Let’s get started
By clicking ‘Next’, I agree to the Terms of Service
and Privacy Policy, and consent to receive emails from Rise
Jobs / Job page
Senior Security Operations Engineer image - Rise Careers
Job details

Senior Security Operations Engineer

About Us

At Resilience, we’re creating a new category that integrates cybersecurity, cyber insurance, and cyber risk management.


Founded in 2016 by experts from across the highest tiers of the US military and intelligence communities – and built by prominent leaders and innovators from the insurance, technology, and cybersecurity industries – Resilience is rewriting the rules of how cyber risk is assessed, measured, and managed. Our integrated cyber risk solutions connect risk quantification software, cybersecurity experts, and A+ rated cyber insurance, all purpose-built for middle and large organizations. 


Guided strongly by our mission and four core values - transparency, excellence, grit, and humility, our culture uniquely blends many different backgrounds, experiences, and skills from across industries and geographies - all focused on helping our clients and partners stay ahead of the bad guys. We are a cybersecurity company, a Cyber and Tech E&O-focused MGA, a fintech startup, and a data science powerhouse, all purposefully built into one. 


Resilience is proud to be backed by leading technology investment firms, including General Catalyst, Lightspeed Venture Partners, Intact Ventures, Founders Fund, CRV, and Shield Capital. With headquarters in San Francisco, Resilience’s team is globally dispersed, with offices in New York, Chicago, Baltimore, Los Angeles, Toronto, and London. Resilience offers insurance coverage through its licensed and appointed insurance agents and security services through its expert security team.  


Resilience is seeking an extraordinary Senior Security Operations Engineer.  This position is part of the Information Security team which defends Resilience’s endpoints and its SaaS platform.  Ideal candidates will have experience with security operations, associated automation technologies, public cloud, and SIEM. 


Your role will primarily focus on enabling the Director of Security Operations to automate and scale Resilience’s security workflows.  This will entail managing SIEM ingestion, cataloguing and refining detections, response automation, SOAR playbook development, and technical documentation.  It will also involve working with partner teams such as Information Technology, Engineering, DevOps, the Risk Operations Center, and Business Operations to ensure outputs from security operations are timely and actionable.  As the program scales, it will increasingly involve the enablement and automation of Threat Hunting, GRC, and Security Architecture workflows.


Responsibilities:
  • Develop dashboards, automations, and SOAR playbooks to triage security alerts.
  • Serve as a system owner and subject matter expert for the SIEM. 
  • Manage the ingestion of appropriate logging into the SIEM.
  • Participate in the alert review process to identify tuning and automation opportunities.
  • Refine inbound and outbound logging and tasking workflows with teams such as IT, DevOps, Threat Intelligence, Risk Operations Center, and Business Operations.
  • Maintain written documentation for security logging ingest and automation which can be communicated and shared with partner teams that need to implement them.
  • Participate in security architecture and integration reviews, as required.
  • Participate in security investigations when required.
  • Integrate security and business intelligence tools into detection, response, and GRC workflows and tooling.


Qualifications:
  • A desire and ability to work in a highly skilled, cross-functional, and growing team, including learning new technologies where required.
  • Bachelor's degree or higher, or equivalent work experience of 5-10 years. 
  • Intermediate or better knowledge of scripting languages like Python and Bash as it relates to automation and knowledge of log formats, parsing, and collection.
  • Experience maintaining or being a power user of a SIEM.  Experience with SumoLogic is preferred but other leading platforms are a plus.
  • Strong writing and communications skills to both business and technical stakeholders.
  • Experience with Endpoint Detection and Response (EDR) such as Crowdstrike. 
  • Experience with Amazon Web Services and other public clouds.
  • Experience securely integrating systems via APIs via both “off-the-shelf” integrations exist and writing custom ones when required.
  • Experience with SOAR playbook development is highly desirable.
  • A desire and ability to work in a highly skilled, cross-functional, and growing team, including learning new technologies where required.
  • Experience working in a Security Operations Center (SOC) is highly desirable.
  • Certifications relevant to Security Operations, Automation, and Digital Forensics are desirable but not required.  Ex. GPYC, GCFR, GEIR, AWS Certified Security - Specialty.


$170,000 - $200,000 a year

What Resilience Offers You

Innovative company culture

Flexible work schedules

Family paid leave

Paid healthcare for employees

401k

Professional development & career advancements

Flexible paid time off

Employee referral bonus


Accommodations and Accessibility

We want to ensure you're able to perform as well as possible in your interview. As part of that, if you have any accessibility-related needs to ensure a comfortable visit, please let us know. We'll do our best to provide reasonable accommodations to suit your working style during your interview and if you join our team.


If you require a reasonable accommodation in completing this application, interviewing, completing any pre-employment testing, or otherwise participating in the employee selection process, please direct your inquiries to our Human Resources team at recruiter@arceo.ai.


Beware of Job Scams

Resilience is excited to welcome talented individuals to explore career opportunities with us. However, we urge you to stay vigilant against recruitment scams where fraudsters may impersonate our company. We will never ask for payments, conduct interviews via chat rooms, or contact candidates from personal email accounts. All job applications must be submitted through our official platform at lever.co, and interviews will only take place via approved Resilience accounts. If you receive suspicious outreach or have concerns, please contact us directly at recruiter@arceo.ai to verify authenticity. Thank you for helping us maintain a safe and secure recruitment process.


Resilience Glassdoor Company Review
3.0 Glassdoor star iconGlassdoor star iconGlassdoor star icon Glassdoor star iconGlassdoor star icon
Resilience DE&I Review
No rating Glassdoor star iconGlassdoor star iconGlassdoor star iconGlassdoor star iconGlassdoor star icon
CEO of Resilience
Resilience CEO photo
Unknown name
Approve of CEO

Average salary estimate

$185000 / YEARLY (est.)
min
max
$170000K
$200000K

If an employer mentions a salary or salary range on their job, we display it as an "Employer Estimate". If a job has no salary data, Rise displays an estimate if available.

What You Should Know About Senior Security Operations Engineer, Resilience

At Resilience, we're on the hunt for a talented Senior Security Operations Engineer to join our dynamic Information Security team. We're redefining how cyber risk is managed, and we need someone with a passion for security operations, automation technologies, and public cloud environments. This isn’t just another position – it's an opportunity to work with some of the brightest minds in the cybersecurity and insurance industries, founded by veterans from the US military and intelligence communities. Your main goal will be to support our Director of Security Operations by automating workflows and enhancing our security posture. You’ll manage SIEM ingestion, collaborate with cross-functional partners, and refine security logging and automation processes. If you thrive in a role that allows you to develop SOAR playbooks, build dashboards, and engage in continuous improvement of our security operations, we’d love to hear from you! At Resilience, we value transparency, excellence, grit, and humility, and we believe that a diverse team brings unique perspectives to our work. Plus, we offer flexible work schedules, comprehensive healthcare, and ample opportunities for professional growth. Join us and help combat cyber threats while enjoying a collaborative and supportive workplace culture!

Frequently Asked Questions (FAQs) for Senior Security Operations Engineer Role at Resilience
What are the responsibilities of a Senior Security Operations Engineer at Resilience?

The Senior Security Operations Engineer at Resilience plays a pivotal role in defending our endpoints and SaaS platform. Responsibilities include developing security automation processes, managing SIEM ingestion, creating SOAR playbooks, and collaborating with teams like IT and DevOps to streamline security workflows. You'll also be tasked with maintaining documentation and participating in security investigations as needed.

Join Rise to see the full answer
What qualifications do I need to apply for the Senior Security Operations Engineer position at Resilience?

To qualify for the Senior Security Operations Engineer role at Resilience, candidates should have a Bachelor’s degree or equivalent experience with 5-10 years in the field. Proficiency in scripting languages such as Python and Bash for automation, as well as experience with SIEM and Endpoint Detection and Response (EDR) tools, is essential. Familiarity with AWS and strong communication skills are also highly desirable.

Join Rise to see the full answer
What skills are important for the Senior Security Operations Engineer position at Resilience?

Key skills for the Senior Security Operations Engineer at Resilience include strong analytical thinking, proficiency in SIEM technologies, automation skills, and experience integrating security systems via APIs. Being a team player and possessing excellent written and verbal communication skills to convey technical information to various stakeholders are crucial.

Join Rise to see the full answer
How does Resilience support the professional development of Senior Security Operations Engineers?

At Resilience, we are committed to the professional growth of our team members. As a Senior Security Operations Engineer, you will have access to various training programs, conferences, and resources for development. We also encourage knowledge sharing and collaboration, allowing you to learn from your peers as you tackle complex security challenges.

Join Rise to see the full answer
What is the work culture like for a Senior Security Operations Engineer at Resilience?

The work culture at Resilience is built on our core values of transparency, excellence, grit, and humility. As a Senior Security Operations Engineer, you will be part of a diverse and inclusive team that values collaboration and continuous improvement. We promote a flexible work environment that respects work-life balance and encourages team bonding and professional integrity.

Join Rise to see the full answer
Common Interview Questions for Senior Security Operations Engineer
How do you manage SIEM ingestion and optimize alert processes?

When managing SIEM ingestion, I focus on ensuring that appropriate logging is collected from multiple sources. I automate the alert review process by developing scripts that filter out noise, allowing my team to focus on high-priority events. Sharing insights on tuning alerts with the security team is vital to refine detection capabilities further.

Join Rise to see the full answer
Can you describe your experience with SOAR playbook development?

In my previous roles, I have developed multiple SOAR playbooks that automate incident response processes. I start by identifying repetitive tasks within our workflows and then document the standard operating procedures. Ensuring these playbooks are flexible and adaptable is essential for effective incident handling.

Join Rise to see the full answer
What role does teamwork play in your approach as a Senior Security Operations Engineer?

Teamwork is essential for achieving robust security outcomes. As a Senior Security Operations Engineer, I actively collaborate with cross-functional teams, such as IT and DevOps, to ensure our security measures are efficient and aligned with business objectives. Encouraging open communication fosters a culture of continuous improvement and swift threat response.

Join Rise to see the full answer
How do you stay updated with the latest cybersecurity threats and trends?

I stay updated by regularly participating in cybersecurity forums, webinars, and industry publications. Engaging in communities like OWASP and attending conferences helps me learn and share insights about emerging threats. Continuous education through certifications and training also keeps my skills relevant.

Join Rise to see the full answer
Describe a challenging security incident you've handled in the past.

In a previous position, we faced a potential data breach. I spearheaded the incident response by coordinating with various teams to contain the threat, analyze the logs for suspicious activities, and communicate findings to stakeholders. It was a complex situation that required quick thinking, collaboration, and effective communication.

Join Rise to see the full answer
What tools do you commonly use for security automation?

I commonly use tools like Splunk for SIEM capabilities, alongside automation platforms such as Phantom and Cortex XSOAR. These tools enable me to streamline security operations by automating routine tasks and ensuring thorough coverage for incident detection and response.

Join Rise to see the full answer
How do you handle a situation where security measures have failed?

In cases where security measures fail, my first step is to conduct a thorough analysis to identify the weakness that led to the failure. Learning from the incident is key, so I work with the team to implement corrective actions and strengthen our defenses. Transparency and communication are vital during this process.

Join Rise to see the full answer
What scripting languages do you find most effective for automation?

I find Python and Bash to be the most effective scripting languages for automation in security operations. Python's versatility allows for complex automation scripts, while Bash scripts are great for quick command-line tasks and batch processing in Unix environments.

Join Rise to see the full answer
What best practices do you follow when developing security documentation?

When developing security documentation, I ensure clarity and accuracy. I use clear language and organize information logically, often including visuals or flowcharts. Regular updates are critical since processes can change rapidly in cybersecurity, and sharing documentation with relevant stakeholders enhances comprehension and usability.

Join Rise to see the full answer
Why is effective communication important for a Senior Security Operations Engineer?

Effective communication is crucial because it aligns our security strategies with organizational goals. As a Senior Security Operations Engineer, I need to convey complex technical information in a manner that both technical and non-technical stakeholders can understand. This promotes cooperation and encourages the implementation of security measures across the organization.

Join Rise to see the full answer
Similar Jobs
Photo of the Rise User
Posted 12 days ago

Join Resilience as a Requirements Analyst to drive innovative solutions in cybersecurity and risk management.

Photo of the Rise User
Posted 8 days ago

Join Resilience as a Senior Claims Counsel and help shape the future of cyber risk management and insurance.

Posted 7 days ago

As a SysOps/DevOps Engineer at Advantage FSE, you will play a crucial role in managing IT infrastructures for our global clients within the FinTech industry.

Photo of the Rise User

Seeking a skilled Lead Systems Engineer to join our dynamic IT team at Enterprise Mobility, focusing on production support and system reliability.

Photo of the Rise User
Thomson Reuters Remote MEX-Distrito Federal-Reforma 26
Posted 7 days ago

Join Thomson Reuters as a Senior Security Operations Analyst to foster strong collaboration and drive technology solutions in a flexible hybrid work environment.

Posted 8 days ago

Seeking a dynamic TSG Technician II to lead and coordinate tech solutions at UPS in Worcester, MA.

Photo of the Rise User
Posted 12 days ago
Customer-Centric
Rapid Growth
Diversity of Opinions
Reward & Recognition
Friends Outside of Work
Inclusive & Diverse
Empathetic
Feedback Forward
Work/Life Harmony
Casual Dress Code
Startup Mindset
Collaboration over Competition
Fast-Paced
Growth & Learning
Open Door Policy
Rise from Within
Maternity Leave
Paternity Leave
Flex-Friendly
Family Coverage (Insurance)
Medical Insurance
Dental Insurance
Vision Insurance
Mental Health Resources
Life insurance
Disability Insurance
Health Savings Account (HSA)
Flexible Spending Account (FSA)
401K Matching
Paid Holidays
Paid Sick Days
Paid Time-Off

Join a collaborative team as an SAP MM Functional Consultant, driving critical materials management processes in a hybrid work environment.

Photo of the Rise User
Inclusive & Diverse
Empathetic
Collaboration over Competition
Growth & Learning
Transparent & Candid
Medical Insurance
Dental Insurance
Mental Health Resources
Life insurance
Disability Insurance
Child Care stipend
Employee Resource Groups
Learning & Development

Join American Express as a Director of Technology Regulatory, where you'll lead efforts in reducing regulatory risks and managing technology audits within a pioneering financial services environment.

IT-Strat is looking for a Help Desk Specialist to support advanced troubleshooting for government IT solutions.

Photo of the Rise User
ServiceNow Hybrid 4810 Eastgate Mall, San Diego, California, United States
Posted 14 days ago
Inclusive & Diverse
Mission Driven
Rise from Within
Diversity of Opinions
Work/Life Harmony
Empathetic
Feedback Forward
Take Risks
Collaboration over Competition
Medical Insurance
Dental Insurance
Vision Insurance
Mental Health Resources
Life insurance
Disability Insurance
Health Savings Account (HSA)
Flexible Spending Account (FSA)
Conferences Stipend
Paid Time-Off
Maternity Leave
Equity

ServiceNow is looking for a proactive Senior Problem Manager to enhance service reliability and drive continuous improvement within its cloud operations.

Photo of the Rise User
Posted 10 months ago
Photo of the Rise User
Inclusive & Diverse
Rise from Within
Mission Driven
Diversity of Opinions
Work/Life Harmony
Transparent & Candid
Growth & Learning
Fast-Paced
Collaboration over Competition
Take Risks
Friends Outside of Work
Passion for Exploration
Customer-Centric
Reward & Recognition
Feedback Forward
Rapid Growth
Medical Insurance
Paid Time-Off
Maternity Leave
Mental Health Resources
Equity
Paternity Leave
Fully Distributed
Flex-Friendly
Some Meals Provided
Snacks
Social Gatherings
Pet Friendly
Company Retreats
Dental Insurance
Life insurance
Health Savings Account (HSA)

Our mission is to build a business committed to entrepreneurship in every way. To our clients, we look to exceed their expectations in every fashion. To our team, we look to shape their already existing entrepreneurial spirit, bringing growth oppo...

26 jobs
MATCH
Calculating your matching score...
FUNDING
SENIORITY LEVEL REQUIREMENT
TEAM SIZE
No info
EMPLOYMENT TYPE
Full-time, remote
DATE POSTED
April 9, 2025

Subscribe to Rise newsletter

Risa star 🔮 Hi, I'm Risa! Your AI
Career Copilot
Want to see a list of jobs tailored to
you, just ask me below!
LATEST ACTIVITY
Photo of the Rise User
Someone from OH, Tallmadge just viewed Manufacturing and Process Engineer at CVRx
Q
Someone from OH, Columbus just viewed Part-Time Medical Assistant at QualDerm Partners
Photo of the Rise User
Someone from OH, Cincinnati just viewed Summer 2025 Intern – Finance – Michigan at Stryker
Photo of the Rise User
19 people applied to SOC Analyst I at CBIZ
Photo of the Rise User
Someone from OH, Cleveland just viewed Remote Customer Service Representative at Conduent
Photo of the Rise User
Someone from OH, Cleveland just viewed Customer Support Team Lead (6-month Contract) at Jane App
o
Someone from OH, Cincinnati just viewed Marketing and Communications Consultant at osu
Photo of the Rise User
Someone from OH, Toledo just viewed Registered Nurse (Part-time) at Calibrate
Photo of the Rise User
Someone from OH, Toledo just viewed Clinical Research Associate II at Alimentiv
Photo of the Rise User
Someone from OH, Cleveland just viewed IT Support Engineer at Level AI
Photo of the Rise User
Someone from OH, Dayton just viewed Customer Content Specialist at Cision
Photo of the Rise User
Someone from OH, Cuyahoga Falls just viewed Senior Corporate Communications Manager at Bumble Inc.
Photo of the Rise User
Someone from OH, Cincinnati just viewed Senior Financial Analyst at Workday
Photo of the Rise User
Someone from OH, Cincinnati just viewed Financial Planning and Analysis Lead at JLL
Photo of the Rise User
Someone from OH, Cincinnati just viewed Senior Financial Analyst at American Express
Photo of the Rise User
Someone from OH, Cincinnati just viewed Senior Analyst, Operations at American Express
Photo of the Rise User
Someone from OH, Cincinnati just viewed Strategic Finance Analyst, Corporate at Benchling
Photo of the Rise User
Someone from OH, Cincinnati just viewed Senior Analyst, Project Finance at Apex Clean Energy
Photo of the Rise User
Someone from OH, Cincinnati just viewed Senior FP&A Analyst, Sales at GitLab
Photo of the Rise User
Someone from OH, Cincinnati just viewed FP&A Analyst at Lithic