Security Engineer; Sumo Logic & Google SecOps - REMOTE
Houston, Harris County, Texas, 77246, USA
Listed on 2026-01-05
-
IT/Tech
Cybersecurity, Security Manager
Security Engineer (Sumo Logic & Google Sec Ops) - REMOTE
Binary Defense is seeking a talented Security Engineer to join our team.
The Security Engineer will play a critical role in designing, deploying, and maintaining multi‑tenant Sumo Logic and Google Sec Ops environments.
You will collaborate directly with clients, project managers, and SOC analysts to ensure effective log ingestion, security use case development, and alert tuning. A strong understanding of other SIEM platforms such as Sumo Logic, Google Sec Ops, and log processing tools like Cribl is essential to advise clients holistically on their detection and logging strategy.
This is a customer‑facing role, requiring excellent communication skills, attention to detail, and a proactive, consultative approach.
Responsibilities- Architect, deploy, and manage multi‑tenant Sumo Logic and Google Sec Ops environments for clients.
- Collaborate with clients to assess log sources, security needs, and data ingestion strategies.
- Develop and fine‑tune security use cases, correlation rules, and alerting configurations.
- Support integration and log ingestion using Cribl, relays, and native collectors.
- Evaluate and onboard log sources based on risk, value, and licensing impact.
- Provide expertise on other SIEM platforms, especially Sumo Logic and Google Sec Ops— including administration, query development, and alerting strategies.
- Conduct technical working sessions and serve as a trusted advisor to client stakeholders.
- Coordinate with SOC analysts to validate and elevate meaningful security alerts.
- Participate in project planning meetings and ensure alignment with timelines and deliverables.
- Document procedures, configurations, and run books to support ongoing operations.
- 2+ years of hands‑on experience architecting and administering Sumo Logic and Google Sec Ops in a production environment.
- Strong working knowledge of at least one other SIEM platform.
- Proficiency in query languages.
- Experience in log onboarding and understanding of log types (Windows, Linux, cloud, firewall, endpoint, etc.).
- Solid understanding of information security concepts, threats, and detection strategies.
- Scripting skills with Power Shell, Python, or similar for automation and log parsing.
- Strong client communication and documentation skills; comfort in client meetings and presentations.
- Experience in multi‑tenant or MSSP environments.
- Familiarity with SOAR platforms or automation playbooks.
- Familiarity with cloud environments (Azure, AWS) and native logging tools.
- Experience with log routing tools, preferably Cribl (Stream or Edge).
Binary Defense is a trusted leader in security operations, supporting companies of all sizes to proactively monitor, detect and respond to cyberattacks. The company offers a personalized Open XDR approach to Managed Detection and Response, advanced Threat Hunting, Digital Risk Protection, Phishing Response, and Incident Response services, helping customers mature their security program efficiently and effectively based on their unique risks and business needs.
With a world‑class 24/7 SOC, deep domain expertise in cyber, and sophisticated technology, hundreds of companies across every industry have entrusted Binary Defense to protect their business.
Binary Defense is also the Trusted Cybersecurity Partner of the Cleveland Browns and partners with PGA Tour players. For more information, visit our website, check out our blog, or follow us on Linked In.
Binary Defense offers competitive medical, dental and vision coverage for employees and dependents, a 401k match which vests every payroll, a flexible and remote friendly work environment, as well as training opportunities to expand your skill set (to name a few!). If you’re interested in joining a growing team with great perks, we encourage you to apply!
#J-18808-Ljbffr(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).