1

Security Operations Engineer Jobs in California (NOW HIRING)

We are looking for a Security Operations Lead (SOC Lead) to build, mature, and operate our 24/7 ... Developer platforms + CI/CD pipelines * AI/ML systems and model‑serving workflows * AI‑Based ...

Security Operations Lead

Foster City, CA · On-site

$295K - $385K/yr

We are looking for a Security Operations Lead (SOC Lead) to build, mature, and operate our 24/7 ... Developer platforms + CI/CD pipelines * AI/ML systems and model-serving workflows AI-Based SOC ...

Senior IT & Security Operations Engineer

Irvine, CA · On-site

$114K - $155K/yr

What You Have * Senior IT Operations Background: 5+ years of IT engineering experience, including ... Endpoint Security: Working experience with CrowdStrike Falcon or a comparable EDR/XDR platform ...

Senior IT & Security Operations Engineer

Irvine, CA · On-site

$114K - $155K/yr

What You Have * Senior IT Operations Background: 5+ years of IT engineering experience, including ... Endpoint Security: Working experience with CrowdStrike Falcon or a comparable EDR/XDR platform ...

Senior IT & Security Operations Engineer

Irvine, CA · On-site

$114K - $155K/yr

What You Have * Senior IT Operations Background: 5+ years of IT engineering experience, including ... Endpoint Security: Working experience with CrowdStrike Falcon or a comparable EDR/XDR platform ...

You'll partner closely with Security Engineering, Platform Security, IT, GRC, and Legal to strengthen our detection and response capabilities, improve operational resilience, and help shape the ...

Own Figma's security monitoring and incident response program, from detection engineering through post‑incident review and continuous improvement. * Build and automate security operations workflows ...

You'll partner closely with Security Engineering, Platform Security, IT, GRC, and Legal to strengthen our detection and response capabilities, improve operational resilience, and help shape the ...

You'll partner closely with Security Engineering, Platform Security, IT, GRC, and Legal to strengthen our detection and response capabilities, improve operational resilience, and help shape the ...

You'll partner closely with Security Engineering, Platform Security, IT, GRC, and Legal to strengthen our detection and response capabilities, improve operational resilience, and help shape the ...

Showing results 21-40

Security Operations Engineer information

See California salary details

$33.1K

$135.9K

$171.7K

How much do security operations engineer jobs pay per year?

As of Sep 6, 2026, the average yearly pay for security operations engineer in California is $135,941.00, according to ZipRecruiter salary data. Most workers in this role earn between $109,500.00 and $170,700.00 per year, depending on experience, location, and employer.

What does a security operations engineer do?

As a security operations engineer, your job is to monitor a network or system and help implement new methods of protection and data recovery. In this role, you may conduct a vulnerability assessment for each emerging threat, coordinate with other security specialists, and help develop responses with industry peers. This job title refers to maintaining network security systems and should not be confused with non-electronic security operations, such as safeguarding VIPs or facilities. A security operations engineer works regular hours, but employers may call you in for emergency help as needed. This position usually reports to someone, such as a chief information security officer. You may occasionally brief executives or other managers on relevant topics, so presentation skills are helpful.

What are the key skills and qualifications needed to thrive as a security operations engineer, and why are they important?

To thrive as a Security Operations Engineer, you need a solid understanding of network security, incident response, and vulnerability management, typically supported by a degree in computer science or a related field. Experience with SIEM tools (like Splunk or QRadar), firewalls, IDS/IPS, and certifications such as CISSP or CompTIA Security+ are commonly required. Strong analytical thinking, problem-solving abilities, and effective communication skills help you quickly detect and respond to security threats while collaborating with teams. These skills are crucial to proactively safeguarding organizational assets, minimizing risks, and ensuring swift recovery from security incidents.

What are some of the main challenges security operations engineers face when responding to security incidents?

Security Operations Engineers often face challenges such as quickly identifying genuine threats among large volumes of security alerts, coordinating responses across multiple teams, and containing incidents before they escalate. Balancing thorough investigation with the need for rapid action can be demanding, especially in high-pressure situations. Additionally, staying updated on emerging threats and ensuring compliance with security protocols are ongoing responsibilities that require continuous learning and adaptability.

What is the difference between Security Operations Engineer vs Security Analyst?

AspectSecurity Operations EngineerSecurity Analyst
CertificationsCompTIA Security+, CISSP, CEHCompTIA Security+, GIAC Security Essentials
Work EnvironmentHands-on security infrastructure management, incident responseMonitoring, analyzing security data, reporting
Employer & Industry UsageIT security teams in various industries, focusing on security operations

The Security Operations Engineer focuses on managing security systems and responding to incidents, while the Security Analyst primarily monitors security data and analyzes threats. Both roles require similar certifications and work closely within security teams, but their daily tasks differ in scope and focus.

What are popular job titles related to Security Operations Engineer jobs in California?

For Security Operations Engineer jobs in California, the most frequently searched job titles are:

What job categories do people searching Security Operations Engineer jobs in California look for?

The top searched job categories for Security Operations Engineer jobs in California are:

What cities in California are hiring for Security Operations Engineer jobs?

Cities in California with the most Security Operations Engineer job openings:

Infographic showing various Security Operations Engineer job openings in California as of August 2026, with employment types broken down into 83% Full Time, 14% Part Time, 1% Temporary, 1% Contract, and 1% Nights. Highlights an 93% Physical, 3% Hybrid, and 4% Remote job distribution, with an average salary of $135,941 per year, or $65.4 per hour.

Envista Security Operations & Engineering Lead (Brea, CA)

Envista Holdings Corporation

Brea, CA • On-site

Full-time

Medical, Dental, Vision, Retirement

Re-posted 9 days ago


Envista Holdings rating

8.7

Company rating: 8.7 out of 10

Based on 13 frontline employees who took The Breakroom Quiz


Job description


Job Description:

JOB SUMMARY

This position is based onsite and requires four days per week in the Brea office to support collaboration and business needs.

We are seeking a strategic and hands-on Security Operations and Engineering Lead to drive enterprise cybersecurity operations, detection engineering, incident response, and security platform capabilities.

This leader owns the SOC, incident response program, detection lifecycle, and security tooling ecosystem, and is responsible for building scalable, threat-informed, and measurable security operations.

PRIMARY DUTIES AND RESPONSIBILITIES:

Security Operations Leadership

  • Lead enterprise security operations including monitoring, triage, investigation, escalation, and response

  • Oversee SOC and MSSP/MDR partnerships including SLAs, alert quality, escalation paths, and performance metrics

  • Establish 24x7 monitoring aligned to enterprise risk

  • Define KPIs/KRIs including MTTD, MTTR, alert fidelity, detection coverage, and response effectiveness

Security Engineering & Platform Management

  • Lead lifecycle management of SIEM, SOAR, EDR/XDR, CSPM, DLP, identity security, and cloud security platforms

  • Drive automation across triage, enrichment, containment, and reporting workflows

  • Define enterprise logging and telemetry strategy including onboarding, parsing, normalization, retention, and coverage standards

  • Ensure tools are integrated, cost-effective, and aligned to risk priorities

Incident Response & Threat Management

  • Own incident response program including playbooks, exercises, breach workflows, and communications

  • Lead major incidents through containment, eradication, recovery, and root cause analysis

  • Ensure post-incident reviews drive durable control improvements

  • Coordinate with Legal, Privacy, HR, IT, and Communications

Detection Engineering & Monitoring

  • Build detection engineering lifecycle: hypothesis development testing tuning deployment validation retirement

  • Develop behavior-based and threat-informed detections aligned to MITRE ATT&CK

  • Expand monitoring across endpoint, identity, cloud, SaaS, network, and critical applications

  • Identify and close detection gaps via red team, pentest, and vulnerability insights

Exposure & Control Operations

  • Support exposure management, asset inventory visibility, and attack surface monitoring

  • Drive continuous control monitoring and validation of key security controls

  • Improve vulnerability remediation workflows and risk reduction outcomes

Leadership & Stakeholder Management

  • Build and lead high-performing security operations and engineering teams

  • Establish clear roles, operating model, and accountability

  • Provide executive reporting on threats, incidents, control gaps, and maturity

  • Partner with GRC, Audit, IT, Architecture, and business leadership

Job Requirements:

  • Bachelor's degree in Information Security, Cybersecurity, Computer Science, Information Systems, Business, Engineering, or a related fields OR equivalent industry experience, military service, professional certifications, and demonstrated leadership experience are valued equally.

  • 7+ years of experience in cybersecurity, security operations, detection engineering, incident response, or security engineering.

  • 5+ years leading security operations, engineering, SOC, or incident response teams.

  • Experience operating security capabilities across cloud, SaaS, endpoint, identity, and enterprise environments.

  • Experience managing MSSP, MDR, SOC-as-a-Service, or strategic security service providers.

  • Hands-on experience with SIEM platforms (Microsoft Sentinel, Splunk, QRadar, Chronicle, etc.)

  • Experience in Azure, AWS, or GCP environments.

  • Understanding of Zero Trust security principles and modern detection strategies.

  • Ability to communicate technical risks to executive leadership and business stakeholders.

  • Experience coordinating investigations across security, IT, legal, privacy, HR, and executive stakeholders.

PREFERRED SKILLS & EXPERIENCE:

  • 10+ years of cybersecurity experience.

  • Experience building or transforming a SOC program.

  • Experience supporting a global or multi-business-unit environment.

  • Experience leading incident response for major cybersecurity events.

  • One or more of the following certifications: CISSP; CISM; CCSP; GIAC certifications (GCIH, GCIA, GCFA, GMON); Microsoft Security certifications; Splunk certifications; Microsoft Sentinel certifications; CrowdStrike certifications; AWS/Azure/GCP security certifications.

#LI-SC1
IND123

Target Market Salary Range:

Actual compensation packages take into account a wide range of factors that are unique to each candidate, including but not limited to geographic location; skill sets; relevant education and certifications; depth of experience; performance; and other business and organizational needs. The disclosed reasonable estimate has not been adjusted for the applicable geographic differential associated with the location at which the position may be filled. At Envista, it is not typical for an individual to be hired at or near the top of the range for their role and compensation decisions are dependent on the facts and circumstances of each case. The total compensation package for this position may also include an annual performance bonus, medical/dental/vision benefits, 401K match, and/or other applicable compensation plans.

$156,400 - $191,200

Operating Company:

Corporate

Envista is a global leader in the dental industry, uniting more than 30 trusted brands-including DEXIS, Kerr, Nobel Biocare, and Ormco-under one mission: partnering with dental professionals to improve patients' lives. With a heritage of category-defining innovation, our brands have shaped modern dentistry: Nobel Biocare introduced the first dental implant, Ormco is a pioneer in both traditional and digital orthodontics, DEXIS has long been at the forefront of 2D, 3D and intraoral imaging, and Kerr has supported clinicians for over 135 years. Our high-performing culture is underpinned by our CIRCLe Values and the Envista Business System. Guided by these, we deliver a comprehensive portfolio of technologies, consumables, and services that empower clinicians to provide confident, efficient care-today and for the future. Learn more at http://envistaco.com.

Envista and all Envista Companies are equal opportunity employers that evaluate qualified applicants without regard to race, color, national origin, religion, sex, age, marital status, disability, veteran status, sexual orientation, gender identity, or other characteristics protected by law. The "EEO is the Law" poster is available at: http://www.dol.gov/ofccp/regs/ compliance/posters/pdf/eeopost.pdf.

Envista and its family of companies (Envista) will not accept unsolicited resumes from any source other than directly from a candidate. Envista will consider unsolicited referrals and/or resumes submitted by vendors such as search firms, staffing agencies, professional recruiters, fee-based referral services and recruiting agencies (Agency) to have been referred by the Agency free of charge and Envista will not pay a fee for any placement resulting from the receipt such unsolicited resumes. An Agency must obtain advance written approval from Envista's internal Talent Acquisition or Human Resources team to submit resumes, and then only in conjunction with a valid fully-executed contract approved by the Global Talent Acquisition leader and in response to a specific job opening. Envista will not pay a fee to any Agency that does not have such agreement and written approval in place.


What Envista Holdings employees say

Pay

Benefits

Hours and flexibility

Workplace

Get the full story on Breakroom