Job Type: Contract
Contract Length: 6+ months
Pay Range: $70-75/hr
Start Date: ASAP
Location: Hybrid - Foster City, CA
About the Opportunity:
Our client, a leader in the Technology sector, is looking for a skilled Security Operations Center (SOC) Engineer to join their team for a 6+ months engagement. This project involves improving the company's security posture through advanced automation, threat hunting, and the maintenance of their SIEM and SOAR platforms. This is a high-impact role that requires a self-motivated professional who can hit the ground running and deliver results quickly.
Key Responsibilities & Deliverables:
This role is focused on the successful completion of specific tasks and deliverables. Your responsibilities will include:
- SIEM and SOAR Platform Management: Maintaining SIEM and SOAR platforms, developing and fine-tuning detection/correlation rules, dashboards, and reports to accurately detect anomalous activities.
- Automation and Scripting: Utilizing Python scripting to develop custom integrations, build, and maintain automation workflows to enhance the efficiency of threat detection, alert triage, and incident response.
- Incident Response and Threat Hunting: Conducting proactive threat hunting to identify potential security gaps and indicators of compromise, and analyzing security alerts to identify and respond to potential security incidents.
- SOAR Playbook Development: Creating, managing, and optimizing SOAR playbooks to automate incident response processes and streamline security operations.
- Collaboration and Documentation: Collaborating with the Information Security team and other teams, and creating clear, comprehensive documentation for detection rules, automation workflows, and incident response procedures.
We are looking for someone with a proven track record of successful contract engagements. The ideal candidate will have:
- 6+ years of experience in a Security Engineering Role supporting a Security Operations Center (SOC) environment or similar function.
- Deep expertise and demonstrable experience with SOAR platforms (e.g., Palo Alto Cortex XSOAR, Splunk SOAR, Tines) and playbook development. This isn't a learning role—you need to be a subject matter expert.
- Demonstrated ability to work autonomously and manage your own time effectively to meet project goals, leveraging excellent analytical and problem-solving skills.
- Proficiency in Python for scripting and automation of security tasks, coupled with a strong understanding of incident response methodologies and cybersecurity frameworks (e.g., MITRE ATT&CK, NIST).
- Strong communication skills to provide clear and concise status updates to the project team and collaborate effectively with cross-functional teams.
#LI-LG1





