SOC Engineer at Phoenix, leading onboarding activities and optimizing security technologies and processes. Collaborating with teams to ensure effective detection and response in managed services.
Responsibilities
Lead customer onboarding activities, integrating new environments and configuring detection baselines, automation, and playbooks.
Deploy, tune, and optimise detection rules and correlation logic to reduce false positives and improve alert fidelity.
Configure and enhance log ingestion pipelines, enrichment workflows, dashboards, and reporting to support SOC operations and customer visibility.
Develop, maintain, and improve customer SOPs, runbooks, and playbooks to ensure consistent and effective response processes.
Work closely with Detection Engineering teams to contribute new detections, refine existing analytics, and validate detection logic.
Support CI/CD processes for detection content, ensuring safe, controlled deployment of rules, scripts, and automation updates.
Assist in developing and improving SOAR playbooks, validating automated actions, and ensuring operational reliability.
Maintain structured repositories of detection queries, SOPs, and operational documentation to keep SOC content accurate and up to date.
Troubleshoot detection and workflow issues, collaborating with internal teams and customers to resolve technical challenges.
Partner with architects, analysts, and service managers to improve SOC onboarding processes, tooling, and detection standards.
Requirements
Good blend of both technical ability and customer facing skills
Significant experience working in a fast-paced MSSP environment
Strong skills in designing, tuning, and validating detection logic (MITRE ATT&CK aligned)
Hands-on experience with SIEM, XDR, SOAR, and log ingestion/detection configuration
Background in SOC operations such as analysis, detection engineering, IR, or threat hunting
Ability to design and validate automated workflows and SOAR playbooks
Experience using CI/CD pipelines and version control (Azure DevOps, GitHub, GitLab)
Skilled in producing clear SOPs, runbooks, playbooks, and operational documentation
Experience supporting customer onboarding and tailoring detections to specific environments
Strong communication and collaboration skills across technical and non‑technical teams
Proactive, accountable, and able to deliver reliable, high‑quality outcomes
Vice President of Security Operations Center at Fidelity ensuring security across global operations. Leading cyber incident response and collaborating with internal teams to enhance network security.
Security Operations Manager overseeing client relations and service delivery across multiple Columbus sites. Ensuring operations meet client expectations while managing staffing and scheduling responsibilities.
Security Operations Manager overseeing client relations and service delivery across Columbus sites for Ohio Support Services. Ensuring client security expectations and company standards are met or exceeded.
SOC Analyst responsible for monitoring global threats and preventing cyber attacks for SHE. Collaborating with elite teams and documenting activities in Ludwigshafen.
Information Security Senior Director leading cybersecurity operations strategies at Mass General Brigham. Managing teams, budget, and cross - functional collaborations for security and compliance.
Senior Security Engineer on FINRA's Security Operations team implementing and maintaining security solutions. Collaborate with teams to enhance security and mentor junior staff.
Security Operations Engineer supporting federal cybersecurity initiatives across enterprise and cloud environments. Hands - on security engineering, operational monitoring, and compliance support.
Security Operations Lead at Aily Labs designing AI - native security operations solutions. Collaborating with engineers to build innovative security capabilities at scale.
SOC Analyst enhancing cybersecurity operations for a global security team based in Manila, Philippines. Responsible for incident response, threat analysis, and process improvement.