SOC/SecOps Engineer - Remote / Telecommute
Job OverviewRequirement: Must-Have:Designed/improved detections, mapped to MITRE ATT&CK, built SOAR response automation, and worked with MDR/SOC providers.Hands-on detection writing, some SOAR exposure, alert tuning, and ability to follow defined standards.Vendor SIEM certs, SOAR certs.Hands-on experience securing SaaS environments at scale.SaaS inventory, risk classification, and ownership models.Implementing DLP, session controls, and SaaS monitoring.Integrating SaaS alerts into SOC workflows and incident processes.Producing evidence-ready reporting for audits and compliance reviews.Working within established governance frameworks without redefining strategyTechnical owner for detection quality, automation design, Arctic Wolf integration, and outcome validation. Must define standards, approve designs, and ensure operationally sound delivery.Executes detection and automation tasks under Tier 1 direction; cannot independently define strategy, automation architecture, or SOC/MDR operating models.Platform/automation adjacent support; helpful but never mandatory.