Senior Security Engineer

Posted 7 Days Ago
Be an Early Applicant
Raleigh, NC
In-Office
50K-120K Annually
Senior level
Information Technology • Security • Cybersecurity
The Role
As a Senior Security Engineer, you will design and optimize defense platforms, lead technical investigations, and support incident response efforts, enhancing corporate security monitoring capabilities.
Summary Generated by Built In

Come work at a place where innovation and teamwork come together to support the most exciting missions in the world!

As a Senior Security Engineer at Qualys, you will play a critical role within our Cyber Fusion Center, driving the design, engineering, and optimization of our defense platforms while leading key initiatives in security engineering, threat detection, and incident response to elevate our platform and corporate security monitoring capabilities.

You will lead the Incident Response (IR) program during US hours, coordinating with SecOps, Legal, and other internal teams at Qualys based on the nature of each incident. You will serve as the primary point of contact for customer communications, initiate external investigations when necessary, and drive the end-to-end IR process to ensure timely and effective resolution.

Key Responsibilities:

Defense Engineering & Automation

  • Design, onboard, and normalize data sources into the Elastic SIEM platform.
  • Engineer and optimize log ingestion pipelines to improve search performance and query efficiency.
  • Develop advanced detection rules mapped to the MITRE ATT&CK framework.
  • Continuously tune detection logic to minimize false positives and enhance signal-to-noise ratio.
  • Leverage scripting languages (Python, PowerShell, Bash) to automate evidence collection, enrich alerts, and streamline repetitive tasks.
  • Integrate threat intelligence feeds into SIEM/SOAR workflows to support proactive detection and response.

Incident Response Support:

  • Engage in technical investigations
  • Lead and support technical investigations during security incidents across the enterprise.
  • Build and deploy automated response playbooks within SOAR platforms.
  • Collaborate with Legal, Compliance, and Customer teams during incident response cycles, ensuring consistent communication and transparency.
  • Generate comprehensive technical incident reports for internal and external stakeholders.

Qualifications

Required Experience:

  • 5–8 years of experience in security engineering, incident response, or SOC operations.
  • Proven hands-on experience with:
    • SIEM, SOAR, and EDR/XDR platforms.
    • Log management and threat intelligence integration.
  • Demonstrated ability to lead technical investigations and respond to complex security incidents.

Technical Skills:

  • Deep understanding of TCP/IP, Windows/Linux internals, and cloud environments (AWS, Azure, OCI).
  • Proficient in writing and maintaining scripts using Python, PowerShell, or Bash.
  • Experience with Elastic SIEM, malware sandboxing, and network packet analysis tools (e.g., Wireshark).

Preferred Qualifications:

  • Experience working in a SOC, MSSP, or cyber advisory function.
  • Familiarity with scripting or data querying languages (e.g., Python, SQL) a plus.
  • Passion for learning and applying cloud security best practices (OCI, AWS, Azure).
  • Industry-recognized certifications (e.g., CISSP, GCIH, GCIA, GCFA).

Qualys is an Equal Opportunity Employer, please see our EEO policy.

Top Skills

AWS
Azure
Bash
Edr
Elastic Siem
Oci
Powershell
Python
SIEM
Soar
Tcp/Ip
Xdr
Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
2,736 Employees
Year Founded: 1999

What We Do

Qualys, Inc. (NASDAQ: QLYS) is a pioneer and leading provider of disruptive cloud-based security, compliance and IT solutions with more than 10,000 subscription customers worldwide, including a majority of the Forbes Global 100 and Fortune 100. Qualys helps organizations streamline and automate their security and compliance solutions onto a single platform for greater agility, better business outcomes, and substantial cost savings.
The Qualys Cloud Platform leverages a single agent to continuously deliver critical security intelligence while enabling enterprises to automate the full spectrum of vulnerability detection, compliance, and protection for IT systems, workloads and web applications across on premises, endpoints, servers, public and private clouds, containers, and mobile devices. Founded in 1999 as one of the first SaaS security companies, Qualys has strategic partnerships and seamlessly integrates its vulnerability management capabilities into security offerings from cloud service providers, including Amazon Web Services, the Google Cloud Platform and Microsoft Azure, along with a number of leading managed service providers and global consulting organizations. For more information, please visit http://www.qualys.com

Similar Jobs

In-Office or Remote
4 Locations
3780 Employees
121K-237K Annually
In-Office
4 Locations
20252 Employees
In-Office
4 Locations
8926 Employees
98K-163K Annually
In-Office
4 Locations
49681 Employees

Similar Companies Hiring

Scrunch AI Thumbnail
Software • SEO • Marketing Tech • Information Technology • Artificial Intelligence
Salt Lake City, Utah
Credal.ai Thumbnail
Software • Security • Productivity • Machine Learning • Artificial Intelligence
Brooklyn, NY
Standard Template Labs Thumbnail
Software • Information Technology • Artificial Intelligence
New York, NY
10 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account