1

Security Operations Engineer Jobs in Florida (NOW HIRING)

Security Engineer

Miami, FL ยท On-site +1

Security Operations & Production Security Engineer Role Summary We are looking for a mid-level Security Operations & Production Security Engineer to support Realtime's growing security, architecture ...

DevOps Engineer

Hurlburt Field, FL ยท On-site

$48 - $66/hr

Security Architect; Information Systems Security Developer). * Document and maintain DevOps-related configurations and support actions as applicable. ***This position is contingent upon contract ...

DevOps Engineer

Orlando, FL ยท Hybrid

$49.25 - $67.50/hr

Implement and maintain security best practices * Continuously improve processes and systems Requirements: * Bachelor's degree in Computer Science or related field * 3+ years of experience in DevOps ...

DevOps Engineer

Doral, FL ยท On-site

$50.50 - $69/hr

Job Title DevOps Engineer Location Doral, FL 33122 US (Primary) Category Intelligence Job Type Full-Time Career Level Staff Education Bachelor's Degree Travel Security Clearance Required None ...

DevOps Engineer

Tampa, FL ยท On-site

$49.75 - $68.25/hr

... s Engineer to join our team. In this role, you'll help design, build, and maintain scalable and ... Apply security best practices across the software delivery pipeline, embedding security into every ...

DevOps Engineer

Tampa, FL ยท On-site

$49.75 - $68.25/hr

... s Engineer supports mission-critical objectives under the referenced work order by designing ... Proficiency in cloud environments (AWS, Azure, GCP) and security best practices. * Strong ...

DevOps Engineer

Miami, FL ยท On-site

$50.25 - $69/hr

Implement security best practices in infrastructure and deployment processes. * Document processes ... s Engineer or similar role. * Strong knowledge of Linux/Unix systems and scripting languages (e.g ...

DevOps Engineer

Miami, FL ยท On-site

$50.50 - $69/hr

Implement best practices around security and observability of our DevOps platform * Participate in our on-call rotation and blameless postmortem practices for incidents Skills and Qualifications

DevOps Engineer

Hurlburt Field, FL ยท On-site

$48 - $66/hr

Security Architect; Information Systems Security Developer). * Document and maintain DevOps-related configurations and support actions as applicable. * Other duties as assigned. Qualifications ...

DevOps Engineer

Hurlburt Field, FL

$48 - $66/hr

Security Architect; Information Systems Security Developer). * Document and maintain DevOps-related configurations and support actions as applicable. * Other duties as assigned. Qualifications ...

DevOps Engineer

Hurlburt Field, FL ยท On-site

$48 - $66/hr

Security Architect; Information Systems Security Developer). * Document and maintain DevOps-related configurations and support actions as applicable. * Other duties as assigned. Qualifications - Here ...

DevOps Engineer

Hurlburt Field, FL ยท On-site

$48 - $66/hr

Security Architect; Information Systems Security Developer). * Document and maintain DevOps-related configurations and support actions as applicable. * Other duties as assigned. Qualifications ...

DevOps Engineer

Miami, FL ยท On-site

$50.50 - $69/hr

Implement best practices for security, reliability, and scalability Qualifications & Experience * 7-9 years of experience in a DevOps, Systems Engineering, or similar role * Strong scripting and ...

Operational Automation * Design, build, and maintain security and operational automation workflows. * Develop and optimize Tines automation stories and playbooks. * Automate repetitive IT and ...

next page

Showing results 1-20

Security Operations Engineer information

See Florida salary details

$25K

$102.9K

$130K

How much do security operations engineer jobs pay per year?

As of Jun 11, 2026, the average yearly pay for security operations engineer in Florida is $102,936.00, according to ZipRecruiter salary data. Most workers in this role earn between $82,900.00 and $129,300.00 per year, depending on experience, location, and employer.

What is the difference between Security Operations Engineer vs Security Analyst?

AspectSecurity Operations EngineerSecurity Analyst
CertificationsCompTIA Security+, CISSP, CEHCompTIA Security+, GIAC Security Essentials
Work EnvironmentHands-on security infrastructure management, incident responseMonitoring, analyzing security data, reporting
Employer & Industry UsageIT security teams in various industries, focusing on security operations

The Security Operations Engineer focuses on managing security systems and responding to incidents, while the Security Analyst primarily monitors security data and analyzes threats. Both roles require similar certifications and work closely within security teams, but their daily tasks differ in scope and focus.

Can you make $500,000 a year in cyber security?

Security Operations Engineers can potentially earn $500,000 annually with extensive experience, advanced certifications, and leadership roles such as security managers or architects. High salaries are often associated with senior positions, specialized skills, and working in high-demand industries or organizations with large security budgets.

What are some of the main challenges Security Operations Engineers face when responding to security incidents?

Security Operations Engineers often face challenges such as quickly identifying genuine threats among large volumes of security alerts, coordinating responses across multiple teams, and containing incidents before they escalate. Balancing thorough investigation with the need for rapid action can be demanding, especially in high-pressure situations. Additionally, staying updated on emerging threats and ensuring compliance with security protocols are ongoing responsibilities that require continuous learning and adaptability.

What Does a Security Operations Engineer Do?

As a security operations engineer, your job is to monitor a network or system and help implement new methods of protection and data recovery. In this role, you may conduct a vulnerability assessment for each emerging threat, coordinate with other security specialists, and help develop responses with industry peers. This job title refers to maintaining network security systems and should not be confused with non-electronic security operations, such as safeguarding VIPs or facilities. A security operations engineer works regular hours, but employers may call you in for emergency help as needed. This position usually reports to someone, such as a chief information security officer. You may occasionally brief executives or other managers on relevant topics, so presentation skills are helpful.

What are the key skills and qualifications needed to thrive as a Security Operations Engineer, and why are they important?

To thrive as a Security Operations Engineer, you need a solid understanding of network security, incident response, and vulnerability management, typically supported by a degree in computer science or a related field. Experience with SIEM tools (like Splunk or QRadar), firewalls, IDS/IPS, and certifications such as CISSP or CompTIA Security+ are commonly required. Strong analytical thinking, problem-solving abilities, and effective communication skills help you quickly detect and respond to security threats while collaborating with teams. These skills are crucial to proactively safeguarding organizational assets, minimizing risks, and ensuring swift recovery from security incidents.

What does a security operations engineer do?

A security operations engineer monitors, detects, and responds to cybersecurity threats and incidents within an organization. They use tools like security information and event management (SIEM) systems, perform vulnerability assessments, and implement security measures to protect IT infrastructure. Strong knowledge of network protocols, security best practices, and relevant certifications such as CISSP or CEH are often required.

Is SOC an entry level job?

A Security Operations Center (SOC) analyst role can be entry level, but many positions require some prior experience or knowledge of cybersecurity tools, network monitoring, and incident response. Entry-level SOC roles often focus on monitoring security alerts and basic analysis, while more advanced positions may require certifications like CompTIA Security+ or Certified SOC Analyst (CSA).

What engineers make $500,000?

Senior security engineers, especially those with extensive experience, specialized skills, and certifications like CISSP or CISA, can earn $500,000 or more annually. High compensation is often associated with leadership roles, working in high-demand industries, or in organizations with complex security needs and 24/7 operations.
What are popular job titles related to Security Operations Engineer jobs in Florida? For Security Operations Engineer jobs in Florida, the most frequently searched job titles are:
What job categories do people searching Security Operations Engineer jobs in Florida look for? The top searched job categories for Security Operations Engineer jobs in Florida are:
What are popular job titles related to Security Operations Engineer jobs in FL? For Security Operations Engineer jobs in FL, the most frequently searched job titles are:
Infographic showing various Security Operations Engineer job openings in Florida as of June 2026, with employment types broken down into 86% Full Time, 13% Part Time, and 1% Contract. Highlights an 87% Physical, 5% Hybrid, and 8% Remote job distribution, with an average salary of $102,936 per year, or $49.5 per hour.
Security Engineer

Security Engineer

Real Time Technologies Inc

Miami, FL โ€ข On-site, Remote

Full-time

Medical, Dental, Vision, Retirement, PTO

Posted 10 days ago


Job description

Security Operations & Production Security Engineer
Role Summary
We are looking for a mid-level Security Operations & Production Security Engineer to support Realtime's growing security, architecture, and production operation's needs. This role will bridge security operations, detection engineering, incident response, cloud/identity security, and production readiness.
The ideal candidate is hands-on, adaptable, and comfortable wearing multiple hats in a small team. This person will help operate and improve our security monitoring stack, support incident response, tune detections, maintain runbooks, validate security controls, coordinate with managed SOC/MDR partners, and help ensure systems are secure, observable, supportable, and ready for Day 2 operations.
This role is best suited for someone who has strong SOC experience but wants to grow into security engineering, production support, automation, and architecture-adjacent responsibilities.
Why This Role Is Needed
Realtime's security team is small and needs someone who can sit between the Security Architect and the Junior Analyst. The Security Architect should stay focused on architecture, governance, risk, security strategy, control design, and executive-level decision support. The Junior Analyst can help with monitoring, ticketing, and basic triage.
This role fills the operational gap by owning the hands-on security engineering and production security work: detection tuning, incident coordination, tool administration, Jira/Slack workflow hygiene, runbooks, dashboards, Identity management, evidence collection, and day-to-day security operations.
Key Responsibilities
Security Operations & Monitoring
  • Monitor and triage alerts across Microsoft Defender, Sentinel, Huntress/MDR, Wiz, Datadog, Jira, and Slack channels.
  • Validate alert severity, business impact, affected assets, containment status, and escalation requirements.
  • Coordinate security events from initial triage through containment, documentation, closure, and post-incident follow-up.
  • Support daily dashboard review, security ticket queues, alert quality checks, and operational reporting.

Detection Engineering & Tuning
  • Develop, tune, and maintain detection logic in Huntress, Defender, KQL, and related tools.
  • Reduce false positives and alert noise by reviewing recurring detections, suppression logic, enrichment opportunities, and escalation criteria.
  • Help build and improve alert runbooks, investigation workflows, and playbooks for phishing, malware, suspicious sign-ins, cloud exposure, endpoint events, and account compromise.
  • Support basic SOAR/automation efforts using Logic Apps, playbooks, webhooks, or other workflow tools.

Incident Response & Production Security
  • Assist with incident response for endpoint, identity, cloud, email, and suspicious activity events.
  • Coordinate containment actions such as endpoint isolation, identity reset, access revocation, escalation to Tier 2/Tier 3 SOC, and follow-up remediation.
  • Maintain incident timelines, evidence, RCA notes, lessons learned, and closure documentation.
  • Help ensure P1/P2 incidents have clear communication, structured Slack threads, linked Jira tickets, and documented executive summaries when needed.

Cloud, Identity & Endpoint Security
  • Support security operations across Microsoft Defender, Microsoft Entra ID, Microsoft 365, Azure, endpoint protection, and cloud risk tools.
  • Help review suspicious sign-ins, MFA/SSO issues, risky users, privileged account activity, and access control gaps.
  • Assist with cloud exposure triage from Wiz or similar tools, including severity validation, ticket routing, and remediation tracking.
  • Support least-privilege reviews, conditional access validation, endpoint security posture, and security control checks.

Production Readiness & Change Support
  • Support the Day 0 / Day 1 / Day 2 operating model by helping confirm that new systems and changes are ready for production from a security operations perspective.
  • Review or help prepare monitoring requirements, alert runbooks, support escalation paths, rollback considerations, security validation evidence, and operational handoff materials.
  • Work with architecture, engineering, and operations teams to ensure production changes are documented, traceable, and supportable.
  • Help maintain CMDB/Jira asset relationships, monitoring links, runbook references, and security control mappings where needed. Realtime's configuration management materials specifically call out CMDB accuracy, monitoring coverage, alert routing, runbook linkage, support RACI, SLA/SLO mapping, and operational acceptance as part of Day 2 readiness.
  • Documentation, Metrics & Continuous Improvement
  • Create and maintain security runbooks, knowledge base articles, investigation guides, escalation procedures, and incident templates.
  • Track and report operational metrics such as alert volume, false positives, SLA breaches, time to acknowledge, time to isolate, time to contain, and closure quality.
  • Identify recurring issues and recommend improvements to detections, workflows, tooling, dashboards, and team processes.
  • Help mentor the Junior Analyst by reviewing tickets, improving triage quality, and sharing investigation techniques.

Required Qualifications
  • 3-5 years of experience in SOC operations, security operations, production support, security engineering, or a similar hands-on cybersecurity role.
  • Experience with Microsoft security tools such as Microsoft Defender, Microsoft Sentinel, Microsoft Entra ID, Microsoft 365 security, or Azure security services.
  • Ability to investigate alerts using SIEM/EDR data, KQL, logs, endpoint telemetry, identity logs, and cloud signals.
  • Experience with incident triage, phishing investigations, malware alerts, suspicious sign-ins, endpoint events, and escalation workflows.
  • Basic understanding of cloud security, identity security, MFA, SSO, conditional access, endpoint protection, and vulnerability/cloud exposure management.
  • Ability to write clear documentation, incident notes, runbooks, ticket updates, and executive-ready summaries.
  • Comfortable working in a small team where priorities change, and the person may need to support operations, engineering, documentation, and coordination.
  • Strong communication skills and ability to work across Slack, Jira, Teams, security tools, managed SOC providers, engineers, and business stakeholders.

Preferred Qualifications:
  • Experience with Identity management, Defender, KQL, Logic Apps, SOAR/playbook automation, or detection tuning.
  • Experience with tools such as Huntress, Wiz, Datadog, Jira Service Management, Slack, OpenIAM
  • Security+, Microsoft SC-200, CySA+, GCIH, Microsoft AZ-500, CCSP, CISSP, or similar certifications.
  • Exposure to ITIL, change management, ARB/CAB processes, CMDB, production readiness, or operational handoff.
  • Basic scripting or automation experience with PowerShell, Python, Logic Apps, APIs, or workflow automation.
  • Experience working in an MSSP, MDR, SOC, or 24/7 operations environment.

Salary Range:$125,000 -155,000 annually, plus a target 5% annual performance bonus which will be based on the employee's and company's performance. Final compensation will be based on the candidate's experience and qualifications.
Our pay structure considers various geographical markets within the United States. The base salary for this role reflects the typical expected earnings. However, the final compensation package is determined by several factors, such as your location, job-specific expertise, skills, experience, and other relevant job-related considerations.
What We Offer:
  • A unique opportunity to shape the journey of realtime
  • Working within a rapidly growing, game-changing business
  • Remote, flexible working options
  • Competitive compensation
  • Generous STI and LTI provisions
  • Health, Dental and Vision Insurance
  • Paid Annual Leave
  • Paid Sick Leave
  • 401K, and more

Equal Opportunity Statement:
Realtime is an Equal Opportunity Employer. We celebrate diversity and are committed to creating an inclusive environment for all employees. We do not discriminate on the basis of race, color, religion, creed, sex, sexual orientation, gender identity, national origin, age, disability, veteran status, or any other protected status.
Application Window: Applications are accepted on an ongoing, continuous basis until the position is filled.

Real Time Technologies logo

About Real Time Technologies

Sourced by ZipRecruiter

Industry

Electrical equipment, appliance, and component manufacturing

Company size

11 - 50 Employees

Headquarters location

Miami, FL, US

Year founded

2001