Security Operations Engineer
Hmixray
Responsibilities
The Security Operations Engineer builds and operates security controls, tooling, and automation across DeepHealth's cloud and corporate environments. This role is responsible for configuring, integrating, and maintaining the enterprise security tooling stack, developing detection content, and automating security operations tasks so that controls are repeatable, version-controlled, and auditable.
Working within DeepHealth's established security frameworks and under the direction of the Director, Security Operations, this position operates and tunes security controls, detection content, and guardrails. Independent validation of those controls sits with the security operations watch function — a deliberate separation that keeps the control environment defensible under audit. Remediation follows system ownership across Cloud Operations, Platform, and Application Development; this role supplies technical guidance and implements fixes directly where the control is security-owned.
This position operates within a regulated healthcare environment across a global operating footprint, with obligations under HIPAA, ISO/IEC 27001, and SOC 2. The role reports to the Director, Security Operations, with future reporting to the Manager, Security Operations as that position is established.
- Build, configure, integrate, and tune the enterprise security tooling stack across cloud and corporate environments.
- Develop and maintain detection content, correlation rules, and response automation within the SIEM and SOAR platform.
- Onboard new log sources and telemetry feeds, validating ingestion completeness, parsing accuracy, and field normalization.
- Administer and tune endpoint detection and response tooling, including policy configuration, exclusion governance, and coverage validation.
- Integrate security tooling with adjacent platforms through APIs to reduce manual handling and improve data quality.
- Implement and maintain security configurations, guardrails, and baselines across Google Cloud Platform, Amazon Web Services, and Microsoft Azure.
- Build and maintain security automation and infrastructure-as-code using Terraform or an equivalent framework, so that controls are version-controlled, repeatable, and auditable.
- Implement policy-as-code and preventive guardrails using native cloud policy engines or an equivalent open policy framework.
- Support cloud security posture management across all cloud environments, including finding deduplication, theme mapping, and routing to owning teams.
- Harden cloud resources including compute, storage, database, container, and serverless services against established benchmarks.
- Configure and maintain Microsoft 365 and Entra ID security controls, including conditional access, identity protection, and Defender workloads in a hybrid directory environment.
- Implement and maintain least-privilege access models, roles, and policies across multiple cloud identity systems.
- Implement container and Kubernetes security controls, including role-based access control, workload security standards, image scanning, and runtime protection.
- Implement and maintain secrets management practices and tooling, and support the elimination of hard-coded credentials across environments.
- Operate vulnerability management tooling, validate scan coverage, and translate raw scanner output into prioritized, owner-routed findings.
- Provide technical remediation guidance to cloud, platform, identity, application, and endpoint owners, who retain accountability for closure of findings in their systems.
- Implement engineering fixes for findings that fall to security-owned tooling and configuration.
- Support remediation tracking for penetration test and vulnerability assessment findings by supplying technical detail and validating that fixes are technically sound.
- Support incident detection and response through hands-on technical investigation, including log analysis, endpoint examination, identity and authentication tracing, and cloud audit log review.
- Support escalations raised by the external managed security partner by supplying technical analysis and environment context.
- Provide feedback into detection quality and alert tuning to reduce noise and improve signal for the monitoring function.
- Contribute technical findings to post-incident review, and implement the resulting control and detection improvements.
- Participate in tabletop exercises and resilience testing, and act on the technical gaps those exercises surface.
- Document all engineering changes to security controls through the change management process, including validation criteria and rollback plans.
- Produce and maintain runbooks, playbooks, and technical operating procedures for repeatable security operations tasks.
- Write clear, documented, and reviewable code and configuration so that work can be inspected, maintained, and handed over without dependence on any one individual.
- Support audit, certification, and customer assurance activities by producing technical evidence on request.
- Maintain accurate inventory of security tooling, control coverage, licensing position, and control operating status.
- Maintain strict confidentiality of security testing results, control configuration detail, and investigative material, and follow established standards for external disclosure.
PLEASE NOTE: This is not an exhaustive list of all duties, responsibilities and requirements of the position described above. Other functions may be assigned and management retains the right to add or change duties at any time.
Minimum Qualifications, Education and Experience
- 4+ years of hands-on experience in security operations, security engineering, or a comparable technical security role. (Required)
- Bachelor's degree in information technology, computer science, cybersecurity, or a related field, or equivalent professional experience. (Required)
- 2+ years of hands-on cloud security experience across at least one major cloud provider; Google Cloud Platform and Amazon Web Services preferred. (Required)
- 2+ years operating and tuning a SIEM platform, including working with detection content and log sources. (Required)
- 1+ year administering Microsoft 365 and Entra ID security controls in a hybrid directory environment. (Required)
- Working knowledge of security automation; experience with scripting and infrastructure-as-code is required, with Terraform experience preferred. (Required)
- Working knowledge of cloud security posture management and preventive controls. (Required)
- Working knowledge of container and Kubernetes security, including role-based access control and image scanning. (Required)
- Working knowledge of secrets management tooling and practices. (Required)
- Practical experience with endpoint detection and response tooling. (Required)
- Working knowledge of vulnerability management and the finding remediation lifecycle, including risk-based prioritization. (Required)
- Scripting capability in at least one of: Python, PowerShell, or Bash. (Required)
- Familiarity with recognized security frameworks including NIST Cybersecurity Framework, ISO/IEC 27001, and SOC 2. (Required)
- Able to communicate technical findings clearly in writing and verbally to both technical and non-technical audiences. (Required)
- Able to manage assigned work independently and escalation appropriately. (Required)
- Available to support incident response activity outside standard business hours as required. (Required)
- Microsoft Office experience. (Required)
- Industry certification such as Security+, CompTIA CySA+, or a cloud provider security certification. (Preferred)
- Experience in healthcare, medical device, or another regulated industry, and working familiarity with HIPAA obligations. (Preferred)
- Experience working alongside or integrating with a managed security service provider. (Preferred)
Quality Standards
- Communicates, cooperates, and consistently functions professionally and harmoniously with all levels of supervision, co-workers, visitors, and vendors.
- Demonstrates initiative, personal awareness, professionalism and integrity, and exercises confidentiality in all areas of performance.
- Follows all local, regional and country laws concerning employment.
- Follows all DeepHealth policies and procedures.
- Follows data privacy, compliance, safety and confidentiality standards at all times.
- Practices universal safety precautions.
- Promotes good public relations on the phone and in person.
- Adapts and is willing to learn new tasks, methods, and systems.
- Reports to work regularly as scheduled; consistently punctual with respect to working hours, meal and rest breaks, and maintains satisfactory personal attendance in accordance with DeepHealth guidelines.
- Completes job responsibilities in a quality and timely manner.
Travel
This position requires domestic / international travel up to 10%.
Working Environment
Remote
Physical Demands
This position often requires sitting, standing, walking, bending, twisting, reaching with hands and arms, using hands and fingers, handling, or feeling, speaking, listening, and high-level cognitive thinking. Also, must be able to lift up to 10 pounds occasionally.
Work Authorization / Visa Sponsorship:
DeepHealth does not provide immigration sponsorship for this position, including sponsorship for employment-based visas or other work authorization requiring employer sponsorship. Candidates must be legally authorized to work in the United States without current or future sponsorship from DeepHealth for the duration of employment.
#J-18808-Ljbffr$135.48k - $227.7k
...(NYSE: IOT) is the pioneer of the Connected Operations™ Cloud, which is a platform that enables organizations... .... About the role: As a member of our Security Operations Team, you will collaborate with a global team of engineers to monitor and respond to security events,...SuggestedPart timeRemote workFlexible hoursShift work$180k - $220k
...AssemblyAI is built differently. The company operates as a true meritocracy, with no heavy... ...runs a mature, multi-framework security and compliance program—including SOC 2 (... ...API. We're hiring a Security Operations Engineer to join our IT & Security team and take...SuggestedFull timeRemote work$10 per hour
...configuration drift across our critical SaaS applications. Own security configuration for the SaaS tools hundreds of Flexporters use... ...years of experience in corporate, enterprise, or IT security engineering — we care more about what you've shipped than the exact number...SuggestedWork at officeImmediate startFlexible hours- ...(IAM) team is dedicated to ensuring the secure and efficient management of user identities... ...and Access Management (IAM) Security Engineer, you will play a crucial role in designing... ...Management (PAM) platform Provide operational support of IAM systems including an on-call...SuggestedLocal area
$154k - $231k
...considering candidates for this role in California, Seattle, or NYC. We are seeking a highly skilled Senior Security Engineer to join our advanced Security Operations team. This role is focused on leading complex incident response and forensic investigations across...SuggestedFull timeTemporary workWork at officeRemote workWork from homeFlexible hours$101.4k - $152.1k
...What You Will Do Perform hands-on offensive security testing across Ecolab commercial products, including web applications, mobile... ...security gaps. Support offensive security engagements and mentor engineers as needed while remaining highly hands-on in day-to-day...Hourly payMinimum wageLocal areaFlexible hours$165k - $190k
...transformation with useful data. Redox Engine, a flexible interoperability platform, connects... ...& Impact We are seeking a Senior Security Engineer to take ownership of cloud-... ...fully remote team within the U.S. that operates with radical transparency and a strong bias...Full timeRemote workFlexible hours- ...Our hedge fund client is seeking an experienced Senior Security Engineer to join their New York office. In this role, you will lead the firm's cybersecurity efforts, focusing on security monitoring, incident response, threat detection, and vulnerability management. Working...Work at office
- ...Role summary Jito is seeking a Senior Security Engineer to join their growing security team. This role involves a broad scope of operational and technical responsibilities, including identity and access management, security reviews across the product portfolio (threat...Remote work
- ...Security is a core part of the Medplum platform. We build open source healthcare infrastructure... ...to large enterprises. As a Security Engineer at Medplum, you will work across our... ..., developer tooling, and security operations to identify vulnerabilities and make our...Flexible hours
- ...Role You'll be the technical backbone of our security program. This is a hands-on role owning the engineering side of security across the whole platform:... ...hardening, and IaC security. ~ Proven experience operating vulnerability scanners, SAST/DAST/SCA, CSPM/CWPP...Remote workFlexible hours
- ...GuidePoint Security provides trusted cybersecurity expertise, solutions and services that... ...that mitigate risk. Endpoint Security Engineer General Description We are looking... ...owners to tune policies and eliminate operational friction, while providing tier-3/tier-4...Permanent employmentInterim roleCasual workRemote workFlexible hours
$97.9k - $153.8k
...Anywhere This is a remote position. Position Title: IT Security Engineer Base Salary: $97,900 to $153,800 annually DOE Benefits... ...risk management processes. · Participates in emergency operations, including the Computer Security Incident Response Team. ·...Self employmentWork at officeLocal areaRemote workFlexible hours$138.68k - $182.3k
...partners with federal agencies to modernize and operate complex technology ecosystems. We build shared platforms, engineering foundations, and reusable services that enable... ...teams across Medicare and Medicaid to deliver secure, resilient digital experiences. We're a...Contract workImmediate startRemote work- ...Koniag Data Solutions, a Koniag Government Services company, is seeking an experienced Security Engineer to support enterprise cybersecurity operations and IT administrative and operational support services for a federal government client. This position requires an active...Local areaRemote workFlexible hours
$300k - $400k
...Member of Technical Staff, Security Engineer About Fleet Fleet studies how environments produce intelligence. We believe intelligence is an emergent property of environmental pressures: the environment determines what capabilities develop, what behaviors survive...Full time- ...interesting and motivating to work on. Engineers lead product teams and make product decisions... ...for We are looking for an expert security generalist (in EU/UK) to assist with all... ...Someone to take the reins of our security operations, build out our detection pipelines, and...Remote workFlexible hoursNight shift
$174.25k - $205k
....S., Australia, and France. About The Role As a Senior Security Engineer at Jasper, you'll be the first true generalist on our Security... ..., dependency/SCA policies, and CI/CD pipeline security Operate and tune Wiz (or equivalent CSPM/CNAPP tooling) to continuously...Local areaRemote workWorldwideHome officeFlexible hoursShift work$160k - $180k
...next-generation manufacturing. We are a team of builders, engineers, and operators who believe nuclear energy should be fast to deploy, factory... ...digital tools that power Valar's operations. The team ensures secure, reliable, and scalable technology solutions that support...Permanent employmentRemote work- ...Security is at the foundation of Zizy’s mission to ensure that artificial general intelligence... ...are technical in what we build but are operational in how we do our work, and are committed... .... About the Role As a Software Engineer focused on Security Partnerships on the...
- ...data records can be verified. We are looking for a hands-on Security Engineer to own and strengthen security across PIP Labs’ cloud... ...the broader ecosystem. You will balance day-to-day security operations with the automation required to manage a growing, globally distributed...
$163k - $220k
...platform. Our Winning Culture is the engine that drives our teams of innovators. We... ...celebratingour wins – big and small. Supported by operating principles of being strategy-led, values... ...s build what’s next - together! As a Security Engineer III embedded within the...Work at office- ...Job Summary We are seeking a Security Engineer to design, implement, and maintain technical security controls across infrastructure, cloud... ...security configuration, cloud and SaaS security, security operations, risk management, governance, and compliance activities....
$230k - $290k
...across organizations without compromising security or reliability. Continue cloud agent... ...your work reaches hundreds of thousands of engineers every day, we'd love to have you. The... ...customers. ~ Comfortable operating with significant ownership and ambiguity...Work at officeRemote workFlexible hours- ...Burlington, United States | Posted on 07/13/2026 We're looking for a Senior Security Engineer to lead application security efforts across our product portfolio, spanning web applications, APIs, mobile, embedded software, and shipped product deliverables. You'll be embedded...
$175k - $250k
...We are looking for an IT Security Engineer with a strong Windows engineering background and practical exposure to modern platform security... ...support the daily work of our colleagues and keep our systems operating at the highest standard. About You Proficient in...Remote workFlexible hours$130k - $135k
...Position Description Valiant Solutions is seeking a Network Security Engineer to join our rapidly growing and innovative cybersecurity... ...Solutions is seeking a Network Security Engineer to deploy and operate the Network Access Control and perimeter security...Full timeContract workTemporary workFor contractorsWork at office- ...Overview The Senior Security Engineer supports and leads plant-wide technical security operations for MSV. This roleis responsible forexecuting headquarters-directed security activities,maintainingsite security policies and guidelines, supporting annual security plans...Work at officeLocal area
$141.6k - $212.4k
...to own their own destiny. Klaviyo is looking for a Senior Security Engineer to add to our growing Detection and Response (D&R) Team.... ...development and response lifecycle and support with threat response operations. As a Senior Security Engineer, you will have the...$96.68k - $157.59k
...everyone deserves great care . Position Summary: The Security Engineer designs and implements digital security that protects vital... ...and skills which are required by business and critical operations. Works with threat intelligence and/or threat-hunting teams...Full timeLocal areaRemote workRelocation packageShift work
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Security Operations Engineer. Be the first to apply!
- application security engineer Eastern, KY
- security software engineer Eastern, KY
- aws cloud security engineer Eastern, KY
- sr security engineer Eastern, KY
- endpoint security engineer Eastern, KY
- offensive security engineer Eastern, KY
- sr information security engineer Eastern, KY
- security infrastructure engineer Eastern, KY
- cloud security engineer Eastern, KY
- security engineer Eastern, KY

