Skip to content

Open nowPosted 13 days ago

IT Security Engineer

edyo.fa.us2.oraclecloud.com/CX54 open roles

Where
Fort Mill, SC, United States
Get the CV for this job

From $25 per CV, paid once. No subscription.

Your applicationOpen nowIT Security Engineeredyo.fa.us2.oraclecloud.com/CX · Fort Mill, SC, United States
  1. YouYes, apply to this one.

  2. CV RocketCV written for this posting.

  3. 25 readersRecruiter, hiring manager, skeptic. Round after round.

  4. CV RocketApplied on edyo.fa.us2.oraclecloud.com/CX's own form.

The reply lands in your private mailbox

3×more interviews than doing it yourself with ChatGPT.

The clock on this job

Early applications get read.

8.2% of postings close within 7 days. Measured by our own scanner across the market. edyo.fa.us2.oraclecloud.com/CX postings stay open a median of 4 days.

Share of postings closed within
  1. 1.8%1 day
  2. 3.6%3 days
  3. 8.2%7 days
  4. 15.2%14 days
  5. 34.0%30 days
This job: posted 13 days ago

edyo.fa.us2.oraclecloud.com/CX median: 4 days open

The posting

Job Description

Overview The SOC Engineer is the technical lead for the organization's SIEM platform and serves as the SOC's Tier 3 escalation resource. This role owns the design, tuning, and continuous advancement of detection content, drives SOAR playbook creation and adherence, and provides deep investigative expertise for the most complex security incidents. The ideal candidate combines strong hands-on SIEM engineering and query-language skills with the judgment and leadership to mentor Tier 1/2 analysts and shape the SOC's detection strategy.

Key Responsibilities

  • Own and advance the organization's SIEM platform, including analytics/correlation rules, dashboards, data connectors, ingestion/cost management, and the overall detection roadmap.
  • Lead detection engineering efforts: design, build, tune, and validate analytics rules across identity, endpoint, cloud, and network telemetry.
  • Serve as the SOC's Tier 3 escalation point, performing deep technical investigation, root-cause analysis, and forensic collection on the most complex or high-severity incidents.
  • Design, build, and maintain SOAR playbooks and drive consistent analyst adherence to documented playbook procedures.
  • Build automation and enrichment pipelines (including AI-assisted triage where applicable) to reduce manual effort and improve mean time to detect/respond.
  • Mentor and provide technical guidance to Tier 1/2 SOC analysts, including reviewing investigations and coaching on playbook execution.
  • Evaluate, onboard, and tune new log sources, data connectors, and threat intelligence feeds to expand detection coverage.
  • Partner with IAM, endpoint, and network security teams to ensure detection coverage keeps pace with control and infrastructure changes.
  • Track and report on detection engineering and SOC performance metrics (e.g., MTTD, MTTR, playbook adherence, false-positive rates).
  • Maintain thorough documentation of detection logic, playbooks, and incident response procedures.
  • Participate in on-call rotation and respond to security incidents after hours when necessary.

Minimum Requirements

  • 4+ years of experience in cybersecurity, including at least 2 years of hands-on experience with an enterprise SIEM platform and its query language(s).
  • Demonstrated experience leading or serving as a senior/Tier 3 resource within a SOC or incident response function.
  • Strong hands-on experience building and tuning SIEM analytics rules and detection content.
  • Experience designing and maintaining SOAR playbooks or equivalent security orchestration/automation tooling.
  • Solid incident response and forensics experience, including investigation, evidence handling, and documentation.
  • Proficiency with scripting/automation (PowerShell, Python, or similar).
  • Experience integrating security tooling (EDR, email security, identity, network) into a SIEM for detection and correlation.
  • At least one relevant security certification (e.g., GCIA, GCIH, CySA+, Security+, or vendor-specific SIEM certifications).
  • Strong understanding of the MITRE ATT&CK framework and common adversary tactics, techniques, and procedures.
  • Able to respond to security incidents after hours when necessary.

Preferred Qualifications

  • Bachelor's degree in Computer Science, Information Technology, Cybersecurity, or a related field (or equivalent experience).
  • Experience with SIEM dashboard/reporting development and executive/board-level reporting on security metrics.
  • Experience with AI/LLM-assisted alert enrichment or triage pipelines.
  • Familiarity with common enterprise security stack components (EDR, secure web gateway/CASB, identity providers, email security) and how they integrate into detection workflows.
  • Familiarity with SOC 2, risk assessments, and other GRC functions.
  • Advanced certifications (e.g., GCFA, GCTI, OSCP, CISSP) are a plus.
  • Excellent problem-solving skills and the ability to lead through ambiguity under pressure.
  • Strong communication skills, with the ability to convey technical findings to both technical and non-technical stakeholders.

Physical Demands:

The physical demands described here are representative of those that must be met by an employee to successfully perform the essential functions of this job.

While performing the duties of this job, the employee is regularly required to talk or hear. The employee is frequently required to stand; walk; use hands to fingers, handle, and feel; and reach with hands and arms, and operate objects, tools or controls; reach with hands and arms.

.

Work Environment:

While performing the duties of this job, the employee is not substantially exposed to adverse environmental conditions (such as in typical office or administrative work). The employee may be subject to one or more of the following atmospheric conditions that affect the respiratory system of the skin: fumes, odors, dust, mists, gases, or poor ventilation.

Competencies:

  • Excellent oral and written communication skills to effectively interact with internal customers and department staff.
  • Self-Motivated
  • Team-Oriented
  • Customer Oriented
  • Must be able to follow Company safety rules and all other Company policies.

Pike Enterprises, LLC is an Equal Opportunity Employer

EOE/Minorities/Females/Vet/Disabled

NOTE: This job description is not intended to be all-inclusive. Employee may perform other related duties as requested to meet the ongoing needs of the organization.

About Us

About Us

Founded in 1945, Pike is a leading provider of construction, repair and engineering services for electric and gas utilities, as well as telecommunications companies with a growing portfolio of turnkey renewable projects. We work with hundreds of utility clients across the country, and we continuously expand our offerings to supply our customers with the ideas, technology, experience, manpower and equipment to perform any job.

“Essential” is the one word that sums up who we are, the work we do and what our people mean to us. Each of our employees plays a critical role in ensuring that infrastructure systems are up and running when people and businesses need them.

Pike is a family-oriented workplace with a strong culture of safety, collaboration, innovation and exceptional customer service.

Corporate

Join our team of operational and safety leaders. We offer exciting opportunities in corporate roles across our family of companies throughout the country.

From $25, paid onceGet the CV for this job

What happens when you press

One press. We do the rest.

  1. A CV for this posting

    Written against edyo.fa.us2.oraclecloud.com/CX's own wording, from every piece of relevant proof in your profile.

  2. 25 readers review it

    Recruiter, hiring manager, skeptic and more read every draft, round after round. You get the best round.

    The review screen in CV Rocket: how each CV was read, round by round.
  3. We apply on edyo.fa.us2.oraclecloud.com/CX's form

    Our application engine gets through the hardest forms there are. Where a question needs you, AI suggests the best answer. Don't want us applying from our IP addresses? Use our Chrome extension: we apply straight from your own browser.

    An application in CV Rocket: every answer filled in on the employer's form.
  4. Every reply, sorted

    edyo.fa.us2.oraclecloud.com/CX's answer lands in your private mailbox, and we classify it on arrival: interview, question, rejection.

    The CV Rocket inbox: each employer reply classified as an interview, an action or a rejection.
  5. Reply with AI

    AI helps you write the email, checks it and sends it. We show you whether the recruiter read it.

  6. The interview in your calendar

    Full integration with your calendar. The invitation goes straight in.

    An interview invitation in the CV Rocket inbox, added to the candidate's calendar.
Get the CV for this job

From $25 per CV, paid once. No subscription.

Why it works

3×

more interviews than doing it yourself with ChatGPT.

ChatGPT writes a CV and never learns what happened to it. We see every reply. For each CV we know:

  • How it was written, and how the review scored it
  • When we applied, and how long after the posting went up
  • Which posting, which company, which city
  • Who got the interview, and who heard nothing

That is how we know which CVs get called.

Get the CV for this job

From $25 per CV, paid once. No subscription.

The numbers game

More applications. More interviews.

Every application goes out with its own CV, written for that posting and paid once. Send enough of them and the law of large numbers finds you the job.

By hand5–10
With CV Rocket100
applications a day

Nearby

Live postings like this one

Same employer first, then the same role elsewhere.

Before you press

Straight answers

Get the CV for this job

From $25 per CV, paid once. No subscription.

What if my background isn't good enough?

We make the most of the background you have. The CV uses every piece of relevant proof your profile holds, and one of the 25 readers reads your whole profile and flags what the CV left out.

Do you really apply for me?

Yes, on the employer's own form, the hardest ones included. Where a question needs you, you answer it right there and AI suggests the best answer. Don't want us applying from our IP addresses? Use our Chrome extension: we apply straight from your own browser.

Is it a subscription?

No. You pay once per CV, from $25. Every application goes out with its own CV, written for that posting.

One job. One CV.
Paid once.

Pick the posting you want. We write for it, apply for you and catch the reply.

Get the CV for this job

From $25 per CV, paid once. No subscription.