What are the responsibilities and job description for the Senior Security Engineer - SOAR position at Madison-Davis, LLC?
A global enterprise organization is expanding its Cyber Defense and Engineering practice and seeking an experienced Cyber Security Engineer to advance its automation and detection capabilities. This hands-on role focuses on strengthening threat monitoring, response workflows, and platform performance across SIEM and SOAR systems in a hybrid cloud environment.
What You’ll Do
- Design, build, and fine-tune detections within enterprise SIEM and SOAR tools to enhance coverage and reduce noise.
- Automate security response processes by developing integrations, playbooks, and reusable workflows.
- Onboard new data sources and optimize log ingestion pipelines for scalability and consistency.
- Maintain and upgrade platform infrastructure, ensuring resilience and operational reliability.
- Partner with threat operations, engineering, and IT teams to translate response needs into technical solutions.
- Conduct troubleshooting and performance tuning to maintain system uptime and integration health.
- Contribute to ongoing innovation in detection automation, engineering standards, and threat response maturity.
What You’ll Bring
- 7 years of experience in cybersecurity engineering, threat detection, or security operations.
- Advanced hands-on expertise with Splunk (SIEM) and Palo Alto Cortex XSOAR (SOAR).
- Scripting and automation proficiency in Python and/or PowerShell.
- Strong understanding of incident response processes, log management, and detection lifecycle management.
- Working knowledge of Windows, Linux, and core network fundamentals (DNS, TCP/IP, routing).
- Bachelor’s degree in Computer Science, Information Security, or related discipline.
Preferred Qualifications
- Familiarity with enterprise security tools such as CrowdStrike, Tenable, ExtraHop, Netskope, or Cisco Umbrella.
- Background supporting security platforms in large or regulated environments (finance, healthcare, or government).
- Exposure to system administration or infrastructure management in hybrid environments.
Why Join
- Hybrid work model (2–3 days onsite weekly) with a culture focused on collaboration, automation, and continuous improvement.
- Strong emphasis on technical ownership, innovation, and measurable security outcomes.
- Competitive compensation and comprehensive benefits including medical, dental, 401(k), PTO, and bonus eligibility.