SOC/Incident Response Engineer
$103k - $128kBenesch
Who We Are At Benesch we pride ourselves on exceeding expectations and building trust not only with our clients but with our employees - Benesch's #1 asset. Committed to providing not only the highest level of legal service to our clients, Benesch also aspires to create a positive work environment for our employees. Our Firm continues to earn placement on Chicago and Cleveland's Top Workplaces list, along with Cleveland's NorthCoast 99 Top Workplaces rankings. We also continue to advance on the AmLaw 125 list, placing us among the top 125 law firms in the country. Working with Us - Come and Be Benesch! We are one of the fastest growing firms in the nation, and have offices in Chicago, Columbus, San Francisco, New York City, and Wilmington. We continue to expand our geographic footprint and value the talent that comprises each of our locations. If you are someone who champions a First in Service approach and are ready to be part of an exciting and growing Firm, we would invite you to apply to join our team. Want to know more? To hear from some of our team, click here: SOC/Incident Report Engineer Benesch is proud to announce the opening for a SOC/Incident Report Engineer in our Cleveland office! This position is hybrid and has work from home flexibility. Position Summary Are you excited about detecting and resolving cybersecurity threats and incidents? Do you find it a challenge to help an organization reduce threats and enhance their security? Does working with teams to develop strategies to improve detection capabilities? Then you may be interested in our SOC/Incident Report Engineer position. This role is perfect for the individual looking to play a crucial role in Benesch's security initiatives. The SOC/Incident Response Engineer is responsible for detecting, investigating, and responding to cybersecurity incidents across the Firm. This role combines threat detection, digital forensics, malware triage, and cloud security expertise to protect organizational assets, reduce risk, and strengthen security posture. The SOC/Incident Response Engineer will operate within a 24/7 security operations environment, collaborating with cross-functional teams to analyze threats, develop response strategies, and improve detection capabilities. Position Responsibilities Security Monitoring & Threat Detection Monitors SIEM, EDR, NDR, and cloud-native security tools to identify suspicious activity and potential security incidents. Creates, tunes, and optimizes detection rules, correlation logic, and analytic use cases. Conducts threat hunting based on emerging TTPs, threat intel, and anomaly patterns. Maintains and improves alerting fidelity to reduce false positives and enhance detection precision. Incident Response & Triage Performs initial triage of security alerts to assess severity, impact, and required response actions. Leads full incident lifecycle activities including investigation, containment, eradication, recovery, and post‑incident analysis. Coordinates with IT, cloud, and business teams to execute IR playbooks and minimize operational impact. Documents incidents, findings, and lessons learned; contribute to after‑action reviews. Digital Forensics & Malware Analysis Conducts forensic acquisition and analysis of endpoints, servers, cloud resources, and network artifacts (disk, memory, logs). Examines artifacts such as registry hives, event logs, file systems, network captures, browser history, and persistence mechanisms. Performs malware triage (dynamic and static) to determine malware behavior, indicators of compromise, and propagation mechanisms. Maintains chain‑of‑custody processes and ensure forensic data integrity for potential legal or compliance requirements. Cloud Security & IR Monitors and responds to security events within cloud environments (e.g., Azure, AWS, Google Cloud). Investigates cloud‑native logs: Azure Activity Logs, AWS CloudTrail, GCP Audit Logs, identity events, network flows, and storage access. Evaluates cloud security posture, identifying misconfigurations, risky access patterns, and drift. Assists in development of cloud detection logic using native tooling (e.g., Azure Sentinel/Microsoft Defender XDR, AWS GuardDuty, GCP SCC). Security Tooling & Automation Maintains and enhances SOC tooling, dashboards, and automation workflows (SOAR). Builds automated playbooks to speed up triage, enrichment, and response. Integrates new data sources and improve log ingestion pipelines for SIEM/EDR. Threat Intelligence & Research Utilizes internal and external threat intelligence to contextualize alerts and strengthen detections. Tracks adversary TTPs based on frameworks such as MITRE ATT&CK. Researches emerging threats, vulnerabilities, and malware families. Collaboration, Compliance & Reporting Partners with governance, engineering, and IT teams to ensure effective remediation and long‑term control improvements. Supports audit, compliance, and regulatory requirements related to incident management. Prepares clear, concise technical and executive‑level reports. Key Competencies Analytical mindset with strong problem‑solving skills. Ability to work under pressure during active incidents. Excellent written and verbal communication skills. Strong attention to detail and a commitment to continuous improvement. Qualifications The SOC/Incident Response Engineer should have 3–7 years of experience in a Security Operations Center (SOC), incident response, digital forensics, or a closely related cybersecurity discipline. A strong technical foundation in networking, operating system internals across Windows, Linux, and macOS, identity systems, and modern cloud architectures is essential. The role requires hands‑on experience with leading security technologies, including SIEM platforms such as Microsoft Sentinel or Splunk, endpoint detection and response (EDR) and antivirus tools like Microsoft Defender for Endpoint or CrowdStrike, and forensic toolsets including Velociraptor, Autopsy, FTK, and KAPE. Experience utilizing malware analysis sandboxes and static analysis frameworks, as well as cloud security tools such as Azure Defender, AWS GuardDuty, and Google Cloud Security Command Center (SCC), is also required. Familiarity with scripting and automation languages, particularly Python, PowerShell, and KQL, is highly desirable. Preferred certifications include GIAC GCIA, GCFA, GCIH, or GNFA; AWS Security Specialty or Google Professional Cloud Security Engineer; and industry‑recognized credentials such as CISSP, CEH, or CySA+ (or their equivalents). The salary range for this position is $103K to $128K. Please note that quoted salary ranges are based on Benesch's good faith belief at the time of the job posting and are not a guarantee of what final salary offers may be. Base pay is based on market location and may vary depending on job‑related knowledge, skills, and experience. Base pay is only one part of the Total Rewards that Benesch provides to compensate and recognize our staff professionals for their work. Full‑time positions are eligible for a discretionary bonus and a comprehensive benefits package. Benesch is an equal opportunity employer. We strongly value and encourage diversity and solicit applications from all qualified applicants without regard to race, color, gender, sex, age, religion, creed, national origin, ancestry, citizenship, marital status, sexual orientation, physical or mental disability (where applicant is qualified to perform the essential functions of the job with or without reasonable accommodations), medical condition, protected veteran status, gender identity, genetic information, or any other characteristic protected by federal, state, or local law. Applicants who are interested in applying for a position and require special assistance or an accommodation during the process due to a disability should contact the Benesch Human Resources Department by phone at View phone number on click.appcast.io or email Christine Watson at View email address on click.appcast.io. Equal Opportunity Employer/Protected Veterans/Individuals with Disabilities #J-18808-Ljbffr Benesch
- Benesch in Cleveland is seeking a SOC/Incident Report Engineer to join our security team in a hybrid work arrangement. You will detect, investigate, and respond to cybersecurity incidents across the firm, leveraging threat detection, digital forensics, malware triage,...Suggested
- ...Financial Services Group, Inc. is seeking a Software Engineering Manager within the SRC First Response organization. Based in Cleveland, OH (also... ...on-call support for critical production services and incident response. Lead high-performing teams across Java, SQL...Suggested
- Eaton is seeking an IT - Incident Response Engineer to identify and respond to advanced cyber threats within diverse environments. This position requires strong expertise in cloud security and incident response. Responsibilities include providing 24/7 incident response...Suggested
- Booz Allen Hamilton is seeking a Tier 2 SOC Analyst in Cleveland to monitor and respond to real‑time cyber threats, review logs and alerts, and guide incident response across critical infrastructure. You will work in a 24/7 shift, applying DoD policies and SIEM data to...SuggestedShift work
$113k - $165k
Eaton’s Corporate Sector division is currently seeking a IT - Incident Response Engineer. The expected annual salary range for this role is $113000... ...tooling that scales the Security Operations Center (SOC). What You'll Do Incident Response & Threat Hunting Provide...SuggestedPermanent employmentLocal areaRelocation- Insight Global is seeking a Cybersecurity Engineer for one of our clients who is a growing... .... This role goes beyond ticket response and reactive work—the Cybersecurity Engineer... ...arise—without being policy-heavy • Document incidents, findings, and improvements clearly for...Remote job
$70k - $80k
...Keller is looking for an experienced Field Engineer to report into our Wadsworth, Ohio... ...standards and project specifications. Responsibilities Project Support and Initial Planning Reviews... ...requirements. In the event of a safety incident, works in partnership with HSEQ to...Contract workLocal area$110.7k - $159.3k
...looking for a Sr. Staff Field Quality Engineer to join our team in one of today’s most... ...Engineer, you will be part of the team responsible for ensuring our energy production platforms... ...skills set when responding to site incidents, attending critical milestone activities...Contract workTemporary workWork experience placementRemote work$130k - $135k
...Security Operations Center (SOC) is expanding, and we’re seeking... ...strengthening our detection, response, and threat-informed defense... ...Informed Defense & Detection Engineering Use internal and external... ...changing threat landscape. Incident Response & Security Event...Full timeRemote workShift workWeekend work$150k - $170k
...Director, Field Engineering Parma About the Opportunity Pansophic Learning is an... ...The Director of Field Engineering is responsible for leading a team of field engineers,... ...escalation point for complex or high-impact incidents involving field operations. Manage...Temporary workLocal areaNight shift- ...restoration projects. The Process Engineer provides engineering support to the... ...resident expert regarding process technology. Responsible for investigating and implementing new... ...and safety. Use the tool to report incidents, near misses, and non-conformances....Local areaShift work
- A leading engineering firm in Cleveland seeks a Senior Instrumentation and Controls Engineer... ...to support various client accounts. Responsibilities include the maintenance and... ...control systems for 24/7 operations, incident response, and system upgrades. Candidates...Full time
- ...none for our customers. Position Summary We are looking for a System Engineer for our NetOps team to help maintain and optimize our R&D IT infrastructure. You will handle monitoring, incident response, systems administration, cloud operations, and automation — keeping...Work experience placementRemote work
$80k - $100k
...is looking for an experienced Project Engineer based out of our Wadsworth, Ohio location... ...as per the project specifications. Responsibilities Project Support and Initial Planning: Reviews... ...requirements. In the event of a safety incident, works in partnership with HSEQ to...Contract workLocal area- Arrow International, Inc. is seeking a System Engineer for the NetOps team in Cleveland to maintain and optimize our R&D IT infrastructure. You will handle monitoring, incident response, systems administration, cloud operations, and automation to keep environments stable...
- Arrow International Inc in Cleveland is seeking a System Engineer to maintain and optimize our R&D IT infrastructure. This role includes monitoring, incident response, and systems administration, ensuring stability and security. The ideal candidate will manage AWS services...
$90k - $120k
...Traveling Field Engineer - Heavy Civil Construction Location: Decatur, IL, US Bloomington, MN, US Beloit, WI, US Milwaukee, WI,... ...Location: This position will be put on a travel rotation. Responsibilities: Field Engineering: Assist in interpretation of drawings...Full timeContract workWork experience placementFor subcontractorWork at officeRelocationWeekend work- Senior Instrumentation and Controls Engineer Primarily responsible for various service and support functions around the clock across multiple client... ...(KPIs) to identify issues and trends Respond to incidents, outages, and service disruptions promptly Manage shift...Full timeShift workNight shift
$120k - $140k
...is currently seeking a Senior Project Engineer to join our Fuel Facility team. Location... ...the fueling systems industry and will be responsible for generating project opportunities... ...and company standards. Communicate incidents, accidents, near misses, potential hazards...Full timePart timeWork experience placementWork at officeLocal areaRemote work- ...integration while aligning with security standards and procedures. The role supports cloud-native and hybrid infrastructure through automation, troubleshooting, and continuous improvement, enabling reliable operations and rapid incident response. #J-18808-Ljbffr Provato Staffing
- ...Job Description Job Description Stevens Engineers & Constructors has an excellent opportunity for an experienced and highly motivated... ...quality project results. Essential Duties and Responsibilities Plan, schedule, conduct, and coordinate assigned project...Contract workFor subcontractorLocal area
- ...to install and service Dell PCs, Lexmark printers and PC peripherals and/or electronic equipment. Takes service calls and performs incident specific activities such as replaceable unit swapping, image loading, and unit testing as directed by Help Desk, Service Desk or...
$84.7k - $144.43k
..., you’re in the right place. DLR Group has an opening for a Senior Mechanical Controls Engineer. Position Summary As part of the engineering team at DLR Group you will be responsible for the design of control systems from schematics through construction administration for...Work at officeLocal area- ...Project Engineer Who is IC? Independence Construction is expanding our team! We are looking for passionate individuals to grow... ...than we found it. As a Project Engineer , your key responsibilities are to assist the project manager and/or superintendent in one...Weekly payTemporary workFor contractorsFor subcontractorWork at officeLocal area
- ...Senior Control System Engineer Opportunity Our client has a unique career opportunity offering unlimited growth potential for a... ...role is possible including a business development component. Responsibilities will include: Programming, creating, reading, and...
- ...Description An industry leading multi-disciplinary team is looking for a Senior Mechanical Commissioning Engineer for their Cleveland team! Responsibilities: Project/client management Prepare project documentation including proposals and administering...
- ...prominent construction firm is seeking to hire a Commissioning Engineer to facilitate the execution of large mission-critical/data... ...project schedules and ensure systems operate as intended. Key Responsibilities Manage mechanical and electrical commissioning execution,...Hourly payDaily paidContract work
- ...Mechanical Commissioning Engineer Cleveland Office Headquarters - CLEVELAND, OH; Columbus Office - Columbus, OH; Detroit Office... ...minimal supervision and directing support staff. Position Responsibilities Supervise staff or self-perform the following: Development...Work at officeNight shift
- ...Instrumentation & Controls Engineer As an Instrumentation & Controls Engineer with Middough, you will collect and prepare data/information... ...participating in technical seminars/courses. Position and Responsibilities Collect and prepare data/information and perform detailed...Temporary workH1bWork at officeLocal areaFlexible hours
- ...Senior Instrumentation & Controls Engineer - Position and Responsibilities As a Senior Instrumentation & Controls Engineer (I&C) with Middough, you will collect and prepare data/information and perform detailed engineering calculations. The I&C Engineer will also interact...For contractorsH1bWork at officeLocal area
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to SOC/Incident Response Engineer. Be the first to apply!



