Security Operations Center Engineer

IBM

Quick summary

Work type
On-site
Location
Austin, TX
Posted
10 days ago

Market check

Salary context

How this pay compares to similar roles

Similar $171k
$120k most similar roles pay here $209k

This listing doesn't post a salary. Most similar roles pay $142,400–$199,025.

Based on 240 similar postings.

Employer

About IBM

IBM is a US-based global technology company providing hybrid cloud, AI, consulting, enterprise software, and IT infrastructure products and services.

IBM currently has 915 open roles on FindRole.

Listed pay typically runs $1,000,000–$1,000,000 across 10 roles with salary data.

Most-posted roles

View all roles at IBM

At a glance

TL;DR · Security Operations Center Engineer

As a Senior Security Engineer on the SOC Engineering team in Austin, TX, you will play a pivotal role in advancing security operations by building and optimizing next-generation detection and response capabilities. Your day-to-day responsibilities include managing SIEM platforms for ingestion, parsing, correlation, and performance optimization, as well as developing high-quality detections across various environments such as SIEM, EDR/XDR, cloud, identity, and network. You will also troubleshoot data quality issues, integrate security tools into a unified detection ecosystem, and apply AI to enhance analyst decision-making. The role requires hands-on experience with SIEM tools, knowledge of cloud computing and network protocols, and expertise in risk management, vulnerability assessment, threat analysis, auditing, monitoring, and incident response. This position demands strong communication skills and the ability to work independently while driving continuous improvement in security operations.

What you'll do

  • Manage and optimize SIEM platforms for ingestion, parsing, correlation, and performance.
  • Build and tune high-quality detections across various security environments.
  • Improve signal quality by reducing false positives and expanding detection coverage.
  • Translate threat intelligence into actionable detections to enhance security outcomes.
  • Develop automation and orchestration for triage, investigation, and remediation processes.
  • Integrate security tools and data sources into a unified detection ecosystem.

What we're looking for

  • 4+ years of information security experience with hands-on SIEM tool administration and configuration.
  • Expertise in building high-quality detections across multiple environments including SIEM, EDR/XDR, cloud, identity, and network.
  • Broad understanding of security practices such as risk management, threat analysis, auditing, monitoring, and incident response.
  • Working knowledge of cloud computing, network protocols, and common information security standards/frameworks.
  • CYSA+, GCIH, GCIA, OSCP, CISSP or similar certification required.

More like this

Similar roles

Security Operations Center Engineer

IBM

Richardson, TX 10 days ago
SIEM EDR XDR Cloud_Security Identity_and_Access_Management Network_Security Automation Orchestration AI Terraform AWS Azure GCP Python Logstash Elasticsearch Kibana Splunk CI/CD

Security Systems Engineer

Booz Allen Hamilton

Atlanta, GA 29 days ago $69,300$158,000
Armis Elastic Stack Bash Perl JavaScript Python CI/CD Kubernetes Docker AWS Azure Google Cloud Platform Terraform Ansible PostgreSQL MongoDB Redis Git Jenkins Prometheus Grafana Splunk SIEM Nmap Wireshark

Sr Security Engineer

Adobe

Seattle +1 7 days ago $180,600$261,450
Entra ID AD Okta SailPoint Zero Trust RBAC ABAC M365 Slack GitHub Workday Google Python PowerShell Terraform Teleport Vault SPIFFE SPIRE CI/CD

Security Engineer

Booz Allen Hamilton

Annapolis Junction, MD 37 days ago $112,800$257,000
Elasticsearch Kibana Logstash Beats Fleet ES QL EQL Elastic Security SOAR n8n XSOAR Elastic transforms runtime fields RAG architectures vector search Python scikit-learn PyTorch AI/ML concepts

Security Engineer

Leidos

Reston, VA 32 days ago $131,300$237,350
AWS Azure DISA_STIGs Nessus Splunk PRTG Trellix_Endpoint_Security ePolicy_Orchestrator CI/CD Agile Linux RHEL Windows Python SQL PostgreSQL Active_Directory Network_Monitoring SIEM Threat_Modeling OWASP Microsoft_Threat_Modeling_Tool NIST_RMF Red_Hat_OpenShift Kubernetes Terraform

Security Engineer

Stripe

Remote (South San Francisco, CA) 16 days ago $194,251$268,400
AWS GCP Azure Docker Kubernetes CI/CD Threat Modeling Application Security Infrastructure Security Python Go RADAR Issuing Connect Subscriptions Checkout
Remote Hybrid