What are the responsibilities and job description for the Sr. Cybersecurity Engineer (SOC/Threat & Incident Detection) position at Jobs via Dice?
Dice is the leading career destination for tech experts at every stage of their careers. Our client, Magnum Technologies, Inc., is seeking the following. Apply via Dice today!
Job Title: Sr. Cybersecurity Engineer (SOC/Threat & Incident Detection)
Duration: 6 Months
Location: Cambridge, MA
Required Skills & Experience:
Job Title: Sr. Cybersecurity Engineer (SOC/Threat & Incident Detection)
Duration: 6 Months
Location: Cambridge, MA
Required Skills & Experience:
- 8β12 years in cybersecurity / SOC / threat detection roles
- Experience in L2/L3 SOC or Security Operations leadership.
- Strong hands-on expertise in:
- SIEM: Sentinel / Splunk / QRadar
- EDR/XDR tools
- Threat hunting & incident response
- Deep understanding of:
- MITRE ATT&CK
- Threat vectors, malware behavior, attack techniques
- Experience with:
- Log analysis, detection engineering, and correlation rules
- Security automation (SOAR)
- Experience securing AWS/Azure environments
- Familiarity with:
- CI/CD security (GitHub, GitLab, Jenkins)
- IaC security (Terraform, CloudFormation)
- Policy-as-code (OPA, Checkov)
- Lead end-to-end investigation of complex security incidents (malware, phishing, lateral movement, cloud compromise)
- Perform advanced threat hunting using SIEM, EDR, and cloud telemetry
- Conduct deep forensic analysis (endpoint, network, logs, email headers)
- Design and implement high-fidelity detection rules and use cases
- Develop and enhance SOC playbooks aligned with MITRE ATT&CK
- Lead implementation and optimization of:
- SIEM: Microsoft Sentinel / Splunk / QRadar
- EDR/XDR: Defender, CrowdStrike, SentinelOne
- Email Security: Proofpoint, Mimecast, Defender for Office
- WAF & Network Security tools
- Manage integrations across multi-vendor security stack
- Develop automation playbooks (SOAR) for triage, enrichment, and response
- Monitor and secure cloud environments (AWS/Azure)
- Implement logging and detection using:
- CloudTrail, VPC Flow Logs, Defender, Sentinel
- Drive DevSecOps practices (SAST, DAST, IaC scanning, policy-as-code)
- Perform vulnerability assessments and risk analysis
- Ensure alignment with frameworks:
- NIST, CIS Benchmarks, GDPR, PCI-DSS
- Experience with:
- Email security platforms (Proofpoint, Mimecast)
- WAF/CDN (Akamai, Cloudflare)
- Threat intelligence platforms
- CISM / CISSP
- CEH / CHFI
- Vendor certifications (Microsoft Sentinel, QRadar, Splunk)