SOC Engineer

Remote • Posted 3 hours ago • Updated 3 hours ago
Full Time
Remote
Fitment

Dice Job Match Score™

🔢 Crunching numbers...

Job Details

Skills

  • System On A Chip
  • Workflow
  • Build Automation
  • FedRAMP
  • Technical Writing
  • Project Management
  • Preventive Maintenance
  • Performance Management
  • Training
  • Computer Science
  • Information Technology
  • IT Infrastructure
  • Cloud Computing
  • Security Engineering
  • Analytics
  • Onboarding
  • Firewall
  • Network
  • SaaS
  • API
  • Google Cloud Platform
  • Google Cloud
  • Scripting
  • Windows PowerShell
  • Python
  • Microsoft Windows
  • Linux
  • Computer Networking
  • Customer Facing
  • Communication
  • GNU Compiler Collection
  • Cyber Security
  • Microsoft
  • Microsoft Azure
  • Information Security
  • Microsoft Office
  • Amazon Web Services
  • Cloud Security
  • Splunk
  • IBM QRadar
  • SIEM
  • CISSP
  • Cisco Certifications
  • Security+
  • GCIH
  • SAP BASIS

Summary

Job Title: SOC Engineer

Pay Type: SALARIED EXEMPT

Location: Remote (Must Work East Coast Hours)

Citizenship: U.S. Citizenship (Required)

Summary of Position Role/Responsibilities

Quzara is seeking a hands-on SOC Engineer to onboard customers into our managed security services and keep their security tooling and telemetry running reliably. The SOC Engineer works with customers and internal teams to integrate data sources, configure Microsoft security services, automate workflows, and resolve technical issues in federal and regulated environments.

Essential Functions of the Job

  • Lead technical onboarding of new customers, from discovery and requirements through configuration, validation, and handoff.
  • Configure and integrate Microsoft security services, including Microsoft Sentinel, Defender XDR, and Entra ID, with customer environments.
  • Onboard and validate security telemetry from identity, endpoint, network, SaaS, and multi-cloud sources, including Azure, AWS, and Google Workspace.
  • Integrate and troubleshoot log sources across multiple SIEM platforms, including Microsoft Sentinel, Splunk, SentinelOne, and IBM QRadar.
  • Troubleshoot ingestion and integration issues across cloud, identity, network, Windows, and Linux layers.
  • Build automation and scripts that make onboarding and operations repeatable.
  • Support customers operating under federal and regulated requirements, including FedRAMP, CMMC, and NIST frameworks.
  • Produce clear technical documentation and work directly with customer stakeholders to resolve onboarding blockers.

Marginal Functions of the Job

  • Other duties as assigned

Normal Work Schedule:

This full-time role runs Monday to Friday, 8:30 AM-5:30 PM and requires flexibility to work remotely or on-site (if applicable per client RTO policies). On occasion additional hours may be necessary.

Education, Training, and Experience

  • Bachelor's degree in Computer Science, Information Technology, Cybersecurity, or a related field preferred, or equivalent experience.
  • 5+ years in IT infrastructure, cloud, or security engineering, including 3+ years hands-on with Microsoft Azure.
  • 2+ years with Microsoft Sentinel or a comparable enterprise SIEM, including data-source onboarding.
  • Strong working knowledge of the Microsoft security stack (Sentinel, Defender XDR, Entra ID, Azure Monitor / Log Analytics) and multi-tenant delegated access (Azure Lighthouse, GDAP).
  • Hands-on experience onboarding a wide range of data sources (identity providers, endpoints, firewalls and network devices, SaaS applications, Syslog/CEF, API, and agent-based integrations) from Azure, AWS, and Google Workspace / Google Cloud.
  • Experience working across multiple SIEM platforms, such as Microsoft Sentinel, Splunk, SentinelOne, IBM QRadar, or similar.
  • Proficiency in KQL and scripting (PowerShell or Python), with solid troubleshooting skills across Windows, Linux, networking, and identity.
  • Strong written and customer-facing communication skills.
  • At least one current certification required: AZ-500 or SC-200.
  • Preferred: prior MSSP, MDR, or security consulting experience; experience supporting federal or defense-industrial-base customers, including GCC and GCC High environments; and experience with EDR/XDR platforms such as CrowdStrike or SentinelOne.

Preferred Certifications

  • Ideal: SC-100 (Microsoft Cybersecurity Architect Expert).
  • Microsoft: AZ-104 (Azure Administrator), AZ-305 (Azure Solutions Architect Expert), SC-300 (Identity and Access Administrator), SC-401 (Information Security Administrator), MS-102 (Microsoft 365 Administrator).
  • Cloud security: AWS Certified Security - Specialty, Google Professional Cloud Security Engineer.
  • SIEM / EDR: Splunk Enterprise Security Certified Admin, IBM QRadar SIEM, SentinelOne, or CrowdStrike Falcon (CCFA) certifications, or equivalent.
  • General security: CISSP, CCSP, CompTIA Security+ or CySA+, GIAC (GCDA, GCIH, ED).

EEO Statement

The Company is an Equal Employment Opportunity (EEO) employer and does not discriminate based on race, color, religion, sex, sexual orientation, national origin, age, marital status, disability, veteran's status, or any other basis protected by applicable discrimination laws.
Employers have access to artificial intelligence language tools (“AI”) that help generate and enhance job descriptions and AI may have been used to create this description. The position description has been reviewed for accuracy and Dice believes it to correctly reflect the job opportunity.
  • Dice Id: 80184868
  • Position Id: 8366188b4dbb0ef7ddbe212021e213dc
  • Posted 3 hours ago
Create job alert
Never miss an opportunity! Create an alert based on the job you applied for.

Similar Jobs

Remote

•

Today

Full-time

Remote or Dodgeville, Wisconsin

•

Today

Full-time

Remote or Hybrid in Atlanta, Georgia

•

23d ago

Easy Apply

Full-time

110,000 - 120,000

Remote

•

Today

Full-time

USD 75.00 - 85.00 per hour

Search all similar jobs