Apply

Ready to go for it?

AI Apply speeds things up—apply directly if you prefer.

FREE ACCESS
5,000–10,000 jobs/day
Scoutfield Logo

See all jobs on Scoutfield

Search thousands of fresh jobs every day.

Discover
  • Fresh listings
  • Fast filters
  • No subscription required
Create a free account and start exploring right away.
Reinsurance Group of America, Incorporated

Staff SOC Engineer – Security Telemetry, Detection Platforms

Reinsurance Group of America, Incorporated

. Administer and engineer improvements to enterprise security telemetry and detection platforms, including SIEM, EDR, SOAR, and data pipeline solutions .

Posted 9/21/2026full-timeRemote • Missouri • United StatesLead💰 $126,710 - $188,840 per yearWebsite

Core Competencies

Role fit
Core Competencies

Use this summary to align your resume positioning with the role.

Demonstrates expertise in engineering and administering enterprise security telemetry and detection platforms, including SIEM, EDR, and data pipelines. Proficient in implementing secure telemetry patterns, RBAC, and integrating SOC tooling while ensuring effective communication and documentation across teams.

Highest-signal resume keywords
SIEM EngineeringEDR ImplementationData Pipeline DevelopmentRBAC ManagementIncident Response Support

ATS Keywords

Tailor your resume
Applicant Tracking System Keywords

Tip: use these terms in your resume and cover letter to boost ATS matches.

Hard Skills
Security TelemetryDetection EngineeringData Ingestion PipelinesSPL OptimizationCIM MappingControl ValidationMetrics/KPIsAutomation ScriptingAPI IntegrationLog Analysis
Soft Skills
Stakeholder CommunicationDocumentation SkillsAnalytical Problem-Solving
Tools & Technologies
TinesAWSAzureGCPLucidchartsVisioExcelTerraform
Certifications & Qualifications
Splunk Core/CloudCribl Certified Observability EngineerCrowdStrike CCFA/CCFRCISSPGSECGCDACloud+
Industry Keywords
NIST FrameworksMITRE ATT&CKSecure By DesignSOC OperationsTelemetry Patterns

Tech Stack

Tools & technologies
AWSAzureCloudGoogle Cloud PlatformITSMPythonSplunkTerraform

About the role

Key responsibilities & impact
  • Administer and engineer improvements to enterprise security telemetry and detection platforms, including SIEM, EDR, SOAR, and data pipeline solutions
  • Implement secure-by-default telemetry patterns and logging standards across operating systems, cloud, and network data sources
  • Design, build, and maintain high-throughput data pipelines for log routing, enrichment, filtering, and transformation into SIEM, archive, and other destinations
  • Engineer SIEM content including SPL searches, correlation rules, alerts, dashboards, data models, CIM mapping, and RBA where applicable
  • Define and maintain RBAC, least-privilege models, and user provisioning across telemetry and detection platforms
  • Integrate and automate SOC tooling and enterprise systems, including Tines, AWS/Azure/GCP logging, threat intelligence feeds, and ITSM systems
  • Author and maintain system design documents, reference implementations, runbooks, and technical decision records
  • Troubleshoot complex SIEM/EDR and pipeline issues, reduce noise, and close visibility gaps
  • Support incident response through targeted searches, log analysis, root-cause identification, and platform expertise during high-severity events
  • Improve control validation, data quality checks, parsing and field-extraction tests, content regression tests, and platform observability
  • Evaluate emerging telemetry sources, detection approaches, and vendor capabilities; build proofs of concept
  • Support identity, access, and privilege strategies, including API tokens, service accounts, secrets management, SSO/SAML/OIDC
  • Translate post-incident findings into backlog items for pipeline hardening, new log sources, and content tuning
  • Contribute to responsible logging and monitoring for AI-enabled applications and platforms
  • Represent security telemetry and detection engineering for the Global Security Office in technical forums
  • Perform other duties as assigned

Requirements

What you’ll need
  • Bachelor’s degree in arts/sciences (BA/BS) or equivalent experience – Required
  • 6+ years of progressive experience in security/infrastructure engineering or SOC engineering focused on SIEM/EDR, telemetry pipelines, and detection content
  • Demonstrated success deploying and operating SIEM, EDR, SOAR, and data pipeline solutions at enterprise scale, including RBAC, API integrations, and platform hygiene
  • Hands-on experience engineering data ingestion pipelines and normalizing logs from operating systems, AWS, Azure, and network sources
  • Strong technical background and tacit understanding of detection engineering, OCSF modeling, SPL optimization, CIM mapping, and content tuning to reduce ingest volume and improve signal to noise
  • Proven ability to collaborate across security operations, architecture, infrastructure, and product teams; strong stakeholder communication and documentation skills – Required
  • Ability to map and document complex systems and processes, including data lineage and schema/field mappings – Required
  • Familiarity with NIST frameworks, MITRE ATT&CK, and secure by design practices; experience with control validation and metrics/KPIs for continuous improvement – Required
  • Experience supporting 24/7 SOC operations, including on call participation and multi region ingestion scenarios – Required
  • Advanced analytical and problem-solving skills; competency with analysis and diagramming tools such as Lucidcharts, Visio, and Excel – Required
  • Master’s degree in Arts/Sciences (MA/MS) or professional industry certification – Preferred
  • Relevant platform certifications such as Splunk Core/Cloud, Cribl Certified Observability Engineer, or CrowdStrike CCFA/CCFR – Preferred
  • Security certifications such as CISSP, GSEC, GCDA, or Cloud+ – Preferred
  • Experience integrating security telemetry into CI/CD pipelines and applying version control, testing, and staged releases for detections and pipeline changes – Preferred
  • Proficiency in automation and scripting such as Python or PowerShell, and experience with SOAR such as Tines and infrastructure as code such as Terraform – Preferred

Benefits

Comp & perks
  • Annual bonus plan
  • Long-term equity incentive plan eligibility for some positions
  • Health benefits
  • Retirement benefits
  • Other employee benefits
  • Knowledge and experience with diverse colleagues around the world
  • Respectful, welcoming environment that fosters individuality and pioneering thought
  • Career potential and global opportunities