Security Operations Expert

Fortinet

Confirmed live yesterday High trust
Hybrid

Quick summary

Work type
Hybrid
Location
Sunnyvale, CA
Salary
$92,000–$112,000 / yr
Employment
Full-time
Posted
33 days ago
Freshness
Confirmed live yesterday

Market check

Salary context

Below market

How this pay compares to similar roles

Similar $173k
This role $102k
$78k most similar roles pay here $224k

This role pays less than 98% of similar roles. Most pay $137,737–$208,800 — the shaded band above. At the midpoint, this role pays about $102k versus about $173k for comparable roles.

Based on 240 similar postings.

Employer

About Fortinet

Fortinet is a US-based cybersecurity company best known for its FortiGate next-generation firewalls. It sells a broad security platform spanning network security, SD-WAN, endpoint protection, cloud security, and SIEM/SOC operations.

Fortinet currently has 61 open roles on FindRole.

Listed pay typically runs $150,000–$203,250 across 46 roles with salary data.

Most-posted roles

View all roles at Fortinet

At a glance

TL;DR · Security Operations Expert

The Security Operations Expert joins the SOC team to manage security monitoring systems, incident response, and vulnerability management. This role involves performing log analysis, host-based and network forensic investigations, and managing remediation efforts. The individual will be responsible for administering and maintaining critical tools including FortiSOAR, FortiSIEM, and FortiAnalyzer, while fine-tuning detection rules to improve accuracy and minimize false positives. Key responsibilities include tracking emerging threats and TTPs, updating security policies, and developing reports for diverse audiences. Required skills include proficiency in Python or PowerShell for automation, experience with JSON and Jinja for SOAR playbooks, and knowledge of NIST and ISO 27001 frameworks. The role addresses the technical challenge of enhancing detection workflows and automating system integrations to improve overall security posture through continuous monitoring and proactive threat analysis.

What you'll do

  • Monitor and respond to security incidents following established incident response protocols.
  • Conduct vulnerability assessments and manage the remediation of identified risks.
  • Perform log analysis and host/network forensic investigations to identify threats.
  • Administer and maintain security tools including SOAR, SIEM, and Anti-Virus platforms.
  • Fine-tune detection rules and alert triggers to improve accuracy and reduce false positives.
  • Track emerging threats, attack patterns, and TTPs to maintain situational awareness.
  • Develop technical and non-technical reports regarding security status and findings.
  • Improve SOC operations by refining workflows, automation, and system integrations.

What we're looking for

  • Bachelor's degree in Computer Science, Cybersecurity, or a related field (or equivalent experience).
  • 5+ years of experience in security operations, incident response, or vulnerability management.
  • Hands-on experience administering and configuring security tools like FortiSOAR, FortiSIEM, and FortiAnalyzer.
  • Understanding and building playbooks in SOAR using Json/Jinja (preferred).
  • Strong understanding of detection engineering, fine-tuning alerting rules, and managing SIEM/EDR systems.
  • Proficiency in security frameworks such as NIST or ISO 27001 and compliance standards.
  • Familiarity with scripting languages like Python or PowerShell for task automation and tool customization.
  • Industry certifications such as CISSP, GIAC, CEH, or equivalent (preferred).

More like this

Similar roles

Security Operations Analyst, Mid

Booz Allen Hamilton

Huntsville, AL 23 days ago
MITRE ATT&CK Cyber Kill Chain Microsoft Sentinel Splunk DCAP Incident Response SOC Operations Cloud Threat Detection Cyber Network Operations Information Technology Intelligence Operations
5+ yrs exp

VP, Cloud Security Operations

LPL Financial

Austin, TX +5 15 days ago $154,706–$257,912
SIEM EDR XDR Python PowerShell Go Infrastructure-as-Code APIs SOAR CNAPP WAF IDS/IPS DLP Cloud Security Log Management Telemetry Engineering Automation AWS
10+ yrs exp Hybrid

Senior Information Security Manager

Fortinet

Sunnyvale, CA 46 days ago $166,500–$203,500
ISO/IEC 27001 NIST SP800-53 FedRAMP GovRAMP PCI DSS SOC2 GDPR CCPA HIPAA AWS Azure GCP Linux Windows VMWare MySQL MSSQL SIEM Vulnerability Management Cryptography Fortinet Products
7+ yrs exp

Security Operations Engineer

eBay

Austin, TX 3 days ago $80,800–$143,600
Cyber Security Incident Response Security Operations Center (SOC) Digital Forensics Scripting TCP/IP Vulnerability Assessment Intrusion Prevention Access Control Application Security Firewall Management Encryption Web-filtering Advanced Threat Protection Email Security Cyber Intelligence Analysis Risk Analysis
4+ yrs exp

Security Operations Analyst, Mid

Booz Allen Hamilton

Huntsville, AL 12 days ago $61,900–$141,000
MITRE ATT&CK Cyber Kill Chain Microsoft Sentinel Splunk DCAP Incident Response SOC Operations Cloud Threat Detection Cyber Network Operations
5+ yrs exp