"Alerted.org

Job Title, Industry, Employer
City & State or Zip Code
20 mi
  • 0 mi
  • 5 mi
  • 10 mi
  • 20 mi
  • 50 mi
  • 100 mi
Advanced Search

Advanced Search

Cancel
Remove
+ Add search criteria
City & State or Zip Code
20 mi
  • 0 mi
  • 5 mi
  • 10 mi
  • 20 mi
  • 50 mi
  • 100 mi
Related to

  • SOC Engineer

    System One (Washington, DC)



    Apply Now

    SOC Engineer

     

    100% remote

     

    DC Area Preferred - must be willing to come in once a quarter for a team meeting

     

    Must be able to obtain Public Trust clearance

     

    Compensation: $61-63/hr

     

    This role focuses on engineering SOC data feed solutions, implementing SOAR capabilities, and ensuring feed health through cross-team collaboration. The ideal candidate will have strong cybersecurity expertise, including network security, SIEM, incident response, and threat detection.

     

    They will also serve as the backup SOC Lead, overseeing operations, managing escalations, and providing updates to senior leadership during critical incidents when the primary lead is unavailable.

    Key Responsibilities:

    • Microsoft Sentinel Engineering: Maintain and optimize a Microsoft Sentinel SIEM/SOAR solution in alignment with client requirements, industry best practices, and federal compliance mandates.

    • Data Integration: Configure and manage log/data feeds from diverse sources (e.g., Fluent Bit, Windows Events, M365, cloud services, endpoint/security platforms).

    • Parsing & Normalization: Develop and refine log parsing rules using Regex, DCRs, and custom transformations to ensure accurate and usable data in Sentinel.

    • SOAR Development: Engineer automation and orchestration solutions using Microsoft Logic Apps, Azure Functions, and PowerShell/Python scripts to improve SOC efficiency and incident response.

    • Threat Detection Engineering: Build, tune, and optimize analytic rules, UEBA, dashboards, and reports to improve detection and response coverage.

    • Collaboration: Partner with cross-functional teams (network, endpoint, cloud, IT ops) to integrate new data sources and deliver actionable SOC capabilities.

    • Documentation & Knowledge Transfer: Develop and maintain clear documentation of SOC architecture, log source onboarding, and automation playbooks; provide training for SOC analysts on new tools and processes.

    • Advisory & Improvement: Conduct gap analyses of existing SOC capabilities, recommend improvements, and contribute to SOC process maturity.

    • Incident Response Support: Provide Tier 3 support and assist with complex investigations when required.

    Required Qualifications:

    • U.S. Citizen with ability to obtain Public Trust clearance.

    • 2–5 years of experience in network defense, SOC engineering, or cybersecurity operations.

    • Hands-on experience with Microsoft Sentinel, including log onboarding, rule development, and automation.

    • Proficiency with log parsing and normalization (Regex, Fluent Bit, DCRs, KQL).

    • Strong scripting skills in PowerShell and/or Python for automation and data handling.

    • Experience configuring and maintaining data feeds for SOC visibility (cloud, endpoint, network, and on-prem).

    • Familiarity with incident response concepts, threat detection engineering, and SOAR workflows.

    • Excellent written and verbal communication skills with ability to work across technical and non-technical teams.

    Preferred Qualifications:

    • Knowledge of federal cybersecurity mandates (M-21-31, NIST Cybersecurity Framework, CISA Incident/Vulnerability Playbooks, BOD 22-01).

    • Experience with Microsoft Logic Apps, Azure Functions, or other SOAR development platforms.

    • Experience with UEBA configuration to enhance anomaly detection.

    • Background in AI/ML frameworks for cyber analytics.

    • Experience building SOC metrics, dashboards, and reporting for operational visibility.

    • Familiarity with M365, Azure security tools, ServiceNow workflows, and CISA CDM tools.

    • Relevant certifications such as CISSP, CISM, Microsoft Security Operations Analyst (SC-200), or Azure Security Engineer (AZ-500).

    Education & Experience:

    Bachelor’s degree in Computer Science, Information Security, or related field (or equivalent experience).

     

    5+ years of progressive cybersecurity/SOC experience (engineering and operations).

     

    System One, and its subsidiaries including Joulé, ALTA IT Services, and Mountain Ltd., are leaders in delivering outsourced services and workforce solutions across North America. We help clients get work done more efficiently and economically, without compromising quality. System One not only serves as a valued partner for our clients, but we offer eligible employees health and welfare benefits coverage options including medical, dental, vision, spending accounts, life insurance, voluntary plans, as well as participation in a 401(k) plan.

     

    System One is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex (including pregnancy, childbirth, or related medical conditions), sexual orientation, gender identity, age, national origin, disability, family care or medical leave status, genetic information, veteran status, marital status, or any other characteristic protected by applicable federal, state, or local law.

    #M2

    #LI-VH1

    #DI-VH1

    Ref: #850-Rockville (ALTA IT)

     

    System One, and its subsidiaries including Joulé, ALTA IT Services, CM Access, TPGS, and MOUNTAIN, LTD., are leaders in delivering workforce solutions and integrated services across North America. We help clients get work done more efficiently and economically, without compromising quality. System One not only serves as a valued partner for our clients, but we offer eligible full-time employees health and welfare benefits coverage options including medical, dental, vision, spending accounts, life insurance, voluntary plans, as well as participation in a 401(k) plan.

     

    System One is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex (including pregnancy, childbirth, or related medical conditions), sexual orientation, gender identity, age, national origin, disability, family care or medical leave status, genetic information, veteran status, marital status, or any other characteristic protected by applicable federal, state, or local law.

     


    Apply Now



Recent Searches

  • Portfolio Monitoring Analyst 1 (United States)
  • Electrical Engineering Technician 1 (Washington)
  • Assembly Mechanic Level 3 (California)
  • Senior Software Engineer Securitized (New York)
[X] Clear History

Recent Jobs

  • SOC Engineer
    System One (Washington, DC)
[X] Clear History

Account Login

Cancel
 
Forgot your password?

Not a member? Sign up

Sign Up

Cancel
 

Already have an account? Log in
Forgot your password?

Forgot your password?

Cancel
 
Enter the email associated with your account.

Already have an account? Sign in
Not a member? Sign up

© 2025 Alerted.org