2

Remote Staff Security Operations Engineer Jobs (NOW HIRING)

Why You'll Love This Role The Staff Security Operations Engineer will be a pivotal member of Cribl ... We are a remote-first company and work happens across many time-zones - you may be required to ...

With a global workforce, we're remote-first and grounded in a simple idea: software is a people ... Why You'll Love This Role The Staff Security Operations Engineer will be a pivotal member of Cribl ...

Vertex Inc. is looking for a Security Operations Engineer role to strengthen our security monitoring, incident response, detection engineering, and SecOps automation capabilities. This role is ideal ...

About the Role We're seeking a talented engineer, specializing in security operations, to help grow our security team. We're looking for people who can move Tailscale forward while making it safer to ...

The Opportunity As a Security Operations Engineer, you will serve on the front lines of our security program, helping protect the organization by detecting, investigating, and containing threats ...

Security -Sr Security Operations Engineer

$117K - $160K/yr

Security Operations Engineer / Sr. Risk Division | WoodmenLife Location: Hybrid (Omaha, NE) Reports To: Manager Security Operations PLEASE NOTE: WoodmenLife will not sponsor applicants for work visas ...

... began operations in May 2022. We're focused on automating highly manual tasks to tackle long ... Continuously monitor security telemetry to identify potential threats, malicious activity, or ...

As a remote-first company, most of our positions can be remote in the US, except for key roles ... detection engineering, and influence operational security strategy through cross-functional ...

Location: Remote (US-based) About Dispel: Dispel is the fastest-growing cybersecurity company ... security operations, detection engineering, or SIEM/SOAR engineering * Hands-on experience with ...

Build intelligent security platforms and automate security operations using AI and robust software ... OUR IDEAL STAFF SECURITY ENGINEER WILL HAVE: * 5+ years of hands-on experience in information ...

next page

Showing results 1-20

Remote Staff Security Operations Engineer information

See salary details

$33.5K

$137.7K

$174K

How much do remote staff security operations engineer jobs pay per year?

As of Sep 4, 2026, the average yearly pay for remote staff security operations engineer in the United States is $137,745.00, according to ZipRecruiter salary data. Most workers in this role earn between $111,000.00 and $173,000.00 per year, depending on experience, location, and employer.

What is the difference between Remote Staff Security Operations Engineer vs Remote Staff Security Analyst?

AspectRemote Staff Security Operations EngineerRemote Staff Security Analyst
CredentialsCertifications like CISSP, CISA, or Security+Certifications like Security+, GIAC, or CISSP often preferred
Work EnvironmentHands-on security infrastructure management and incident responseMonitoring, analyzing security data, and reporting
Employer UsageUsed in organizations with dedicated security operations teamsCommon in security monitoring and threat analysis roles

The Remote Staff Security Operations Engineer focuses on managing security systems and responding to incidents, while the Security Analyst primarily monitors security data and analyzes threats. Both roles require relevant certifications and are integral to cybersecurity teams, but they differ in daily responsibilities and focus areas.

More about Remote Staff Security Operations Engineer jobs

What cities are hiring for Remote Staff Security Operations Engineer jobs?

Cities with the most Remote Staff Security Operations Engineer job openings:

What are the most commonly searched types of Staff Security Operations Engineer jobs?

The most popular types of Staff Security Operations Engineer jobs are:

What states have the most Remote Staff Security Operations Engineer jobs?

States with the most job openings for Remote Staff Security Operations Engineer jobs include:

What job categories do people searching Remote Staff Security Operations Engineer jobs look for?

The top searched job categories for Remote Staff Security Operations Engineer jobs are:

Infographic showing various Remote Staff Security Operations Engineer job openings in the United States as of August 2026, with employment types broken down into 100% Full Time. Highlights an 100% Remote job distribution, with an average salary of $137,745 per year, or $66.2 per hour.

Staff Security Operations Engineer

Cribl

Remote

Full-time

Re-posted 13 days ago


Job description

Why You'll Love This Role

The Staff Security Operations Engineer will be a pivotal member of Cribl's Information Security team, primarily responsible for strengthening our security posture through robust security operations and advanced threat detection. You will help lead security incident management, triage, and investigations, and be instrumental in developing innovative solutions to remediate current threats and proactively prevent future attacks. A key aspect of this role will be designing, implementing, and optimizing detection logic to identify sophisticated threats across our environment. You will partner closely with Product Security, IT, and Legal teams, and report to the Sr. Director, Security Engineering and Operations under the CISO.


As An Active Member Of Our Team, You Will...

  • Provide knowledge and experience in working with modern security principles e.g. SIEM, security data lakes, detection as code, EDR, zero trust networking, and other security tooling, as well as demonstrated experience with incident response and management.
  • Utilize a strong understanding of common attack frameworks (e.g., MITRE ATT&CK) and how to map detections to TTPs
  • Understanding of authentication and authorization schemes such as SAML, OpenID, OAuth2, and SCIM
  • Experience scripting/coding in at least one of the following languages: Python, NodeJS, Ruby, Bash
  • Be the go-to technical subject matter expert on security, compliance, and assurance topics
  • Communicate ideas to technical and non-technical audiences
  • Comfortable with ambiguity, have a strong analytical acumen, self-motivated, able to work cross-functionally
  • We are a remote-first company and work happens across many time-zones - you may be required to occasionally perform duties outside your standard working hours


If You've Got It - We Want It

  • Monitoring security events and alerting via our security tooling, including MSSP, SIEM, AI, and CSPM tooling, to identify and triage potential threats
  • Developing, implementing, and maintaining high-fidelity detection rules and alerts within SIEM and other security platforms (e.g., EDR, Cloud Security tools) based on threat intelligence, MITRE ATT&CK framework, and identified risks
  • Conducting continuous tuning and optimization of existing detection logic to reduce false positives and improve detection efficacy
  • Responding to issues identified by our Cribl employees
  • Acting as a security incident response lead, including leveraging and improving detection capabilities during investigations
  • Building, enhancing, and managing security playbooks, incorporating detection engineering best practices
  • Conducting security assessments of corporate assets through vulnerability testing, threat hunts, and purple team activities, with a focus on identifying detection gaps and opportunities
  • Performing both internal and external security reviews of corporate properties e.g., the corporate website and enterprise applications
  • Leading security incident response tabletop exercises
  • Continuing to evolve and champion the use of Cribl products in our security tech stack to enhance detection, analysis, and response capabilities
  • Collaborating with threat intelligence teams to integrate new indicators of compromise (IOCs) and tactics, techniques, and procedures (TTPs) into detection strategies
  • Experience with SIEM platforms like Panther is a plus and its detection capabilities
  • Familiarity with Wiz and cloud native security tooling for detection in AWS, Azure, or GCP
  • Relevant certifications in cloud security or incident response (e.g., SANS GIAC certifications)
  • Proven experience in developing, deploying, and maintaining detection rules (e.g., Sigma, YARA, Splunk SPL, KQL) across various security platforms


#LI-KJ1
#LI-Remote