CrawlJobs Logo

Security Engineer (Security Operations)

United States, Oakland Employment contract 159000.00 - 201000.00 USD / Year · Job Posted May 16, 2026
Apply Position
Job Link Share

Job Description

Everlaw is looking for a Security Engineer. Reporting to the Manager, Security Engineering, you will be a member of the technical security operations team at the company. Security is one of the main strategic pillars at Everlaw, and we are looking for someone to help us execute on that strategy and protect our most valuable asset--our customer data. Everlaw's customers entrust us with some of their most sensitive information, and it takes dedication and care to protect it. Some of the world's most high-profile cases are managed using the Everlaw Platform. We set a high bar to do what's right by our users. Tackling litigation with technology presents deep challenges. Data is spread across distributed systems, stored in varied databases, housed at different physical locations. Keeping our users' data safe requires a passion for learning new technologies because we have to be good custodians no matter whether data flows through a Web application, gets stored in a data warehouse, or is used to train the latest machine learning algorithms. We are dedicated to continuously learning and improving our processes to achieve our mission. Security Engineering supports teams across Everlaw in creating and operating a secure platform that meets the security and compliance requirements of our customers and company. We collaborate, build, and use technology to make it easy to do the right thing. We seek to understand people's needs and strive to protect confidentiality, integrity, and availability of information. At Everlaw, our mission is to promote justice by illuminating truth. Our company culture is open and vibrant and we’re committed to the professional growth of our team members, offering an annual learning and development stipend and regular check-ins with managers regarding career goals. If you’re looking for a place that values passion, integrity, thinking big, and a desire to learn, we’d love to hear from you! Think you’re missing some of the skills and are hesitant to apply? We do not believe in the ‘perfect’ candidate and encourage you to apply if you feel you can bring value to our team. This is a full-time, exempt position located onsite (3 days/week in office) in Oakland, California.

Job Responsibility

  • Support the team to drive improvements in our vulnerability management, threat detection, and incident response capabilities, contributing your perspective to help the team grow
  • Triage security events and respond to security incidents, taking action to contain them, guiding recovery of normal operations, and reducing the likelihood of recurring threats
  • Strengthen threat detection and response systems that safeguard both our cloud infrastructure, third-party integrations, and platform services
  • Develop and refine security processes, procedures, and runbooks that allow our security posture to scale as the company grows
  • Manage and tune AWS security services (IAM, Security Hub, GuardDuty, Config) for effective threat detection, access control, and continuous monitoring
  • Collaborate with Engineering, Engineering Operations, Corporate Security, and GRCT teams to help meet our operational security commitments by probing for vulnerabilities, assessing risk, and advising on how to respond to them
  • Advise other engineers and partners on building a secure platform by leading threat modeling sessions, conducting security design reviews, and reviewing code and configuration changes for security concerns
  • Proactively solve security challenges and foster a security mindset with innovative, security-conscious coworkers across Everlaw

Requirements

  • At least 1-3 years of experience working in a security-focused role
  • Experience in handling security events and incidents from initial triage through to remediation
  • Programming skills in at least one scripting language (like Python) and are comfortable navigating a Linux environment
  • Experience with security tools like vulnerability scanners (Nessus/Trivy), HIDS/NIDS (Wazuh/Zeek), and SIEM/SOAR platforms (Splunk/ELK/Datadog)
  • Understand the vulnerability lifecycle and have experience detecting, prioritizing, and remediating vulnerabilities
  • Written detection rules and response processes for security specific events
  • Can explain technical concepts without jargon, keeping security relatable so that others can solve problems with your support
  • Balance strong protections with enabling people to do their work, finding ways to improve security without blocking innovation
  • Authorized to work in the United States without restrictions

Nice to have

  • Previous experience with SaaS environments and distributed systems
  • Programming skills in at least one compiled language (like Java)
  • Experience with AWS, Terraform, Ansible, git, and other infrastructure, development, and operations tools

What we offer

  • Equity program
  • 401(k) retirement plan with company matching
  • Health, dental, and vision
  • Flexible Spending Accounts for health and dependent care expenses
  • Paid parental leave and approximately 10 days (80 hours) per year of sick leave
  • Seventeen paid vacation days plus 11 federal holidays
  • Membership to Modern Health to help employees prioritize mental health and wellness
  • Annual allocation for Learning & Development opportunities and applicable professional membership dues
  • Company-sponsored life and disability insurance
  • Work in Downtown Oakland, just steps from the BART line and dozens of restaurants
  • You will get a powerful Linux laptop and be able to customize your desk setup
  • Bond over team lunches and out-of-the-box events
  • Time off for company-sponsored volunteer events and 4 paid hours per quarter to volunteer at a charitable organization of your choice
  • Take advantage of learning and career development opportunities

Looking for more opportunities?

Search for other job offers that match your skills and interests.

Similar Jobs for

Security Engineer (Security Operations)

8 matching positions

Senior Security Engineer, Security Operations

The senior security engineer role provides a unique opportunity to shape the sec...
Location
Location
United States , REMOTE; SAN FRANCISCO; ROSEVILLE; LEHI; WEST PALM BEACH; IRVINE
Salary
Salary:
146000.00 - 170000.00 USD / Year
goodleap.com Logo
GoodLeap
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Strong communicator with the ability to lead technical architecture discussions, drive technical decisions, and effectively communicate with non-technical audiences
  • Expertise in security event management, monitoring, threat hunting, incident response, playbook creation, orchestration/automations
  • Experience with threat modeling methodologies
  • Expertise with EDR solutions/platforms, such as CrowdStrike, S1, Palo Alto Cortex EDR
  • Experience with AWS services, including KMS, SST, Container Registry, ELBs, Lambda, API Gateway, CloudTrail, and IAM (knowledge of GCP and/or Azure is a plus)
  • Proven ability to establish credibility and build trust with business, engineers, and operational staff
  • Experience designing, configuring, and implementing security and fraud monitoring for core enterprise systems, e.g., ERP, HCM, Salesforce
  • Experience working with and creating solutions based AI and ML toolsets – e.g., creation of AI skills, agents, MCP clients, vibe coding
  • Strong understanding of both human and non-human identity management and common enterprise and consumer authentication standards and use cases
  • Practical experience with CI/CD pipelines and DevOps tools, including Infrastructure-as-Code (IaC) tools like Terraform, Pulumi, or CDK
Job Responsibility
Job Responsibility
  • Lead, participate in, and contribute to security and fraud monitoring, detection, and response activities, inclusive of investigations, threat hunting,etc. Create playbooks for specific incident response scenarios
  • Identify potential misuse and abuse cases in enterprise systems, propose solutions to detect these scenarios, and identify and implement monitoring and detection solutions for such scenarios
  • Support or develop components of the security analytics platform
  • Support embedded (product) security team
  • Support general security operations team with vulnerability management, tools management, and more
What we offer
What we offer
  • bonus
  • equity
  • Fulltime
Read More
Arrow Right

Staff Security Software Engineer - Security Operations

The Role GM’s Cybersecurity Team safeguards the company’s global information ...
Location
Location
United States , Austin
Salary
Salary:
Not provided
gm.com Logo
General Motors
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • 8+ years in software engineering with a focus on distributed systems, security integrations, and data platforms
  • Deep expertise building event-driven, horizontally scalable services and contract-first APIs
  • Track record productizing AI in security workflows (multi-agent patterns, RAG at scale, evaluation harnesses, guardrails, red-teaming)
  • Cloud architecture depth (Azure/AWS/GCP), including networking, Kubernetes, service meshes, observability stacks, and IaC at scale
  • Data platform expertise: streaming (Kafka/Event Hub/PubSub), vector/search (pgvector/FAISS/Pinecone), schema/versioning, governance/lineage
  • Demonstrated org-wide influence: authored standards, drove cross-team adoption, led multi-quarter programs to successful outcomes
  • Exceptional communication with executives
  • ability to frame risk, ROI, and tradeoffs succinctly
Job Responsibility
Job Responsibility
  • Set the reference architecture for security data integration and AI orchestration (agents, policy-guard railed workflows, governance)
  • Lead cross-org programs that unify SIEM/EDR/IAM/SSPM/CSPM/ITSM/cloud data models and establish single sources of truth
  • Operationalize AI at scale with safety, privacy, and governance—including data retention, PII controls, model routing, evaluation, and fallback strategies
  • Drive cost/performance optimization (throughput, latency, storage tiering, vector index strategies) for high-volume security telemetry
  • Influence vendor strategy and negotiate integration roadmaps
  • guide build-vs-buy decisions and multi-year investments
  • Mentor/coach Staff/Senior engineers
  • build a culture of design excellence, pragmatic risk management, and measurable outcomes
  • Communicate upward with crisp executive narratives, metrics, and business impact framing
What we offer
What we offer
  • Relocation benefits
  • Fulltime
Read More
Arrow Right

Security Operations Engineer - Program Operations

The Cloud & AI organization accelerates Microsoft’s mission and bold ambitions t...
Location
Location
India , Hyderabad
Salary
Salary:
Not provided
https://www.microsoft.com/ Logo
Microsoft Corporation
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Bachelor's Degree in Business, Operations, Supply Chain, Logistics, Computer Science, or related field AND 2+ years’ experience in program management, security operations, supply chain OR equivalent experience
  • 2+ years’ experience in operations, support or program management
  • 2+ years’ experience in supply chain or logistics management
  • 2+ years’ experience in overseeing large budgets, invoicing, and cost management
  • 1+ years’ experience in vendor management
  • 1+ years’ experience in data management and analytics (PowerBI, SQL, Kusto)
  • Prior experience leading or contributing to a large-scale, enterprise-wide product or service
Job Responsibility
Job Responsibility
  • Define, communicate and measure key success metrics to monitor program health
  • Create high quality, customer-facing documentation for onboarding, program processes, and self-help solutions
  • Track supplier performance against program success metrics, and address any gaps in service
  • Foster an environment of learning to develop product and service experts within the team
  • Implement telemetry and reporting pipelines across the program ecosystem to monitor program health, measure success, and inform roadmap planning
  • Effectively communicate status to key stakeholders, and make data-driven decisions
  • Manage invoicing, receipt and cost oversite for the secure device program
  • Generate demand a cost forecasts across multiple organizations across Microsoft, partnering closely with Finance Managers, hardware suppliers, and Business Managers
  • Manage procurement, distribution, and logistics for our global supply chain
  • Partner with Hardware OEMs to ensure device availability inventory health
  • Fulltime
Read More
Arrow Right

Senior Security Software Engineer - Security Operations

The Role GM’s Cybersecurity Team safeguards the company’s global information ass...
Location
Location
United States , Warren
Salary
Salary:
125200.00 - 158600.00 USD / Year
gm.com Logo
General Motors
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • 5-7 years in software security engineering
  • advanced proficiency in modern programming languages
  • Expert in API development, microservices, event streaming, and idempotent integration patterns
  • Experience deploying software using any modern CI/CD pipeline and automated delivery practices
  • Hands-on with security tooling integrations (e.g., SIEM, EDR, SSPM)
  • Proven AI integration experience: LLM agents, embeddings, vector databases, RAG, prompt engineering
  • Cloud proficiency (Azure/AWS/GCP) and IaC (Terraform/Bicep/ARM/CloudFormation)
  • Data engineering fluency: ETL/ELT, schema design, normalization/enrichment
  • formats (JSON, YAML, syslog, STIX/TAXII)
  • Excellent cross-functional communication
Job Responsibility
Job Responsibility
  • Own architecture & delivery for complex integration services (APIs, microservices, event-driven workflows) with production SLIs/SLOs
  • Build AI-driven workflows (RAG, summarization, classification, agents) that augment investigations, triage, and orchestration
  • Create reusable connectors bridging SIEM/EDR/IAM/SSPM/ITDR/ITSM and cloud telemetry with robust error handling, retries, and DLQs
  • Implement security automation (SOAR-like playbooks) that enrich alerts and trigger deterministic + AI-assisted responses
  • Harden and observe services with CI/CD, automated testing, performance profiling, metrics, and incident runbooks
  • Mentor engineers and lead technical design reviews, coding standards, and reference implementations
  • Translate requirements into clear epics/roadmaps
  • align stakeholders and deliver on time with quality
What we offer
What we offer
  • medical
  • dental
  • vision
  • Health Savings Account
  • Flexible Spending Accounts
  • retirement savings plan
  • sickness and accident benefits
  • life insurance
  • paid vacation & holidays
  • incentive pay program based on company, job level, and individual performance
  • Fulltime
Read More
Arrow Right

Senior Security Engineer and Principal Security Engineer

The Microsoft Windows Security team is looking for a learn-it-all security engin...
Location
Location
United States , Redmond
Salary
Salary:
119800.00 - 234700.00 USD / Year
https://www.microsoft.com/ Logo
Microsoft Corporation
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Master's Degree in Statistics, Mathematics, Computer Science, or related field AND 3+ years experience in security or related field OR Bachelor's Degree in Statistics, Mathematics, Computer Science, or related field AND 4+ years experience in security or related field OR equivalent experience
  • Ability to meet Microsoft, customer and/or government security screening requirements
  • Microsoft Cloud Background Check upon hire/transfer and every two years thereafter
  • 2+ years identifying vulnerabilities in operating systems and/or native (C/C++) applications
  • 5+ years of experience in a software engineering or security-related engineering
  • Demanstrated experience in security research, especially around vulnerability discovery
  • Experience exploiting bugs and bypassing security mitigations in operating systems
  • Familiarity with Microsoft Windows architecture
Job Responsibility
Job Responsibility
  • Participate in security reviews to identify and mitigate risk in Microsoft products, including design reviews, code reviews, and fuzzing
  • Be the security contact for teams building new innovative products and technologies in the next version of Windows and devices
  • Identify security vulnerabilities in a wide variety of key OS features such as network protocols, security features, and Microsoft devices
  • Leverage a broad and current understanding of security to devise new protections
  • Interact with the external security community and security researchers
  • Collaborate with product teams to improve security, and articulate the business value of security investments
  • Fulltime
Read More
Arrow Right

Security Operations Engineer

This Engineer role, part of GSOC's Security Operations department, is responsibl...
Location
Location
United States , Tucker
Salary
Salary:
99360.00 - 173900.00 USD / Year
gasoc.com Logo
Georgia System Operations
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Bachelor's degree in Electrical Engineering, Computer Engineering, Information Systems/Technology, or a related field
  • Engineer III: Minimum of 6 years of experience in cyber security, information assurance, or related positions
  • Engineer IV - V: Minimum of 10 years of experience in cyber security, information assurance, or related positions
  • Experience configuring, and analyzing local and wide area networks, intranets, extranets, and IP addressing
  • Experience performing system hardening, patch management, and configuration management
  • Experience designing, programming, or analyzing computer architectures and operating systems
  • Experience in Security Patch Management, Configuration Management, Firewall Management, Disaster Recovery, Incident Management, and Information Management desired
  • Experience in providing 24x7 support for real-time data communications systems and troubleshooting system problems involving real-time data communications systems desired
  • Experience with virtual environments, VMWare ESXi desired
  • Experience with Physical Access Control Systems (PACS), Honeywell, Genetec desired
Job Responsibility
Job Responsibility
  • Protecting cyber assets that support GSOC and GTC's digital operations
  • Conducting cyber asset assessments
  • Ensuring accurate identification and documentation of assets subject to NERC CIP requirements
  • Supporting a secure and reliable Bulk Electric System across Georgia
  • Maintaining compliance
  • Assisting with mitigation strategies
  • Supporting audits and evidence collection
  • Ensuring systems and networks used for operations are managed securely and in compliance with NERC CIP standards
  • Supporting and implementing GSOC's physical and cyber security programs
  • Identifying, designing, and implementing innovative solutions and uses of security technologies
What we offer
What we offer
  • Comprehensive medical, dental, and vision coverage
  • Strong retirement program
  • Career development
  • Flexible work schedules
  • Fulltime
Read More
Arrow Right

Security Operations Engineer

The Cloud & AI organization accelerates Microsoft's mission and bold ambitions t...
Location
Location
United States , Redmond
Salary
Salary:
100600.00 - 199000.00 USD / Year
https://www.microsoft.com/ Logo
Microsoft Corporation
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Master's Degree in Statistics, Mathematics, Computer Science, or related field AND 1+ year(s) experience in software development lifecycle, large-scale computing, threat modeling, cyber security, anomaly detection, Security Operations Center (SOC) detection, threat analytics, security incident and event management (SIEM), information technology (IT), or operations incident response
  • OR Bachelor's Degree in Statistics, Mathematics, Computer Science, or related field AND 2+ years experience in software development lifecycle, large-scale computing, threat modeling, cyber security, anomaly detection, Security Operations Center (SOC) detection, threat analytics, security incident and event management (SIEM), information technology (IT), or operations incident response
  • OR equivalent experience
  • Candidates must be able to meet Microsoft, customer and/or government security screening requirements
  • Microsoft Cloud Background Check
Job Responsibility
Job Responsibility
  • Ensure Secure Access & Compliance: Oversee identity governance for Exchange Online, guest lifecycle, and Azure Virtual Desktop while maintaining strict security standards
  • Drive Identity Lifecycle Management: Administer and troubleshoot Active Directory and Azure AD, including authentication flows, GPOs, OUs, and secure access provisioning
  • Lead Advanced Troubleshooting & Escalations: Resolve complex identity-related incidents and provide Tier 2/Tier 3 support for critical issues
  • Enable Automation & Innovation: Develop PowerShell scripts, build workflows with Power Automate/Apps, and integrate ServiceNow/IcM for operational efficiency
  • Enable automation using AI powered workflows
  • Fulltime
Read More
Arrow Right

Security Operations Engineer

We’re looking for a Security Operations Engineer who will own the day-to-day ope...
Location
Location
United States , Coppell
Salary
Salary:
Not provided
island.io Logo
Island
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • 1–3 years of experience in security operations, IT security, or a related field (or equivalent hands-on experience through internships, labs, or personal projects)
  • Hands-on familiarity with vulnerability scanning tools such as Burp Suite, Nessus, Tenable, or similar (experience with at least one required)
  • Basic understanding of AWS cloud infrastructure and containerized environments (Kubernetes, Docker, Chainguard)
  • Exposure to structured compliance environments
  • familiarity with FedRAMP, NIST 800-53, or similar frameworks is a strong plus
  • Strong organizational skills with the ability to manage multiple open findings and parallel workstreams
  • A curious, self-driven mindset with a desire to expand beyond a defined lane over time
  • Scripting or automation skills (Python, Bash) are a plus
  • Clear and effective communication skills across Slack, Zoom, and email in a distributed team environment
  • US citizenship and ability to work within FedRAMP-regulated environments
Job Responsibility
Job Responsibility
  • Operate and maintain vulnerability scanning tools across web applications (Burp Suite), infrastructure/network (Nessus), and container/runtime environments (Sysdig)
  • Run scans on a regular cadence and on-demand for releases, audits, and special initiatives
  • Support FedRAMP continuous monitoring (ConMon) activities across US GovCloud environments
  • Assist with evidence collection and compliance tracking, including familiarity with NIST 800-53 controls and tools like eMASS
  • Triage scan results, identify and filter false positives, prioritize findings by risk, and open/track remediation tickets in Jira
  • Partner with engineering teams to ensure SLA adherence and timely remediation
  • Produce reports and compliance artifacts for internal stakeholders and external auditors
  • Contribute to and maintain the compliance evidence repository
  • Improve scanning workflows through automation, scheduling, alerting, and result normalization
  • Collaborate closely with the SecOps Lead and broader product security team, contributing to sprint planning and cross-functional initiatives
What we offer
What we offer
  • Comprehensive health, dental, and vision coverage
  • 401(k) with company match
  • Generous paid time off and company holidays
  • Professional development opportunities
  • Collaborative, high-performance culture
  • Modern office environment in Dallas, TX
  • Competitive compensation and meaningful equity
  • Fulltime
Read More
Arrow Right