×
Register Here to Apply for Jobs or Post Jobs. X
More jobs:

Cyber Security Engineer

Job in Rocklin, Placer County, California, 95765, USA
Listing for: WaveDivision Holdings, LLC
Full Time position
Listed on 2026-07-07
Job specializations:
  • IT/Tech
    Cybersecurity
Salary/Wage Range or Industry Benchmark: 70000 - 90000 USD Yearly USD 70000.00 90000.00 YEAR
Job Description & How to Apply Below

Day in the Life of the Cyber Security Engineer

A Cyber Security Engineer is responsible for design, implementation, and continuous improvement of the organization’s security architecture, controls, monitoring, detecting, analyzing, and responding to cyber security threats. This role operates within the Security Operations function and plays a critical role in threat detection, incident response, vulnerability management, and continuous improvement of the organization’s security posture from design to implementation.

  • Lead and oversee 24/7 security operations, including monitoring, detection, triage, and incident response across enterprise environments (endpoint, network, identity, and cloud).
  • Own the end-to-end incident response lifecycle – identification, containment, eradication, recovery, and post-incident analysis – ensuring rapid, consistent, and high-quality execution.
  • Drive root cause analysis, blast radius determination, and implementation of corrective and preventive actions.
  • Establish, maintain, and continuously improve incident response playbooks, escalation procedures, and operational runbooks to enhance response effectiveness and reduce dwell time.
  • Act as the primary escalation point for high‑severity or complex security incidents, providing technical leadership, decision‑making authority, and real‑time guidance during active events.
  • Lead advanced threat hunting operations using hypothesis‑driven methodologies, leveraging EDR/XDR telemetry, SIEM data, network traffic, identity signals, and threat intelligence aligned to MITRE ATT&CK.
  • Design, develop, and optimize detection engineering capabilities, including SIEM correlation rules, behavioral analytics, and custom detections to improve coverage and reduce false positives.
  • Drive integration and tuning of security technologies (e.g., Crowd Strike, SIEM, SOAR, vulnerability scanners), ensuring alignment to enterprise risk priorities and operational efficiency.
  • Define and track key SOC performance metrics (e.g., MTTD, MTTR, alert fidelity, containment time) to measure operational effectiveness and drive continuous improvement.
  • Lead cross‑functional coordination during incidents, partnering with IT, infrastructure, cloud, legal, HR, and executive leadership to ensure effective response and communication.
  • Translate technical incidents into business impact, delivering clear, concise updates to leadership and facilitating decision‑making at the executive level.
  • Oversee vulnerability management efforts by correlating scan results with asset criticality, exploitability, and threat intelligence to drive risk‑based prioritization.
  • Lead post‑incident reviews, tabletop exercises, and continuous improvement initiatives to strengthen organizational resilience and reduce repeat incidents.
  • Mentor and develop SOC analysts and incident responders, establishing investigation standards, quality controls, and career development pathways.
  • Ensure proper evidence handling, forensic integrity, and audit‑ready documentation aligned with regulatory frameworks (e.g., NIST, CMMC, PCI).
  • Identify emerging threats, adversary trends, and attack patterns, and operationalize insights into improved detections, controls, and defensive strategies.
  • Analyze alerts to determine legitimacy and potential impact, identify indicators of compromise (IOCs) and attacker tactics, techniques, and procedures (TTPs).
  • Escalate confirmed threats in accordance with established playbooks and procedures.
  • Perform initial triage and investigation of security incidents.
  • Other duties as assigned.
What You Bring to the Table
  • 7+ years of Cyber Security experience.
  • Demonstrated knowledge of actively debugging attacks.
  • Expertise with Identity & Access, End Point Detection and Multi‑Factor Authentication.
  • Experience with NGFW, IDS/IPS, WAF, Proxy, PKI and Advanced Threat Protection, cloud, automation, and scripting.
  • Ability to juggle multiple priorities where you are the driving force, ensuring completion and on‑time delivery.
  • Excellent written and verbal communication skills in a clear business‑relevant manner that is adjusted to the audience; up, down and across the organization.
  • Proven independent decision making in…
To View & Apply for jobs on this site that accept applications from your location or country, tap the button below to make a Search.
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
 
 
 
Search for further Jobs Here:
(Try combinations for better Results! Or enter less keywords for broader Results)
Location
Increase/decrease your Search Radius (miles)
0
200
Filters
Education Level
Experience Level (years)
Posted in last:
Salary