Senior Security Operations Center Engineer responsible for threat detection, incident response, and SIEM optimization at Uphold, a fintech company. Collaborating with diverse teams to maintain security operations and ensure compliance.
Responsibilities
Assist with operations with our internal SOC and its core technologies, with a primary focus on our SIEM (Security Information and Event Management) system
Design, implement, and tune detection rules, correlation logic, and alerts to reduce noise and improve signal fidelity
Perform proactive threat hunting based on emerging threats, IOCs, and behavioral analysis
Investigate escalated alerts and security incidents from detection to containment and remediation
Build and maintain SOC runbooks, incident response workflows, and playbooks for consistent and rapid handling of events
Work with internal teams to onboard new log sources and enrich security telemetry
Provide recommendations and insights on security controls and detection coverage across systems and services
Stay informed of the latest threat trends, adversary tactics, and detection techniques, applying them to our environment
Support audit and compliance efforts related to monitoring and incident response
Requirements
3+ years of hands-on experience in a Security Operations Center or similar role, with deep familiarity in SIEM configuration, rule creation, and tuning
Solid knowledge of cybersecurity operations, including threat detection, response, and threat intelligence
Experience working with security log sources such as firewall, endpoint, cloud infrastructure, and application logs
Strong scripting or query language proficiency (e.g., Python, PowerShell, KQL, Sigma, Regex)
Understanding of MITRE ATT&CK and threat modeling concepts
Ability to work independently and interface cross-functionally with technical and non-technical stakeholders
Excellent problem-solving skills with attention to detail and a strong security mindset
Fluent written and oral English skills
Benefits
An amazing work environment in a company that continues to grow, driven by extraordinary and passionate people
An international team, in a cutting edge field, working on the most fascinating projects
Growth and career opportunities, and the chance to be proactive and creative
A flexible and enthusiastic work environment that offers you snacks, a lot of coffee and other great benefits
Open and transparent culture - we get together on a weekly basis to share updates, strategic plans, and engage with each other informally over food and drinks
Interesting events that keep you connected with the team and celebrate our success
Manager overseeing technical security operations for the Protection Services department. Responsible for managing security systems, staff training, and interdepartmental collaboration.
Principal in Security Monitoring Response at Mastercard managing global crises and resilience operations. Leading incident response efforts and ensuring the safety of people and assets.
SOC Analyst II providing real time security monitoring and threat hunting services for clients in various industries. Assisting in identifying security incidents and managing vulnerabilities.
Security Incident Response Orchestration Lead at Bank of America defining automation for security incident workflows with a focus on Splunk SOAR and Tines. Collaborating with security operations and engineering teams to implement scalable solutions.
SOC Analyst II providing tier II cybersecurity support in a Security Operations Center environment. Conducting vulnerability assessments and analyzing cyber threats while training junior staff members.
Security Operations Analyst responsible for monitoring and responding to cybersecurity threats. Ensuring the confidentiality, integrity, and availability of data per compliance standards.
SOC Analyst responsible for cybersecurity incident management at Algosystems in Greece. Monitoring security threats, conducting investigations, and improving SOC services.
Cyber Operations Lead ensuring coordination of cyber operations between the Security Operations Center and internal business units. Enhancing security through effective incident response and threat management initiatives.
Solution Sales Manager enhancing revenue in financial services, focusing on ServiceNow IRM and Tanium solutions. Collaborating with teams and engaging C - level executives in Austria and Switzerland.