Security Operations Center Engineer jobs in United States
cer-icon
Apply on Employer Site
company-logo

Mercury Insurance · 4 hours ago

Security Operations Center Engineer

Mercury Insurance is a company dedicated to helping people reduce risk and overcome unexpected events. They are seeking a Security Operations Center Engineer to identify, investigate, and escalate alerts to protect sensitive information in a 24/7 environment, manage security monitoring tools, and improve security measures.

Insurance
check
H1B Sponsor Likelynote

Responsibilities

Monitor security tools & systems: Analyze logs, alerts, and data for suspicious activity
Investigate potential threats: Determine if alerts are real incidents and identify vulnerabilities
Supervise all Incident/Security issues, including preliminary triage, troubleshooting and remediation
Gather evidence: Collect and analyze evidence to understand incident scope and impact
Contain the threat and remediate vulnerabilities: Quickly contain the incident to minimize damage, and implement patching, configuration changes, or other measures to address the exploited vulnerabilities
Recover from the incident and report to management: Assist in restoring affected systems and data to their normal state, and keep management informed about security incidents and response efforts
Documentation: Document findings for future reference and improvement, including process roadmaps, change management validations, and user/system impacted incident management and resolutions
Administer SOC/NOC tools: Manage and administer all SOC/NOC Operations center owned tools, including scripting, customizations, report building, alert modifications, automations, and maintenance
Minimize risk and exposure to system security and business interruptions of the company's infrastructure
Participate in disaster recovery and BCP events: Actively participate in disaster recovery and Business Continuity Plan (BCP) events

Qualification

Security Operations experienceIncident response proceduresScriptingAutomationSecurity tools proficiencyGIAC Security Essentials CertificationISACA Certified Information Security ManagerIT infrastructureCritical thinkingAttention to detailDecision-making under pressureCommunication

Required

BS degree in Computer Science, Information Technology, related field; and/or equivalent combination of education or work experience
2-4 years of 24x7x365 Security Operations experience and related technologies
Enterprise Security Operations support experience
Enterprise security document creation
Understanding of IT infrastructure and networking: This includes knowledge of operating systems, network protocols, and basic infrastructure components
Security principles and technologies: Familiarity with common security threats, vulnerabilities, and mitigation strategies like firewalls, intrusion detection/prevention systems (IDS/IPS), and SIEM tools
Scripting and automation: Ability to write basic scripts to automate tasks and generate reports
Incident response procedures: Understanding of established processes for handling security incidents, including containment, eradication, and recovery
Security tools and software: Proficiency in using the specific security tools and software typically employed by a security organization
Experience in using ExtraHop, Qradar, Splunk and/or any other security related tools for the visibility, monitoring, detection, alerting, response, and investigation of security related events
Communication: Clear and concise communication with technical and non-technical audiences, including reporting incidents to management and collaborating with other IT teams (including public speaking, critical business writing skills, process documentation and knowledge base article composure)
Critical thinking and problem-solving: Ability to analyze complex security data, identify root causes of incidents, and develop effective solutions
Attention to detail: Meticulous focus on identifying subtle anomalies and potential threats within vast amounts of data
Decision-making under pressure: Making quick and informed decisions during critical security incidents

Preferred

GIAC Security Essentials Certification
GIAC Security Leadership Certification
ISACA Certified Information Security Manager
Microsoft Certified Systems Engineer: Security
(ISC)2 SCCP
(ISC)2 CISSP
(ISC)2 ISSAP
CCSK4
5 or more years of 24x7x365 Security Operations and related technologies
ServiceNow
SIEM Solutions
TrustWave
Email Protection Solutions
Endpoint Detection & Response Solutions
Microsoft 365 Security Suite
Incident Management Communication tools
CV/CIRT Gov't notification process
Load balancers & Web Application Firewall Solutions
Firewall/router/networking equipment
Web Content Filtering (WSS)
Secure Web Gateway Solutions
ITIL Foundations certifications (V3 or V4)

Benefits

Competitive compensation
Flexibility to work from anywhere in the United States for most positions
Paid time off (vacation time, sick time, 9 paid Company holidays, volunteer hours)
Incentive bonus programs (potential for holiday bonus, referral bonus, and performance-based bonus)
Medical, dental, vision, life, and pet insurance
401 (k) retirement savings plan with company match
Engaging work environment
Promotional opportunities
Education assistance
Professional and personal development opportunities
Company recognition program
Health and wellbeing resources, including free mental wellbeing therapy/coaching sessions, child and eldercare resources, and more

Company

Mercury Insurance

twittertwittertwitter
company-logo
Mercury Insurance has offered quality insurance for personal auto insurance to homeowners insurance to mechanical breakdown protection.

H1B Sponsorship

Mercury Insurance has a track record of offering H1B sponsorships. Please note that this does not guarantee sponsorship for this specific role. Below presents additional info for your reference. (Data Powered by US Department of Labor)
Distribution of Different Job Fields Receiving Sponsorship
Represents job field similar to this job
Trends of Total Sponsorships
2025 (22)
2024 (23)
2023 (14)
2022 (15)
2021 (8)
2020 (13)

Funding

Current Stage
Public Company
Total Funding
unknown
1985-11-29IPO

Leadership Team

T
Ted Stalick
SVP & CFO
linkedin
V
Victor Joseph
President & Chief Operating Officer
linkedin
Company data provided by crunchbase