2

Remote Soar Engineer Jobs in Oregon (NOW HIRING)

We care deeply about reducing noise, improving analyst efficiency through automation and SOAR, and ... Knowledge of machine learning for threat detection #LI-remote

New

SecOps Engineer

OR · On-site +1

Build common response workflows to expedite investigation and response using AI and SOAR Technology ... Remote-US Time zone requirements The team operates on the East/West coast time zones. Travel ...

Build common response workflows to expedite investigation and response using AI and SOAR Technology ... Remote-US Time zone requirements The team operates on the East/West coast time zones. Travel ...

Solutions Architect (REMOTE)

OR · Remote

$63 - $83/hr

Cyware's Cyber Fusion platform integrates SOAR and TIP technology, enabling collaboration across ... You'll work as closely with our Product and Engineering teams as you do with Customers. You'll ...

The role produces the Engineering Design Documents, blueprints, and control mappings that govern ... Remote work requires a high level of trust in our employees, and we strictly adhere to the details ...

Experience with security tools and cloud environments (e.g., Vulnerability Scanners, SIEM, SOAR ... remote Notice of Collection and Use of Personal Information for California Residents: California ...

Staff IT Security

OR · On-site +1

Clear communication across engineering, security, and business stakeholders * High ownership ... remote-first environment * Background with SIEM/SOAR platforms (Sentinel, Splunk) for security ...

Senior Cyber Threat Analyst

$99K - $128K/yr

Remote work requires a high level of trust in our employees, and we strictly adhere to the details ... Experience leveraging SIEM, SOAR, and other tools to identify threat activity and incidents.

Remote Soar Engineer information

What does a typical workday look like for a Remote SOAR Engineer, and how do they collaborate with security teams?

A typical workday for a Remote SOAR Engineer involves designing, building, and maintaining automated security workflows, analyzing security alerts, and quickly responding to incidents using SOAR tools. You’ll work closely with Security Operations Center (SOC) analysts, incident responders, and IT teams, often coordinating via virtual meetings, chat platforms, and collaborative documentation tools. Tasks may also include troubleshooting automation scripts, updating playbooks based on emerging threats, and participating in team reviews to improve security processes. Despite being remote, effective communication and regular check-ins are key to ensuring alignment and smooth collaboration across global security teams.

What are the key skills and qualifications needed to thrive in the Remote Soar Engineer position, and why are they important?

To thrive as a Remote SOAR Engineer, you need expertise in cybersecurity operations, automation scripting (such as Python), and familiarity with Security Orchestration, Automation, and Response (SOAR) platforms, often supported by a degree in computer science or a related field. Proficiency with tools like Splunk, Palo Alto Cortex XSOAR, and relevant certifications (e.g., CISSP, GIAC) are highly valued. Strong problem-solving skills, effective communication, and the ability to work independently in a distributed environment are key soft skills. These qualifications ensure effective incident response automation and seamless integration with security operations while collaborating remotely with global teams.

What is a Remote SOAR Engineer job?

A Remote SOAR (Security Orchestration, Automation, and Response) Engineer is responsible for designing, implementing, and maintaining SOAR solutions to enhance an organization's cybersecurity operations. They work remotely to automate security workflows, integrate various security tools, and improve incident response efficiency. This role requires expertise in scripting, API integrations, and security operations to optimize threat detection and response.

What cities in Oregon are hiring for Remote Soar Engineer jobs? Cities in Oregon with the most Remote Soar Engineer job openings:
Infographic showing various Remote Soar Engineer job openings in Oregon as of July 2026, with employment types broken down into 97% Full Time, 1% Part Time, and 2% Contract. Highlights an 87% Physical, 5% Hybrid, and 8% Remote job distribution.
Detection Engineer II

Detection Engineer II

Instacart

OR • Remote

Other

Posted 2 days ago


Instacart rating

7.1

Company rating: 7.1 out of 10

Based on 31 frontline employees who took The Breakroom Quiz

28th of 64 rated delivery companies


Job description

Overview

Instacart's Detection Engineering team sits at the core of our Security organization, building and operating the systems that identify, surface, and respond to threats across one of North America's largest grocery technology platforms. We own the full detection lifecycle, from telemetry collection and signal design to automated response, across a complex, cloud-native environment spanning endpoint, cloud, container, and SaaS.

As a Detection Engineer, you'll be a technical anchor on the team: developing high-fidelity detection logic, hunting for novel attacker techniques, and raising the bar for how we think about coverage, quality, and scale. You'll work closely with Engineering, Red Team, Incident Response, Fraud, and Trust & Safety to ensure our detections reflect real-world adversary behavior (and not just signatures).

We operate with a detection-as-code mindset: everything we build is versioned, tested, and deployed through repeatable pipelines. We care deeply about reducing noise, improving analyst efficiency through automation and SOAR, and continuously evolving our coverage as the threat landscape shifts.

If you're energized by hard forensic problems, enjoy translating attacker TTPs into durable detection logic, and want to help shape the future of a growing security function, this role is for you.

About the Job

  • Develop, tune, document, and maintain detection logic across multiple log sources including endpoint, cloud, container, and SaaS products.
  • Assist in cyber forensic investigations across a variety of log sources
  • Optimize log ingestion pipelines and telemetry collection to ensure high-quality, actionable security data while managing volume and cost
  • Design and build SOAR playbooks and automation workflows to streamline detection triage, enrichment, and response actions
  • Mentor/knowledge share with other detection engineers on threat hunting methodologies, detection logic development, and investigation techniques

About You

Minimum Qualifications

  • 2+ years of experience in a detection engineering, incident response, or offensive security role.
  • Experience with 1 or more public cloud platforms (AWS, Azure, GCP)
  • Deep understanding of attacker TTPs across modern zero trust environments, including identity compromise, token theft, and abuse of trust boundaries
  • Proficient understanding of macOS internals and telemetry available to identify macOS specific threats
  • Experience implementing detection-as-code workflows including version control, peer review processes, automated testing, and CI/CD deployment pipelines
  • Basic proficiency with Python, Golang, or other programming/scripting languages
  • Relevant certifications: GCFA, GCFE, GNFA, GREM, OSCP, GCIA, or similar

Preferred Qualifications

  • Background in offensive security or red teaming
  • Knowledge of machine learning for threat detection

#LI-remote


What Instacart employees say

Pay

Benefits

Hours and flexibility

Workplace

Get the full story on Breakroom


Instacart logo

About Instacart

Sourced by ZipRecruiter

Instacart, based in San Francisco, CA, US, operates within the retail industry, specifically grocery delivery and pick-up service. It is recognized as a pioneer in this field, delivering fresh groceries from local stores directly to customers' doors. The company, which launched its services in 2012, continues to pioneer change in the online grocery shopping sector through its commitment to cutting-edge technology, new business ideas, and dedicated service.

Industry

Technology, communication and media

Company size

10,000+ Employees

Headquarters location

San Francisco, CA, US

Year founded

2012