Apply

Ready to go for it?

AI Apply speeds things up—apply directly if you prefer.

FREE ACCESS
5,000–10,000 jobs/day
Scoutfield Logo

See all jobs on Scoutfield

Search thousands of fresh jobs every day.

Discover
  • Fresh listings
  • Fast filters
  • No subscription required
Create a free account and start exploring right away.
11:11 SYSTEMS

Security Engineer

11:11 SYSTEMS

. Support SOC Management in setting tactical and operational goals and developing policies and procedures for detection, assessment, reporting, and response to security events .

Posted 9/19/2026full-timeRemote • United StatesMid-LevelSeniorWebsite

Core Competencies

Role fit
Core Competencies

Use this summary to align your resume positioning with the role.

Demonstrates expertise in incident response, security operations, and the development of detection rules and automation workflows across SIEM and SOAR platforms. Proficient in building and maintaining security stacks, with a strong focus on customer engagement and operational efficiency.

Highest-signal resume keywords
SIEM ExperienceEDR ExperienceSOAR ExperiencePython ScriptingLinux Administration

ATS Keywords

Tailor your resume
Applicant Tracking System Keywords

Tip: use these terms in your resume and cover letter to boost ATS matches.

Hard Skills
Incident ResponseDetection Rules DevelopmentNetwork ProtocolsPacket AnalysisSecurity ArchitectureKQL Query DevelopmentVulnerability ScanningThreat IntelligenceAutomation WorkflowsProcess Improvement
Soft Skills
Excellent CommunicationProblem-SolvingInterpersonal Skills
Tools & Technologies
Azure SentinelCortex XDRTenableKubernetesPalo Alto ProductsThreatXSOAR PlatformsSIEM PlatformsWAF PlatformsSecurity Frameworks
Certifications & Qualifications
Security+CySA+CASP+CISSPGCIH
Industry Keywords
Information SecurityCybersecuritySOC OperationsTelecom SecurityEnterprise Security

Tech Stack

Tools & technologies
AzureCyber SecurityFirewallsKubernetesLinuxPython

About the role

Key responsibilities & impact
  • Support SOC Management in setting tactical and operational goals and developing policies and procedures for detection, assessment, reporting, and response to security events
  • Develop and fine-tune detection rules, correlation logic, and automation workflows across SIEM and SOAR platforms
  • Serve as customer-facing escalation support for issues and security incidents escalated from Tier 1 and Tier 2 SOC Analysts
  • Provide first-responder incident-response advisory support for clients experiencing security incidents within the scope of 11:11 Systems' software and systems
  • Own the timeliness and accuracy of critical incident identification, advisement, and reporting internally and to customers
  • Lead and support process-improvement initiatives to advance operational objectives, drive efficiencies, and improve KPIs
  • Drive implementation and continuous improvement of new technologies, capabilities, frameworks, and methodologies
  • Develop and maintain customer-facing security stacks, including SIEM, EDR, SOAR, WAF, and vulnerability scanning, and architect technical improvements
  • Troubleshoot network connectivity and infrastructure issues affecting the Security Operations Team
  • Advise on and help build SOC analyst training programs and provide cross-functional training
  • Monitor emerging threats, risks, and exploits and translate that knowledge into updated SIEM detection rulesets
  • Support service delivery with pre-production reviews for newly onboarded SIEM and EDR customers
  • Participate in an on-call rotation for after-hours support
  • Work in alignment with 11:11 Systems' Code of Business Ethics and Company Values, including responsible data handling and completion of required compliance training

Requirements

What you’ll need
  • 5+ years in information security, including 3+ years in information technology
  • 3+ years' experience with SIEM, EDR, SOAR, and/or vulnerability scanning tools, focusing on Azure Sentinel, Cortex XDR, and Tenable
  • Analyst-level experience in the telecom and/or enterprise cybersecurity industry
  • 1+ years' experience with Python scripting or development
  • 1+ years' experience with Linux administration and troubleshooting
  • Strong understanding of TCP/UDP/IP networking, packet analysis, and networking protocols
  • Experience with enterprise security architecture, detection, and response
  • Mature understanding of industry-standard incident response practices and SOC operations
  • Experience building Azure Sentinel use cases, analytics rules, and workbooks, including KQL query development
  • Experience with Kubernetes
  • Experience with Palo Alto products, including Cortex XDR, Panorama, and next-generation firewalls
  • Experience with ThreatX or similar WAF platforms
  • Active certifications such as Security+, CySA+, CASP+, CISSP, and/or GCIH
  • Working knowledge of security frameworks such as ISO, NIST, and CIS
  • Familiarity with Intelligence Driven Defense, Cyber Kill Chain, and/or MITRE ATT&CK
  • Up-to-date knowledge of attacker tactics, techniques, and procedures
  • Excellent communication, problem-solving, and interpersonal skills for customer- and team-facing work
  • Must be a US Citizen and legally eligible to work in the US without visa sponsorship
  • Ability to perform each essential function satisfactorily

Benefits

Comp & perks
  • 24/7 monitoring, support, and escalation for customers
  • On-call rotation for after-hours support
  • Required compliance training
  • Reasonable accommodation for qualified individuals with disabilities