Job Description
Job Title: Remote Security Engineer
Location: Remote
Employment Type: Full-Time
Overview:
We are seeking a hands-on Security Engineer to serve as the internal subject matter expert (SME) supporting a large managed security services partnership with HCL. This is a strategic backfill role previously held by a Security Architect, and the business has evolved to require a technically focused engineer who can lead detection engineering efforts while guiding overall security strategy. The ideal candidate will bring deep expertise in SIEM and SOAR technologies, act as a point of escalation, and collaborate closely with offshore teams to strengthen detection capabilities.
Key Responsibilities:
- Serve as the internal SME for security operations, providing technical leadership and strategic direction.
- Collaborate with HCL (95% offshore MSSP) to assess current security operations and identify areas for improvement.
- Lead and execute 60–70% of the organization’s detection engineering work, including rule creation, tuning, and validation.
- Bridge gaps in detection engineering where MSSP support is limited; analysts can triage alerts but require guidance on building a robust detection program.
- Drive strategy for SIEM and SOAR operations, ensuring alignment with business needs and threat landscape.
- Act as a point of escalation for security incidents and operational challenges.
- Evaluate and optimize current workflows and detection logic across Splunk, Google SecOps, and CrowdStrike platforms.
- Collaborate with internal stakeholders and MSSP teams to define and implement best practices.
Technical Environment:
- Splunk (On-Prem) – SIEM
- Google SecOps – SOAR
- CrowdStrike – EDR
- Blue Team responsibilities
- Firewall experience (any vendor) is a plus
Qualifications:
- Proven experience in detection engineering, SIEM, and SOAR technologies.
- Strong understanding of threat detection, alert triage, and rule development.
- Ability to assess and improve existing security operations and tooling.
- Strategic mindset with the ability to guide long-term security initiatives.
- Comfortable working independently and collaborating with offshore MSSP teams.
- No healthcare experience required.
Growth Opportunity:
This role offers a clear path to grow into a Security Architect position, with increasing influence over enterprise security design and strategy.
Job Tags
Full time, Remote work,