Platform Security Engineer jobs in United States
cer-icon
Apply on Employer Site
company-logo

TEKsystems · 1 day ago

Platform Security Engineer

TEKsystems is a leading provider of business and technology services, and they are seeking a Senior SOC Engineer to enhance their Security Operations Center. The role involves building detection capabilities, automating security responses, and collaborating with various teams to improve threat identification and response processes.

Information Technology
check
H1B Sponsor Likelynote

Responsibilities

Design and implement comprehensive detection use cases aligned with the MITRE ATT&CK framework
Conduct gap analysis of current detection coverage and develop roadmap to address gaps
Build and tune correlation searches, alerts, and detection logic in Splunk Enterprise Security
Implement Risk-Based Alerting (RBA) methodologies to improve signal-to-noise ratio
Develop detection strategies for multi-cloud environments (AWS, GCP, Azure)
Continuously evaluate and improve detection effectiveness based on SOC feedback
Design and implement automated response playbooks using Splunk SOAR
Build integrations between security tools to enable automated investigation and response workflows
Develop scripts and automation (Python, Bash, PowerShell) to streamline SOC operations
Create reusable automation frameworks that scale across multiple use cases
Collaborate with platform engineering to ensure reliable automation infrastructure
Define what a mature SOC capability looks like using Splunk ES, SOAR, and supporting tools
Identify gaps and shortcomings in current SOC implementation and provide clear remediation guidance
Establish best practices, standards, and frameworks for detection engineering and response
Mentor platform engineering team on SOC-specific requirements and approaches
Contribute to long-term SOC strategy and capability development
Partner with threat intelligence and threat hunting teams to operationalize research into detections
Work with SOC analysts to understand investigation workflows and improve detection quality
Collaborate with platform engineering teams to implement and maintain SOC infrastructure
Participate in incident response activities to validate and refine detection and automation capabilities
Document detection logic, playbooks, and technical architectures

Qualification

SOC ExperienceSIEM ExpertiseDetection EngineeringSecurity AutomationMITRE ATT&CK FrameworkScriptingCloud SecurityAnalytical MindsetSplunk SOARRisk-Based AlertingThreat HuntingInfrastructure AutomationRelevant CertificationsMentoring

Required

SOC Experience: 5+ years in a Security Operations Center environment with exposure to mature SOC operations and best practices
SIEM Expertise: Hands-on experience with Splunk Enterprise Security or comparable enterprise SIEM platforms (building correlation searches, alerts, dashboards, and ES-specific frameworks)
Detection Engineering: Proven experience developing security detections, use cases, and alert tuning methodologies
MITRE ATT&CK Framework: Practical application of MITRE ATT&CK for detection coverage mapping and gap analysis
Security Automation: Experience building automated response workflows and playbooks (SOAR platforms preferred)
Scripting: Strong proficiency in Python, PowerShell, or Bash for automation and integration development
Cloud Security: Understanding of cloud security monitoring and detection across AWS, GCP, and Azure environments
Analytical Mindset: Ability to identify gaps, define clear vision for improvement, and guide teams toward maturity

Preferred

Splunk SOAR (Phantom) hands-on experience
Splunk UEBA or behavioral analytics platform experience
Risk-Based Alerting (RBA) implementation experience
Threat hunting with detection engineering application
Infrastructure automation and CI/CD pipeline knowledge
Experience mentoring or leading detection engineering teams
Relevant certifications (GIAC, CISSP, or similar)

Benefits

Medical, dental & vision
Critical Illness, Accident, and Hospital
401(k) Retirement Plan – Pre-tax and Roth post-tax contributions available
Life Insurance (Voluntary Life & AD&D for the employee and dependents)
Short and long-term disability
Health Spending Account (HSA)
Transportation benefits
Employee Assistance Program
Time Off/Leave (PTO, Vacation or Sick Leave)

Company

TEKsystems

company-logo
At TEKsystems, they understand people. Every year they deploy over 80,000 IT professionals at 6,000 client sites across North America,

H1B Sponsorship

TEKsystems has a track record of offering H1B sponsorships. Please note that this does not guarantee sponsorship for this specific role. Below presents additional info for your reference. (Data Powered by US Department of Labor)
Distribution of Different Job Fields Receiving Sponsorship
Represents job field similar to this job
Trends of Total Sponsorships
2025 (46)
2024 (52)
2023 (33)
2022 (22)
2021 (36)
2020 (53)

Funding

Current Stage
Late Stage

Leadership Team

leader-logo
Ryan Skains
Vice President, TEKsystems Global Services
linkedin
Company data provided by crunchbase