship to work in the US. NetCyberOps participates in E-Verify to confirm employment eligibility for all new hires. Employment contingent on successful completion of a background check.
NetCyberOps is an Equal Opportunity Employer. We consider all qualified applicants without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, age, disability, or veteran status.