Careers
/
Senior Security Engineer (SOC)

Senior Security Engineer (SOC)

Seniority level
Mid-Senior level

Employment type
Full-time

Job function
Engineering, Analyst, and Information Technology

Industries
IT Services and IT Consulting, IT System Operations and Maintenance, and Computer and Network Security

As a Senior Security Engineer (SOC) with The Redesign Group, you will take a lead role within our Managed Security Services team, responsible for the administration, configuration, and operational monitoring of core security platforms across multiple client environments. You will ensure security tooling is properly deployed and tuned to detect, respond to, and remediate threats effectively.

This role requires hands-on expertise in CrowdStrike Falcon, Rapid7 InsightIDR, and Rapid7 InsightVM—along with experience managing other modern SOC tools and platforms. You will play a key part in day-to-day security operations, incident response workflows, and tuning of detection logic to meet client-specific requirements and cybersecurity best practices.

This role offers the opportunity to influence security architecture, mentor analysts, and help shape the evolution of Redesign’s MSSP services.

Key Responsibilities

  • SOC Tool Administration & Optimization: Administer, configure, and tune key SOC platforms—specifically CrowdStrike Falcon, Rapid7 InsightIDR, and InsightVM—for multiple clients. Ensure integration and alignment with security policies and operational goals.
  • Monitoring & Detection: Monitor and triage security alerts and events, escalate or respond directly based on severity, and ensure appropriate follow-up and documentation.
  • Threat & Vulnerability Response: Proactively identify, assess, and coordinate remediation of security threats and vulnerabilities. Work independently or with engineering teams to drive resolution.
  • Client-Facing Security Operations: Customize tool configurations and detection rules to fit unique client environments. Provide support, status reporting, and best practice guidance to stakeholders.
  • Tooling Expansion: Assist in evaluating and onboarding additional security platforms (e.g., NDR, IAM, DLP, etc.) into client environments where needed.
  • Security Posture Enhancement: Continuously assess opportunities to enhance threat visibility, response effectiveness, and operational maturity.
  • Documentation & Audit Support: Maintain clear and accurate documentation on configuration baselines, incidents, tuning decisions, and ongoing platform health.
  • Collaboration & Mentoring: Work closely with internal teams to deliver cohesive security solutions and support junior analysts in tool usage and investigation techniques.

Required

  • 5+ years of experience in SOC or security engineering roles with deep expertise in CrowdStrike Falcon, Rapid7 InsightIDR, and Rapid7 InsightVM, including administration and tuning across varied environments.
  • Bachelor’s or Master’s degree in information technology, cybersecurity, or a related field, OR equivalent work experience.
  • Proficiency with SIEM, EDR, and vulnerability management tooling; ability to tune detection logic and create operational playbooks.
  • Cloud security experience across AWS, Azure, or GCP.
  • Understanding of frameworks such as NIST 800-53, ISO 27001, and CIS Controls.
  • Strong analytical, troubleshooting, and documentation skills.
  • Strong written and verbal communication skills for client-facing reporting and advisory.
  • Ability to work independently across diverse client environments.

Desired

  • Security certifications (Security+, GSEC, GCIA, CISSP, etc.).
  • Vendor-specific certifications from CrowdStrike, Rapid7, Microsoft, or SentinelOne.
  • Experience with SentinelOne, UpGuard, and Microsoft Intune.
  • Scripting or automation experience (e.g., Python, PowerShell, API integrations).