Sr. Cybersecurity Engineer
Listed on 2026-08-03
-
IT/Tech
Cybersecurity, Security Management & Operations, Systems Engineer, Network Security
Technical
Skills:
Strong hands-on expertise in:
Job TitleSr. Cybersecurity Engineer (SOC/Threat & Incident Detection)
Duration: 6+ Months
Location:
Cambridge, MA
8 12+ years in cybersecurity / SOC / threat detection roles
Experience in L2/L3 SOC or Security Operations leadership.
Technical Skills- SIEM:
Sentinel / Splunk / QRadar - EDR/XDR tools
- Threat hunting & incident response
- MITRE ATT&CK
- Threat vectors, malware behavior, attack techniques
- Log analysis, detection engineering, and correlation rules
- Security automation (SOAR)
Experience securing AWS/Azure environments
Familiarity With- CI/CD security (Git Hub, Git Lab, Jenkins)
- IaC security (Terraform, Cloud Formation)
- Policy-as-code (OPA, Checkov)
Lead end-to-end investigation of complex security incidents (malware, phishing, lateral movement, cloud compromise)
Perform advanced threat hunting using SIEM, EDR, and cloud telemetry
Conduct deep forensic analysis (endpoint, network, logs, email headers)
Detection Engineering & SOC OptimizationDesign and implement high-fidelity detection rules and use cases
Develop and enhance SOC playbooks aligned with MITRE ATT&CK
Security Tooling & Platforms Lead Implementation And Optimization Of- SIEM:
Microsoft Sentinel / Splunk / QRadar - EDR/XDR:
Defender, Crowd Strike, Sentinel One - Email Security:
Proofpoint, Mimecast, Defender for Office - WAF & Network Security tools
Manage integrations across multi-vendor security stack
Automation & SOARDevelop automation playbooks (SOAR) for triage, enrichment, and response
Cloud Security & Dev Sec OpsMonitor and secure cloud environments (AWS/Azure)
Implement Logging And Detection Using- Cloud Trail, VPC Flow Logs, Defender, Sentinel
Drive Dev Sec Ops practices (SAST, DAST, IaC scanning, policy-as-code)
Risk, Compliance & GovernancePerform vulnerability assessments and risk analysis
Ensure Alignment With Frameworks- NIST, CIS Benchmarks, GDPR, PCI-DSS
- Email security platforms (Proofpoint, Mimecast)
- WAF/CDN (Akamai, Cloudflare)
- Threat intelligence platforms
CISM / CISSP
CEH / CHFI
Vendor certifications (Microsoft Sentinel, QRadar, Splunk)
#J-18808-Ljbffr(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).