Sword Health
Sword Health is the world’s fastest growing virtual MSK care provider, on a mission to free two billion people from pain
Senior Security Operations Engineer
Security OperationsSecurity OperationsFull TimeRemoteTeam 201-500Since 2015H1B No SponsorCompany SiteLinkedIn
Location
United States
Posted
22 days ago
Salary
Not specified
Bachelor DegreeEnglishAWSAzureCloudCyber SecurityGoogle Cloud PlatformPythonSplunk
Job Description
• Design and continuously improve detection and alerting controls, ensuring high fidelity and contextual relevance to reduce noise and enable rapid response.
• Build, test, and automate incident response playbooks and runbooks, increasing efficiency and consistency across the incident lifecycle.
• Drive prioritization of alerts using a data-driven, scalable triage framework, aligned with business impact and threat context.
• Lead in-depth investigations, including root cause analysis and digital forensics, and convert findings into actionable insights to strengthen detection and resilience.
• Proactively engage in threat intelligence and threat hunting, identifying new tactics, techniques, and procedures (TTPs), enriching existing controls, and feeding insights into the detection pipeline.
• Own incident handling from detection to resolution, collaborating with engineering, IT, and business teams to contain, eradicate, and recover from threats.
• Define and maintain operational metrics for incident response, using them to drive continuous improvement in speed, accuracy, and organizational readiness.
Job Requirements
- Required: Public Trust Clearance
- Bachelor’s degree in Computer Science, Cybersecurity, or equivalent professional experience.
- Solid experience in cloud environments (AWS, GCP, or Azure), with strong understanding of cloud-native threats.
- Proficiency in scripting languages (e.g., Python, Bash) for automation and tooling development.
- Hands-on experience with SOC tools and platforms, such as SIEM (Splunk, Sentinel, etc.), SOAR, EDR/XDR, and log management.
- Strong understanding of incident containment and eradication strategies, with proven ability to coordinate response with technical teams.
- Familiarity with security frameworks and standards (NIST 800-61, CIS Controls, MITRE ATT&CK, ISO 27001).
- Excellent analytical, critical thinking, and problem-solving skills.
- Ability to consume and synthesize intelligence about actors, techniques or situations to identify emerging risk scenarios.
- Proficiency in process formulation and improvement.
- Background in threat modeling, adversary emulation, and risk-based alert tuning.
- Strong communicator with the ability to explain security risks and actions to both technical and non-technical audiences.
- Proven track record of leading cross-functional efforts in high-pressure situations.
- Ability to foster collaboration across InfoSec, IT, and engineering teams.
- Forensics experience, investigating incidents and preserving digital evidence.
Benefits
- Comprehensive health, dental and vision insurance*
- Life and AD&D Insurance*
- Financial advisory services*
- Supplemental Insurance Benefits (Accident, Hospital and Critical Illness)*
- Health Savings Account*
- Equity shares*
- Discretionary PTO plan*
- Parental leave*
- 401(k)
- Flexible working hours
- Remote-first company
- Paid company holidays
- Free digital therapist for you and your family
Related Guides
Related Categories
Related Job Pages
More Security Operations Jobs
Security Operations23 days ago
Full TimeRemoteTeam 10,001+Since 1876H1B Sponsor
SecOps Engineer supporting Identity and Access Management for a global healthcare leader
AWSAzureCloudITSMNode.jsPHPPython
Security Operations Engineer
Apollo GraphQLApollo is the GraphQL company. Our mission is to empower every developer with a graph.
Security Operations24 days ago
Full TimeRemoteTeam 51-200H1B No Sponsor
Security Operations Engineer protecting and scaling Apollo’s infrastructure securely
ApolloCloudKubernetesTerraform
Senior Cybersecurity Engineer – Security Operations Engineering
General MotorsJoin us on our journey toward a world with zero crashes, zero emissions, and zero congestion.
Security Operations27 days ago
Full TimeRemoteTeam 10,001+Since 1908H1B Sponsor
Senior Cybersecurity Engineer developing secure platforms for GM's Cybersecurity Team
AWSAzureCloudCyber SecurityDistributed SystemsGoogle Cloud PlatformLinuxRust
Information Security Operations Engineer
BounteousCreating digital solutions for today's challenges and tomorrow's opportunities.
Security Operations27 days ago
ContractRemoteTeam 501-1,000Since 2003H1B Sponsor
Open this job to view full details and requirements.
United States