SecOps IR Engineer

Posted 7 Days Ago
Be an Early Applicant
Tel Aviv, ISR
In-Office
Mid level
Software
The Role
Own incident detection, triage, investigation, containment, and post-incident reviews across enterprise infrastructure and browser platforms. Develop and tune SIEM, EDR, and cloud security detections; hunt for threats; investigate Wiz and AWS CloudTrail findings; and automate alert enrichment, triage, and response using SOAR platforms. Maintain runbooks, incident workflows, dashboards, integrations, and documentation while collaborating with engineering teams on remediation.
Summary Generated by Built In
Description

Island is the ideal environment for enterprise work, where security is everywhere without ever getting in the way.

The Island Enterprise Platform unifies AI enablement, network access, data protection, identity, and endpoint control into one coherent workspace—so organizations get universal visibility and control, and users get a fast, fluid, beautifully simple experience. It's not just a better way to secure work. It's a better way to work. Backed by investors like Coatue Management, Insight Partners, and Sequoia Capital, and trusted by some of the largest, most respected enterprises on the planet, Island is redefining what the modern workplace can be.

Come join us in building something that's already changing how the world works.

As a Security Operations Engineer at Island, you will be a core member of the SecOps team, owning incident detection, triage, and response across Island's infrastructure and enterprise browser platform. You will work closely with the SecOps Lead to mature our IR capabilities, build the automation and tooling that power our operational workflows, and help keep Island and its customers ahead of real-world threats.

This is a hands-on, build-and-operate role - ideal for someone who is equally comfortable writing a detection rule, investigating a live incident, and shipping a Torq workflow before end of day.

Key Responsibilities

  • Incident Response: Lead and participate in the full incident lifecycle - detection, triage, investigation, containment, and post-mortem. Own runbooks and ensure they reflect current threat landscape and tooling.
  • Detection Engineering: Develop, tune, and maintain detection rules across SIEM, EDR, and security audits. Minimize false positives; maximize signal value.
  • Security Automation: Build and improve automated response workflows using platforms like Torq; reduce manual toil on alert triage, enrichment, and escalation paths.
  • Threat Monitoring & Hunting: Continuously monitor the environment for anomalies and indicators of compromise; proactively hunt for threats aligned to our threat model.
  • Cloud Security Operations: Investigate and triage findings from cloud-native security tooling (Wiz, AWS CloudTrail); collaborate with engineering teams on remediation of infrastructure-level issues.
  • Tooling & Integrations: Contribute to the ongoing development of the SecOps toolchain - integrating alert sources, building dashboards, and improving the Jira-based alert center.IR Documentation: Maintain incident.io flows, response playbooks, and post-incident reports; contribute to the team's runbook hub.
Requirements
  • 3+ years of hands-on experience in security operations, incident response, or detection engineering.
  • Practical experience with SIEM, EDR, and cloud security platforms - Wiz, Coralogix, or equivalents.
  • Proficiency in scripting and automation; experience building or extending security automation workflows (Torq, Tines, SOAR, or similar).
  • Strong grasp of attacker techniques, common detection evasion methods, and incident investigation methodology.
  • Ability to work independently and drive initiatives end-to-end; comfortable in a fast-moving environment with shifting priorities.
  • Experience with threat intelligence operationalization is a plus.
  • Familiarity with compliance frameworks (SOC2 or equivalent) is a plus.

Skills Required

  • 3+ years of hands-on experience in security operations, incident response, or detection engineering
  • Practical experience with SIEM, EDR, and cloud security platforms such as Wiz, Coralogix, or equivalent tools
  • Proficiency in scripting and automation
  • Experience building or extending security automation workflows using Torq, Tines, SOAR, or similar platforms
  • Strong understanding of attacker techniques, common detection evasion methods, and incident investigation methodology
  • Ability to work independently and drive initiatives end-to-end in a fast-moving environment with shifting priorities
  • Experience with threat intelligence operationalization
  • Familiarity with compliance frameworks such as SOC 2 or equivalent

Island Compensation & Benefits Highlights

The following summarizes recurring compensation and benefits themes identified from responses generated by popular LLMs to common candidate questions about Island and has not been reviewed or approved by Island.

  • Fair & Transparent Compensation Pay is described as potentially competitive for certain roles, with high on-target earnings figures and market-level total compensation snapshots mentioned for both sales and some non-sales functions.
  • Equity Value & Accessibility Equity is positioned as a meaningful component in some offers, and an employee secondary event is described as providing liquidity for staff, which can materially increase total rewards for eligible employees.
  • Wellbeing & Lifestyle Benefits Core benefits and on-site perks are described in at least one job-posting style snippet, including medical/dental/vision coverage, disability coverage, paid time off, company holidays, daily lunches, and gym/wellness access for HQ-based employees.

Island Insights

Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
HQ: Dallas, TX
109 Employees
Year Founded: 2020

What We Do

What if the enterprise had complete control over the browser? What would it mean for security, for productivity, for work itself? Introducing Island, the Enterprise Browser - the ideal enterprise workplace, where work flows freely while remaining fundamentally secure. With the core needs of the enterprise naturally embedded in the browser itself, Island gives organizations complete control, visibility, and governance over the last mile, while delivering the same smooth Chromium-based browser experience users expect. Led by experienced leaders in enterprise security and browser technology and backed by leading venture funds -- Insight Partners, Sequoia Capital, Cyberstarts and Stripes Capital -- Island is redefining the future of work for some of the largest, most respected enterprises in the world. Welcome to work as it should be.

Similar Jobs

Tastewise Logo Tastewise

Product Designer

Artificial Intelligence • Big Data • Food • Retail • Software • Generative AI • Big Data Analytics
Hybrid
Tel Aviv, ISR
120 Employees

monday.com Logo monday.com

Executive Assistant

Artificial Intelligence • Productivity • Sales • Software
Hybrid
Tel Aviv, ISR
3155 Employees

monday.com Logo monday.com

Consultant

Artificial Intelligence • Productivity • Sales • Software
Hybrid
Tel Aviv, ISR
3155 Employees

Navan Logo Navan

Strategy & Operations Lead

Fintech • Information Technology • Payments • Productivity • Software • Travel • Automation
Easy Apply
Hybrid
Tel Aviv, ISR
3300 Employees

Similar Companies Hiring

Kepler  Thumbnail
Artificial Intelligence • Fintech • Software
New York, New York
9 Employees
Onshore Thumbnail
Artificial Intelligence • Fintech • Software • Financial Services
New York, New York
60 Employees
Revel.io Thumbnail
Aerospace • Hardware • Robotics • Software
US
50 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account