Security Consultant | SIEM | SOAR - W2 role

Austin, TX, US • Posted 1 day ago • Updated 1 day ago
Contract W2
12 Months
No Travel Required
On-site
Depends on Experience
Fitment

Dice Job Match Score™

🔢 Crunching numbers...

Job Details

Skills

  • Cybersecurity
  • Security Operations
  • Security Consultant
  • SOC
  • SIEM
  • SOAR
  • Google SecOps
  • Microsoft Sentinel
  • KQL
  • Splunk
  • SPL
  • NDR
  • EDR
  • Threat Hunting
  • Incident Response
  • Network Security
  • IDS/IPS
  • Firewall
  • DNS
  • VPN
  • TCP/IP
  • Vulnerability Management
  • Risk Assessment
  • NIST
  • CIS Controls
  • HIPAA
  • Wiz
  • Security Monitoring
  • Detection Engineering
  • Security Automation

Summary

Job Description

We are seeking an experienced Security Consultant / Security Operations Analyst to support the integration of HHSC and DSHS applications into Google SecOps (SIEM/SOAR).

This is a hands-on security operations role focused on monitoring, investigating, detecting, and responding to security events across network, endpoint, identity, and cloud environments.

The ideal candidate will have strong experience with Microsoft Sentinel, SIEM/SOAR, NDR, EDR, KQL, SPL, network security, threat hunting, and incident response, along with the ability to communicate security risks to both technical and business stakeholders.

 

Key Responsibilities

  • Monitor security alerts, logs, network events, endpoint telemetry, and threat intelligence feeds.
  • Triage and investigate suspicious activities and determine scope, impact, and severity.
  • Lead escalation and coordinate containment and response activities.
  • Build, tune, and maintain detection rules, dashboards, alerts, playbooks, and automation workflows.
  • Perform threat hunting using KQL, SPL, packet/session analysis, and endpoint telemetry.
  • Support vulnerability assessments, risk assessments, and security control evaluations.
  • Prepare detailed incident reports and track corrective actions through resolution.
  • Provide security briefings and communicate risks to security leadership and business stakeholders.
  • Collaborate with network, infrastructure, cloud, and application teams to validate events and reduce security risks.
  • Provide security evidence, metrics, and documentation for compliance and audit requests.
  • Participate occasionally in after-hours support for high-priority security incidents and planned maintenance.

 

Required Qualifications

  • 7+ years of experience in cybersecurity, network security, security operations, or incident response.
  • Hands-on experience with Microsoft Sentinel, including:
    • Incident management
    • Analytics rules
    • Workbooks
    • Automation
    • Data connectors
    • KQL
  • Strong SIEM experience with log analysis, alert investigation, correlation searches, and dashboard development.
  • Experience with NDR technologies, including network traffic and packet/session analysis.
  • Experience with EDR, including alert triage, device investigation, advanced hunting, and response actions.
  • Strong understanding of:
    • Firewalls
    • IDS/IPS
    • Proxy logs
    • DNS
    • VPN
    • TCP/IP
    • Network segmentation
  • Knowledge of NIST, CIS Controls, HIPAA, and state information security requirements.
  • Strong analytical, written, and verbal communication skills.
  • Ability to explain security risks and technical findings to both technical and non-technical audiences.
  • Experience with Google SecOps or Wiz.

 

Preferred Qualifications

  • Bachelor's degree in Cybersecurity, Computer Science, Information Technology, or related field. Equivalent relevant experience may be considered.
  • Google SecOps or Wiz certification.
  • Microsoft security certifications such as SC-200, AZ-500, or SC-100.
  • Security certifications such as:
    • Security+
    • CySA+
    • GIAC
    • CISSP
    • CISM
    • CISA
    • Splunk Core Certified Power User
    • Splunk ES Administrator
    • SentinelOne certifications
  • Hands-on Splunk / SPL experience.
  • Experience mentoring junior security analysts.
  • Healthcare or public-sector cybersecurity experience.
Employers have access to artificial intelligence language tools (“AI”) that help generate and enhance job descriptions and AI may have been used to create this description. The position description has been reviewed for accuracy and Dice believes it to correctly reflect the job opportunity.
  • Dice Id: 10530359
  • Position Id: 9099411
  • Posted 1 day ago
Contact the job poster
CV

Chapala Venkatramaiah

Recruiter @ Care IT Services Inc
Create job alert
Set job alertNever miss an opportunity! Create an alert based on the job you applied for.

Similar Jobs

Austin, Texas

•

Yesterday

Contract

25 - 35

Austin, Texas

•

Yesterday

Easy Apply

Full-time

$30 - $40

Austin, Texas

•

19d ago

Easy Apply

Contract

Depends on Experience

Hybrid in Austin, Texas

•

Today

Easy Apply

Third Party, Contract

Depends on Experience

Search all similar jobs