Skip to content

Security Engineer II

115k – 160kNew York, NYSecurity EngineeringOnsite3+ YOE
Summary

Security Engineer II responsible for monitoring and responding to security alerts, administering enterprise security tools, supporting vulnerability and IAM programs, and securing cloud environments. Requires 3+ years in cybersecurity or related fields and scripting experience.

About the role

What you'll do

  • Monitor, investigate, and respond to security alerts and incidents across multiple platforms
  • Improve threat detection capabilities through alert tuning, rule creation, and proactive threat hunting
  • Conduct forensic evidence collection and collaborate with external MDR providers
  • Administer, configure, and maintain enterprise security technologies and infrastructure integrations
  • Troubleshoot platform issues and serve as an operational escalation point
  • Support the vulnerability management program through identification, prioritization, and patch management
  • Support identity and access management initiatives, SSO integrations, and access investigations
  • Secure cloud environments, monitor findings, and implement cloud security controls
  • Develop scripts and API integrations to automate workflows and improve efficiency
  • Partner with the GRC team to provide technical support and documentation for audits

What we're looking for

  • 3+ years of experience in cybersecurity, security operations, systems administration, or a related field
  • Experience investigating security incidents and responding to security alerts
  • Experience administering core enterprise security technologies
  • Demonstrate understanding of endpoint, network, identity, vulnerability, incident, and cloud security
  • Experience with Windows, macOS, and cloud-based environments
  • Ability to analyze logs and security telemetry across multiple systems
  • Experience with scripting or automation using PowerShell, Python, or similar languages
  • Possess strong troubleshooting, analytical, and problem-solving skills

Nice to have

  • Experience with CrowdStrike, Trend Micro, Proofpoint, Qualys, JumpCloud, AWS, Atlassian, KnowBe4, or Automox
  • Experience supporting PCI DSS, SOC 2, or other compliance frameworks
  • Experience with threat hunting, detection engineering, or security automation
  • Experience with cloud security in AWS environments
  • Industry certifications such as Security+, CySA+, GCIH, GCIA, CISSP, or equivalent
Skills
CrowdStrikeTrend MicroProofpointQualysJumpCloudAWSAtlassianKnowBe4AutomoxPowerShellPythonWindowsmacOS
Similar roles at this salary range
All Security Engineering jobs →
Metropolis

Security Engineer II

Security Engineer II responsible for monitoring security alerts, responding to incidents, administering enterprise security tools, and supporting cloud and identity security initiatives. Requires 3+ years in cybersecurity or related fields with strong scripting and troubleshooting skills.

105k – 150kLos Angeles, CASecurity EngineeringOn-site3+ YOEAWSmacOS
Quindar

Information Security System Officer

Enforce and maintain information security policies for CUI systems, ensuring NIST SP 800-171 compliance and CMMC 2.0 accreditation. Coordinate with ISSM, admins, and leadership on risk management, incident response, and continuous monitoring.

95k – 120kArvada, COSecurity EngineeringHybrid2+ YOECMMCSIEM
Cribl

Staff Security Operations Engineer

Lead security operations and threat detection engineering for a remote-first telemetry platform company. Design detection logic, manage incidents, and optimize SIEM/EDR tooling.

128k – 200kUnited StatesSecurity EngineeringRemote7+ YOEEDRKQL
Trail of Bits

Security Engineer 1, Application Security

Security Engineer contributing to application security assessments, vulnerability discovery, and custom tooling development. Owns components of client engagements and drives findings from discovery through delivery.

100k – 160kUnited StatesSecurity EngineeringRemoteEntry levelCGo
Navan

Sr. Security Engineer, Incident Response

Technical lead for incident response across multi-cloud infrastructure. Owns triage, containment, automation, and detection tuning using CrowdStrike, Tines, and Cyberhaven DLP. Requires 5+ years in IR/SOC roles.

113k – 252kNew York, NYSecurity EngineeringOn-site5+ YOEIAMEDR