What are the responsibilities and job description for the Security Operations Center Engineer position at Covenant HR?
Company – Our esteemed client is a global leader in the entertainment industry, recognized for creating and protecting world-class creative content. They operate in a cloud-first environment and are committed to innovation, security, and safeguarding critical digital assets across an international organization.
Job Title – SOC Security Engineer
Location – Burbank, CA (Fully onsite, 5 days per week)
Role Type – Contract (3 months / approximately 540 hours) with possibility of extension
Must Have Skills:
- Proven experience leading Security Operations Center (SOC) activities, including threat hunting, incident response, remediation orchestration, and continuous security operations
- Strong hands-on experience with Splunk and Palo Alto Cortex XDR for threat detection, investigation, and response
- Experience securing cloud-first environments, including AWS, Azure, enterprise SIEM, SOAR, endpoint security, IDS/IPS, and modern security technologies
- Experience investigating advanced threats, developing Indicators of Compromise (IOCs) and Indicators of Attack (IOAs), and presenting formal incident reports to leadership
- Experience with Microsoft Purview/eDiscovery, Okta, CASB solutions (such as Skyhigh), passwordless authentication (FIDO2/passkeys), and related enterprise security platforms
Responsibilities and Job Details:
- Lead hands-on SOC operations supporting enterprise security monitoring and response
- Conduct proactive threat hunting and investigate advanced cyber threats across cloud and enterprise environments
- Coordinate incident response, containment, remediation, and recovery activities
- Optimize and enhance security platforms, detection capabilities, and operational processes
- Develop and maintain IOCs, IOAs, and detection content to improve security posture
- Monitor and protect critical information assets and creative content
- Prepare clear, executive-level reports on cyber threats, incidents, and remediation efforts
- Collaborate closely with security leadership, reporting directly to the VP of Information & Content Security
- Partner with technical teams to strengthen cloud and endpoint security across AWS and Azure environments
- Contribute to an innovative, cloud-first security program focused on continuous improvement
- Thrive in a lead-level, hands-on security operations environment requiring strong analytical, communication, and problem-solving skills
- U.S. Citizenship is preferred