Jobs · Information Technology

Security Operations Engineer

Vertex Inc. · United States · 2 days ago
RemoteRemoteInformation Technology$91k–$119k/yrFull-time

About the role

Vertex Inc. is looking for a Security Response Engineer to strengthen our security monitoring, incident response, detection engineering, and SecOps automation capabilities. This role is ideal for a hands-on security practitioner who has a passion for investigating threats, responding to incidents, improving security tooling, and building operational solutions that help security teams work faster and more effectively.

Given the 24/7/365 nature of the security operations function, the Security Response Engineer participates in a rotating shift schedule designed to provide continuous security analysis and incident response coverage. This will require working nights, weekends, holidays, and extended hours based on the assigned coverage and operational needs.

Responsibilities

  • Monitor, triage, investigate, and respond to security alerts across endpoint, identity, network, cloud, SaaS, and application environments.
  • Lead end-to-end incident response — detection through containment, eradication, recovery, and post-incident improvement — including root-cause analysis and corrective action tracking.
  • Build, tune, and maintain detection logic across SIEM, EDR, cloud, and network platforms; conduct proactive threat hunting aligned to MITRE ATT&CK.
  • Develop and maintain SecOps tooling, scripts, API integrations, and workflow automations to improve investigation speed and response execution.
  • Apply AI responsibly in SecOps workflows, with the ability to explain, validate, test, and maintain all AI-assisted outputs.
  • Collaborate cross-functionally to close telemetry gaps, improve detection coverage, and translate incident findings into lasting security improvements.

Requirements

  • Hands-on knowledge in security operations, incident response, detection engineering, or threat hunting, with demonstrated ability to lead significant investigations.
  • Strong knowledge of attacker tactics and techniques across endpoint, identity, network, cloud, and email environments, including MITRE ATT&CK mapping and IOC analysis.
  • Experience with SIEM platforms (Sentinel, Splunk, Chronicle, QRadar, or Elastic) and proficiency writing and tuning detection queries using KQL, SPL, Sigma, YARA, or equivalent.
  • Experience with EDR/XDR platforms (Defender for Endpoint, CrowdStrike, SentinelOne, Cortex XDR, or Carbon Black), including triage, investigation, and containment.
  • Scripting or automation experience using Python, PowerShell, or Bash; AI-assisted development acceptable provided the candidate can explain, validate, test, and maintain the code.
  • Practical use of AI tooling for security — such as Claude, GitHub Copilot, or OpenAI Codex — to accelerate tooling development, detection drafting, and analysis workflows.
  • Experience with at least one cloud platform (AWS, Azure, GCP, or OCI), including cloud logging, identity, and security monitoring.
  • Solid understanding of identity security, including MFA, conditional access, privileged access, token abuse, and identity-based attacks.
  • Strong communication skills with the ability to explain complex security issues to technical and non-technical audiences.
  • Independent, self-starter, analytical, evidence-driven work style with strong attention to detail.

Qualifications

  • Bachelor's degree in Cybersecurity, Information Assurance, Computer Science, or a related field (or equivalent combination of education, training, and relevant professional experience).
  • Experience with threat intelligence, malware triage, digital forensics, or reverse engineering.
  • Experience with vulnerability management or compliance-driven SecOps (SOC 2, ISO 27001, PCI DSS, or HIPAA).
  • Familiarity with detection-as-code, Git-based workflows, CI/CD pipelines, and code review practices.
  • Relevant certifications such as GIAC (GCFA, GCIH, GCFR, GCLD, GDAT, or GEIR), OffSec (OSIR, OSTH, OSCP, or OSAI), AWS Security Specialty, Google Professional Cloud Security Engineer, Microsoft SC-200, or CompTIA CASP+.

Pay

US Base Salary Range: $91,200.00 - $118,600.00. Base pay offered to new hires may vary based on factors including relevant industry and job-related skills and experience, geographic location, and business needs. The range displayed does not encompass the full potential of the role, which allows for further growth and career progression.

In addition to base pay, this role may be eligible for the Vertex Bonus Plan (VOB), a role-specific sales commission/bonus, and/or equity grants. In no case will your pay fall below applicable local minimum wage requirements.

Schedule

Rotating shift schedule designed to provide 24/7/365 security analysis and incident response coverage, including nights, weekends, holidays, and extended hours based on operational needs.

Values

  • Play to Win or We Don't Play — If we choose to do something, we're choosing to do it because we plan to win. That mindset raises our bar on product quality, customer outcomes, and how we show up for one another.
  • Work As a Team, Putting the Customer At the Core — Our customers are our true north. Whatever your role, ask: how will this help a customer succeed today? We earn trust through outcomes, not promises.
  • Achieve Excellence With Integrity, Speed, and Agility — The market isn't slowing down. We'll move faster, adapt quickly, and never compromise on doing things the right way — for teammates, customers, and partners.
  • Innovate Boldly With a Growth Mindset — Progress demands smart risk. We'll try new approaches, learn fast, and keep pushing the boundaries — especially where AI can remove friction and unlock value.
  • Communicate with Care, Candor and Transparency — Honest, constructive conversations make us better. Let's speak plainly about what's working and what isn't and help each other improve.

Similar jobs

Security Operations Engineer

Accenture Federal ServicesFort Meade, MD· 2 mo ago
Information Technology$126k–$243k/yrapply on boards.greenhouse.io

Security Operations Engineer

Astranis Space TechnologiesSan Francisco Bay Area· 2 mo ago
Information Technology$150k–$205k/yrapply on job-boards.greenhouse.io