Collaborating with security operations center analysts and threat detection engineers to prioritize ... Translating security operations processes into SOAR playbooks and custom integrations to support ...
Collaborating with security operations center analysts and threat detection engineers to prioritize ... Translating security operations processes into SOAR playbooks and custom integrations to support ...
Senior Security Engineer
San Francisco, CA · On-site
$130 - $160/hr
... SOAR, detection engineering) -- and working fluency in the other. * Proven ability to build ... security infrastructure from zero: tool selection, baseline configuration, and policy definition ...
Senior Security Engineer
San Francisco, CA · On-site
$130 - $160/hr
... SOAR, detection engineering) -- and working fluency in the other. * Proven ability to build ... security infrastructure from zero: tool selection, baseline configuration, and policy definition ...
SOC Security Engineer
Burbank, CA · On-site
We are looking for a Senior SOC Security Engineer that is hands on but also works with stakeholders ... Cloud-native SIEM and SOAR * Network and endpoint security * IAM/SSO
SOC Security Engineer
Burbank, CA · On-site
We are looking for a Senior SOC Security Engineer that is hands on but also works with stakeholders ... Cloud-native SIEM and SOAR * Network and endpoint security * IAM/SSO
Collaborating with security operations center analysts and threat detection engineers to prioritize ... Translating security operations processes into SOAR playbooks and custom integrations to support ...
Collaborating with security operations center analysts and threat detection engineers to prioritize ... Translating security operations processes into SOAR playbooks and custom integrations to support ...
Sr. DevSecOps Engineer
San Diego, CA · On-site
$121K - $166K/yr
UICGS / Bowhead Family of Companies is seeking a Sr. DevSecOps Engineer to support operational ... XSOAR or Splunk SOAR acceptable) • Container security experience (RapidFort, Anchore, Trivy, Aqua ...
Sr. DevSecOps Engineer
San Diego, CA · On-site
$121K - $166K/yr
UICGS / Bowhead Family of Companies is seeking a Sr. DevSecOps Engineer to support operational ... XSOAR or Splunk SOAR acceptable) • Container security experience (RapidFort, Anchore, Trivy, Aqua ...
Chief Product Officer
San Francisco, CA · On-site +1
Soar is a Saudi fintech startup that specializes in financing and investment. Currently ... Partner with engineering, design, GTM, and leadership to align the company behind a coherent ...
Chief Product Officer
San Francisco, CA · On-site +1
Soar is a Saudi fintech startup that specializes in financing and investment. Currently ... Partner with engineering, design, GTM, and leadership to align the company behind a coherent ...
Leading and mentoring junior team members in SOC engineering, including SIEM, SOAR, and process development A successful candidate would possess these skills: * Ability to work independently and ...
Leading and mentoring junior team members in SOC engineering, including SIEM, SOAR, and process development A successful candidate would possess these skills: * Ability to work independently and ...
Leading and mentoring junior team members in SOC engineering, including SIEM, SOAR, and process development A successful candidate would possess these skills: * Ability to work independently and ...
Leading and mentoring junior team members in SOC engineering, including SIEM, SOAR, and process development A successful candidate would possess these skills: * Ability to work independently and ...
Security Engineer
San Jose, CA · On-site
$140 - $210/hr
As a Security Engineer, you will protect the networks, systems, and applications that enable our ... Operate and enhance security operations tooling, including SIEM, SOAR, and EDR/XDR platforms, to ...
Security Engineer
San Jose, CA · On-site
$140 - $210/hr
As a Security Engineer, you will protect the networks, systems, and applications that enable our ... Operate and enhance security operations tooling, including SIEM, SOAR, and EDR/XDR platforms, to ...
Security Engineer
San Jose, CA · On-site
$150K - $250K/yr
As a Security Engineer, you will protect the networks, systems, and applications that enable our ... Operate and enhance security operations tooling, including SIEM, SOAR, and EDR/XDR platforms, to ...
Quick apply
Security Engineer
San Jose, CA · On-site
$150K - $250K/yr
As a Security Engineer, you will protect the networks, systems, and applications that enable our ... Operate and enhance security operations tooling, including SIEM, SOAR, and EDR/XDR platforms, to ...
SOAR (Cortex XSOAR) Operations: * Design, develop, and maintain security automation playbooks using ... Work closely with cross-functional teams, including data engineers, security analysts, and ...
SOAR (Cortex XSOAR) Operations: * Design, develop, and maintain security automation playbooks using ... Work closely with cross-functional teams, including data engineers, security analysts, and ...
Security Engineer
San Jose, CA · On-site
$150K - $250K/yr
As a Security Engineer, you will protect the networks, systems, and applications that enable our ... Operate and enhance security operations tooling, including SIEM, SOAR, and EDR/XDR platforms, to ...
Security Engineer
San Jose, CA · On-site
$150K - $250K/yr
As a Security Engineer, you will protect the networks, systems, and applications that enable our ... Operate and enhance security operations tooling, including SIEM, SOAR, and EDR/XDR platforms, to ...
XSOAR Consultant
Foster City, CA · On-site
... Engineering/Operations to CIO/CISO audiences • Ability to create documentation for SOAR playbooks • Ability to refine and translate complex requirements and execute best practice solutions • ...
XSOAR Consultant
Foster City, CA · On-site
... Engineering/Operations to CIO/CISO audiences • Ability to create documentation for SOAR playbooks • Ability to refine and translate complex requirements and execute best practice solutions • ...
Leading and mentoring junior team members in SOC engineering, including SIEM, SOAR, and process development A successful candidate would possess these skills: * Ability to work independently and ...
Leading and mentoring junior team members in SOC engineering, including SIEM, SOAR, and process development A successful candidate would possess these skills: * Ability to work independently and ...
Build and maintain integrations between security platforms (e.g., SIEM, SOAR, MDM, IAM) and ... Mentor junior engineers and analysts on software design principles and automation best practices.
Build and maintain integrations between security platforms (e.g., SIEM, SOAR, MDM, IAM) and ... Mentor junior engineers and analysts on software design principles and automation best practices.
Sr. Engineer, Information Security (Cloud Security)
Culver City, CA · On-site
$120K - $150K/yr
SOAR (Cortex XSOAR) Operations: * Design, develop, and maintain security automation playbooks using ... Work closely with cross-functional teams, including data engineers, security analysts, and ...
Sr. Engineer, Information Security (Cloud Security)
Culver City, CA · On-site
$120K - $150K/yr
SOAR (Cortex XSOAR) Operations: * Design, develop, and maintain security automation playbooks using ... Work closely with cross-functional teams, including data engineers, security analysts, and ...
Leading and mentoring junior team members in SOC engineering, including SIEM, SOAR, and process development A successful candidate would possess these skills: * Ability to work independently and ...
Leading and mentoring junior team members in SOC engineering, including SIEM, SOAR, and process development A successful candidate would possess these skills: * Ability to work independently and ...
Leading and mentoring junior team members in SOC engineering, including SIEM, SOAR, and process development A successful candidate would possess these skills: * Ability to work independently and ...
Leading and mentoring junior team members in SOC engineering, including SIEM, SOAR, and process development A successful candidate would possess these skills: * Ability to work independently and ...
Leading and mentoring junior team members in SOC engineering, including SIEM, SOAR, and process development A successful candidate would possess these skills: * Ability to work independently and ...
Leading and mentoring junior team members in SOC engineering, including SIEM, SOAR, and process development A successful candidate would possess these skills: * Ability to work independently and ...
Sr. Engineer, Information Security (Cloud Security)
Culver City, CA · On-site
$120K - $150K/yr
SOAR (Cortex XSOAR) Operations: * Design, develop, and maintain security automation playbooks using ... Work closely with cross-functional teams, including data engineers, security analysts, and ...
Sr. Engineer, Information Security (Cloud Security)
Culver City, CA · On-site
$120K - $150K/yr
SOAR (Cortex XSOAR) Operations: * Design, develop, and maintain security automation playbooks using ... Work closely with cross-functional teams, including data engineers, security analysts, and ...
Soar Engineer information
See California salary details
$37.5K - $51.3K
5% of jobs
$51.3K - $65K
7% of jobs
$65K - $78.8K
9% of jobs
$81.7K is the 25th percentile. Wages below this are outliers.
$78.8K - $92.6K
14% of jobs
The median wage is $105K / yr.
$92.6K - $106.4K
16% of jobs
$106.4K - $120.1K
13% of jobs
$120.1K - $133.9K
6% of jobs
$141.2K is the 75th percentile. Wages above this are outliers.
$133.9K - $147.7K
8% of jobs
$147.7K - $161.4K
8% of jobs
$161.4K - $175.2K
7% of jobs
$175.2K - $189K
5% of jobs
$37.5K
$114.3K
$189K
How much do soar engineer jobs pay per year?
What is a Soar engineer?
A SOAR (Security Orchestration, Automation, and Response) Engineer is responsible for designing, implementing, and managing security automation solutions within an organization's cybersecurity operations. They work with SOAR platforms to automate repetitive tasks, integrate security tools, and streamline incident response workflows. Their role involves scripting, playbook development, and optimizing security operations to improve efficiency and threat mitigation. SOAR Engineers typically collaborate with SOC teams, threat analysts, and other cybersecurity professionals to enhance an organization's defense mechanisms.
What are some common challenges faced by Soar engineers in their daily work?
SOAR Engineers often face the challenge of integrating diverse security tools and processes to create seamless automated workflows. Ensuring that playbooks accurately address real-world threats while minimizing false positives requires careful tuning and ongoing collaboration with security analysts. Additionally, keeping up with evolving cyber threats and updating automation scripts to handle new scenarios is a regular part of the role. Working as a SOAR Engineer typically involves close teamwork with SOC members and IT staff to ensure incident response efforts are aligned and effective, making adaptability and strong problem-solving skills vital.
What are the key skills and qualifications needed to thrive as a Soar engineer?
To thrive as a SOAR Engineer, you need strong knowledge of cybersecurity, incident response processes, and experience with Security Orchestration, Automation, and Response (SOAR) platforms. Familiarity with tools like Splunk Phantom, Palo Alto Cortex XSOAR, and relevant certifications such as CISSP or CompTIA Security+ are highly valued. Analytical thinking, attention to detail, and effective communication are important soft skills for collaborating across IT and security teams. These skills are crucial for automating threat detection and response, improving security operations efficiency, and minimizing organizational risk.
What are the most commonly searched types of Soar Engineer jobs in California?
The most popular types of Soar Engineer jobs in California are:
What are popular job titles related to Soar Engineer jobs in California?
For Soar Engineer jobs in California, the most frequently searched job titles are:
What job categories do people searching Soar Engineer jobs in California look for?
The top searched job categories for Soar Engineer jobs in California are:

Deloitte rating
8.2
Based on 92 frontline employees who took The Breakroom Quiz
44th of 150 rated financial services
Job description
Join Deloitte's Cyber practice as a Cyber SecOps Senior Consultant and help clients navigate an evolving threat landscape through scalable, resilient security operations solutions. In this hands-on role, you will support high-visibility engagements focused on Google SecOps, threat detection engineering, and automation. You will work with cross-functional teams to develop, implement, and optimize solutions that strengthen monitoring, detection, response, and operational efficiency. Your contributions will help clients build more secure, reliable, and effective cyber operations capabilities.
Recruiting for this role ends on 12/31/2026.
Work you'll do
As a Cyber SecOps Senior Consultant on the Cyber Defense & Resilience team, you will be responsible for:
- Designing and implementing secure, scalable, and resilient Google SecOps architectures for security information and event management (SIEM) and security orchestration, automation, and response (SOAR) deployments aligned with enterprise security policies and regulatory requirements, including General Data Protection Regulation (GDPR) and Payment Card Industry Data Security Standard (PCI DSS)
- Leading deployment of log ingestion pipelines using data fabric technologies and application programming interface integrations, including Bindplane and cloud feeds
- Collaborating with security operations center analysts and threat detection engineers to prioritize, develop, and tune threat detection content within Google SecOps to detect malicious behavior and adversary activity in enterprise environments
- Translating security operations processes into SOAR playbooks and custom integrations to support automated data ingestion, alert enrichment, triage, and response
- Building case management solutions within Google SecOps SOAR, supporting operational metrics and analyst workflows, mentoring junior team members, and staying current on cybersecurity threats, vulnerabilities, and compliance trends
A successful candidate would possess these skills:
- Ability to work independently and collaborate as part of a team
- Effective written and verbal communication skills
- Meticulous attention to detail and quality of work product
- Ability to build and sustain professional relationships
- Ability to lead projects or workstreams
- Ability to manage and prioritize multiple tasks in a fast-paced and dynamic environment
- Strong interpersonal skills and professional demeanor
- Ability to meet deadlines
- Ability to provide clear guidance to others
The team
Deloitte's Cyber Defense & Resilience offering helps clients defend against advanced threats by transforming security operations, monitoring technology, data analytics, and threat intelligence capabilities. The team works with organizations to manage dynamic attack surfaces and strengthen readiness, response, and recovery across cyber incidents and broader business disruptions.
Qualifications
Required:
- Bachelor's degree in computer science, cybersecurity, information systems, or equivalent work experience
- 7+ years of experience in security operations, threat detection engineering, or enterprise information technology security
- Experience with Google Cloud's SecOps tool stack and architecture, specifically security information and event management (SIEM) and security orchestration, automation, and response (SOAR), formerly Google Chronicle and Siemplify
- Experience with security principles and frameworks such as MITRE ATT&CK and Cyber Kill Chain
- Experience with Python for automation and integration development
- Experience with Gostash or Logstash for log normalization and parsing, and with extract, transform, and load (ETL) pipelines and technologies such as Cribl, Bindplane, NXLog, or Kafka
- Ability to travel 50%, on average, based on the work you do and the clients and industries/sectors you serve.
- Limited immigration sponsorship may be available.
Preferred:
- Google Cloud Professional Cloud Architect, Google Cloud Professional Cloud Security Engineer, or Certified Cloud Security Professional certification
- Experience with threat hunting or cyber threat intelligence
- Experience with data fabric technologies such as Bindplane or Cribl
- Experience with infrastructure and networking concepts such as IP networking, virtual private networks (VPNs), domain name system (DNS), load balancing, or firewalls
- Experience with cloud infrastructure platforms such as Amazon Web Services (AWS) or Microsoft Azure
- Experience with SIEM or SOAR tools such as Splunk, Cortex XSOAR, VirusTotal, Mandiant, or Google Threat Intelligence
The wage range for this role takes into account the wide range of factors that are considered in making compensation decisions including but not limited to skill sets; experience and training; licensure and certifications; and other business and organizational needs. The disclosed range estimate has not been adjusted for the applicable geographic differential associated with the location at which the position may be filled. At Deloitte, it is not typical for an individual to be hired at or near the top of the range for their role and compensation decisions are dependent on the facts and circumstances of each case. A reasonable estimate of the current range is $105,400 to $207,800.
You may also be eligible to participate in a discretionary annual incentive program, subject to the rules governing the program, whereby an award, if any, depends on various factors, including, without limitation, individual and organizational performance.
Join Deloitte's Cyber practice as a Cyber SecOps Senior Consultant and help clients navigate an evolving threat landscape through scalable, resilient security operations solutions. In this hands-on role, you will support high-visibility engagements focused on Google SecOps, threat detection engineering, and automation. You will work with cross-functional teams to develop, implement, and optimize solutions that strengthen monitoring, detection, response, and operational efficiency. Your contributions will help clients build more secure, reliable, and effective cyber operations capabilities.
Recruiting for this role ends on 12/31/2026.
Work you'll do
As a Cyber SecOps Senior Consultant on the Cyber Defense & Resilience team, you will be responsible for:
- Designing and implementing secure, scalable, and resilient Google SecOps architectures for security information and event management (SIEM) and security orchestration, automation, and response (SOAR) deployments aligned with enterprise security policies and regulatory requirements, including General Data Protection Regulation (GDPR) and Payment Card Industry Data Security Standard (PCI DSS)
- Leading deployment of log ingestion pipelines using data fabric technologies and application programming interface integrations, including Bindplane and cloud feeds
- Collaborating with security operations center analysts and threat detection engineers to prioritize, develop, and tune threat detection content within Google SecOps to detect malicious behavior and adversary activity in enterprise environments
- Translating security operations processes into SOAR playbooks and custom integrations to support automated data ingestion, alert enrichment, triage, and response
- Building case management solutions within Google SecOps SOAR, supporting operational metrics and analyst workflows, mentoring junior team members, and staying current on cybersecurity threats, vulnerabilities, and compliance trends
A successful candidate would possess these skills:
- Ability to work independently and collaborate as part of a team
- Effective written and verbal communication skills
- Meticulous attention to detail and quality of work product
- Ability to build and sustain professional relationships
- Ability to lead projects or workstreams
- Ability to manage and prioritize multiple tasks in a fast-paced and dynamic environment
- Strong interpersonal skills and professional demeanor
- Ability to meet deadlines
- Ability to provide clear guidance to others
The team
Deloitte's Cyber Defense & Resilience offering helps clients defend against advanced threats by transforming security operations, monitoring technology, data analytics, and threat intelligence capabilities. The team works with organizations to manage dynamic attack surfaces and strengthen readiness, response, and recovery across cyber incidents and broader business disruptions.
Qualifications
Required:
- Bachelor's degree in computer science, cybersecurity, information systems, or equivalent work experience
- 7+ years of experience in security operations, threat detection engineering, or enterprise information technology security
- Experience with Google Cloud's SecOps tool stack and architecture, specifically security information and event management (SIEM) and security orchestration, automation, and response (SOAR), formerly Google Chronicle and Siemplify
- Experience with security principles and frameworks such as MITRE ATT&CK and Cyber Kill Chain
- Experience with Python for automation and integration development
- Experience with Gostash or Logstash for log normalization and parsing, and with extract, transform, and load (ETL) pipelines and technologies such as Cribl, Bindplane, NXLog, or Kafka
- Ability to travel 50%, on average, based on the work you do and the clients and industries/sectors you serve.
- Limited immigration sponsorship may be available.
Preferred:
- Google Cloud Professional Cloud Architect, Google Cloud Professional Cloud Security Engineer, or Certified Cloud Security Professional certification
- Experience with threat hunting or cyber threat intelligence
- Experience with data fabric technologies such as Bindplane or Cribl
- Experience with infrastructure and networking concepts such as IP networking, virtual private networks (VPNs), domain name system (DNS), load balancing, or firewalls
- Experience with cloud infrastructure platforms such as Amazon Web Services (AWS) or Microsoft Azure
- Experience with SIEM or SOAR tools such as Splunk, Cortex XSOAR, VirusTotal, Mandiant, or Google Threat Intelligence
The wage range for this role takes into account the wide range of factors that are considered in making compensation decisions including but not limited to skill sets; experience and training; licensure and certifications; and other business and organizational needs. The disclosed range estimate has not been adjusted for the applicable geographic differential associated with the location at which the position may be filled. At Deloitte, it is not typical for an individual to be hired at or near the top of the range for their role and compensation decisions are dependent on the facts and circumstances of each case. A reasonable estimate of the current range is $105,400 to $207,800.
You may also be eligible to participate in a discretionary annual incentive program, subject to the rules governing the program, whereby an award, if any, depends on various factors, including, without limitation, individual and organizational performance.