2

Remote Soar Engineer Jobs in Warren, NJ (NOW HIRING)

100% Remote. Our client has an opening for a Cybersecurity Engineer 3 (764117) This position is up ... SOAR tuning and response workflows, and security alert triage and forensics Required 5 Years ...

This is a remote position for candidates based out of the North Eastern US. AI Innovation at ... Experience with SIEM, SOAR, EDR/XDR, TIP, vulnerability management, and cloud security technologies.

Regional Sales Director

New York, NY · Remote

$350K - $380K/yr

Remote - New York Metro (Travel Required) Territory: New York City, Long Island, Westchester (to ... Build relationships with CISOs, CIOs, Security Architects, Security Engineering leaders ...

Remote Soar Engineer information

See Warren, NJ salary details

$39.5K

$120.3K

$198.9K

How much do remote soar engineer jobs pay per year?

As of Aug 28, 2026, the average yearly pay for remote soar engineer in Warren, NJ is $120,325.00, according to ZipRecruiter salary data. Most workers in this role earn between $86,200.00 and $157,300.00 per year, depending on experience, location, and employer.

What is a remote SOAR engineer?

A Remote SOAR (Security Orchestration, Automation, and Response) Engineer is responsible for designing, implementing, and maintaining SOAR solutions to enhance an organization's cybersecurity operations. They work remotely to automate security workflows, integrate various security tools, and improve incident response efficiency. This role requires expertise in scripting, API integrations, and security operations to optimize threat detection and response.

What are the key skills and qualifications needed to thrive as a remote SOAR engineer?

To thrive as a Remote SOAR Engineer, you need expertise in cybersecurity operations, automation scripting (such as Python), and familiarity with Security Orchestration, Automation, and Response (SOAR) platforms, often supported by a degree in computer science or a related field. Proficiency with tools like Splunk, Palo Alto Cortex XSOAR, and relevant certifications (e.g., CISSP, GIAC) are highly valued. Strong problem-solving skills, effective communication, and the ability to work independently in a distributed environment are key soft skills. These qualifications ensure effective incident response automation and seamless integration with security operations while collaborating remotely with global teams.

What does a typical workday look like for a remote SOAR engineer, and how do they collaborate with security teams?

A typical workday for a Remote SOAR Engineer involves designing, building, and maintaining automated security workflows, analyzing security alerts, and quickly responding to incidents using SOAR tools. You’ll work closely with Security Operations Center (SOC) analysts, incident responders, and IT teams, often coordinating via virtual meetings, chat platforms, and collaborative documentation tools. Tasks may also include troubleshooting automation scripts, updating playbooks based on emerging threats, and participating in team reviews to improve security processes. Despite being remote, effective communication and regular check-ins are key to ensuring alignment and smooth collaboration across global security teams.

What cities near Warren, NJ are hiring for Remote Soar Engineer jobs?

Cities near Warren, NJ with the most Remote Soar Engineer job openings:

Security Operation Engineer - Remote

NAVA Software Solutions

Jersey City, NJ • On-site, Remote

Full-time

This job post has expired 1 day ago. Applications are no longer accepted.


Job description

NAVA Software solutions is looking for a Security Operations Engineer
Details:
Security Operations Engineer
Location: Remote
Duration: 6-12 months
Security Operations Engineer to join our cybersecurity team and help protect our organization's infrastructure, applications, and data from cyber threats. This role is responsible for the ongoing monitoring, detection, investigation, and remediation of security incidents, as well as maintaining and improving security tools, processes, and automation. The ideal candidate will have a strong background in security monitoring, incident response, SIEM administration, and vulnerability management.
Key Responsibilities
Security Monitoring & Threat Detection
  • Monitor and analyze alerts from SIEM and other security tools (e.g., Splunk, QRadar, Sentinel, Elastic Security).
  • Investigate suspicious activity, anomalies, and security incidents across networks, systems, and applications.
  • Tune security tools and correlation rules to improve detection capabilities and reduce false positives.

Incident Response & Investigation
  • Serve as the first responder to security incidents-triaging alerts, performing root-cause analysis, and documenting findings.
  • Coordinate incident response efforts with internal teams and, when necessary, external partners.
  • Preserve digital evidence and maintain chain-of-custody documentation for potential legal or compliance requirements.

Security Tool Administration & Automation
  • Deploy, configure, and maintain security tools such as EDR/XDR, IDS/IPS, firewalls, vulnerability scanners, and log management systems.
  • Automate detection and response workflows using SOAR platforms or scripting languages (Python, PowerShell, Bash).
  • Maintain playbooks and runbooks for common incident scenarios.

Vulnerability & Patch Management
  • Work with IT and DevOps teams to identify, prioritize, and remediate vulnerabilities.
  • Schedule and oversee regular vulnerability scans (e.g., Tenable, Qualys, Rapid7).
  • Track and report on remediation progress and SLA adherence.

Threat Intelligence & Continuous Improvement
  • Leverage threat intelligence feeds to proactively identify and defend against emerging threats.
  • Conduct post-incident reviews to identify lessons learned and improve future responses.
  • Participate in red team/blue team exercises and security drills.

Qualifications
Required
  • Bachelor's degree in Cybersecurity, Computer Science, or related field (or equivalent experience).
  • 8+ years of experience in security operations, SOC, or incident response.
  • Strong knowledge of:
    • Network protocols, operating systems (Windows, Linux, macOS), and cloud platforms (AWS, Azure, GCP).
    • SIEM tools and log analysis techniques.
    • Common attack techniques, tactics, and procedures (MITRE ATT&CK framework).
  • Experience with endpoint security, intrusion detection, and vulnerability management tools.
  • Hands-on scripting and automation skills (Python, PowerShell, or Bash).

Preferred
  • Security certifications such as GCIH, GCIA, GCFA, CEH, Security+, or CISSP.
  • Familiarity with container security (Docker, Kubernetes) and IaC scanning.
  • Exposure to compliance requirements (e.g., PCI DSS, HIPAA, ISO 27001).

Key Competencies
  • Strong analytical, troubleshooting, and decision-making skills.
  • Ability to work under pressure in fast-paced, high-stakes security incidents.
  • Clear communication skills-both written and verbal.
  • Collaborative mindset and ability to work cross-functionally with IT, DevOps, and business teams.

Performance Metrics
  • Mean Time to Detect (MTTD) and Mean Time to Respond (MTTR) improvements.
  • Reduction in repeated incidents from the same root cause.
  • Efficiency and accuracy of security monitoring and response.
  • Uptime and reliability of security tools and monitoring infrastructure

NAVA Software Solutions logo

About NAVA Software Solutions

Sourced by ZipRecruiter

NAVA is a strategic partner for companies seeking to develop or customize software and products. Our team of experts leverages cutting-edge technology and deep industry knowledge to provide customized solutions that drive business success. Whether you're looking to improve your operations, increase efficiency, or bring a new product to market, NAVA has the expertise and resources to help you achieve your goals. Trust us to be your partner in software and product development.

Industry

It services

Company size

51 - 200 Employees

Headquarters location

Rocky Hill, CT, US

Social media