1

Soar Engineer Jobs in Georgia (NOW HIRING)

- Privileged Access Engineer (PAM) with AI Capabilities Role Overview The Privileged Access Engineer ... IAM systems (Entra ID, Okta, SailPoint) Security tools (SIEM, SOAR, EDR/XDR) Cloud platforms (AWS ...

Security Engineering & Tool Administration ... Design, configure, implement, and maintain security platforms including SIEM, EDR/XDR, SOAR ...

Senior CyberSecurity Specialist - Engineer (SIEM/SOAR) Location: Remote Reports To: Senior Manager, Security Engineering Company Overview Newell Brands (NASDAQ: NWL) is a leading global consumer ...

Senior CyberSecurity Specialist - Engineer (SIEM/SOAR) Location: Remote Reports To: Senior Manager, Security Engineering Company Overview Newell Brands (NASDAQ: NWL) is a leading global consumer ...

Showing results 21-40

Soar Engineer information

See Georgia salary details

$32.1K

$97.8K

$161.7K

How much do soar engineer jobs pay per year?

As of Sep 6, 2026, the average yearly pay for soar engineer in Georgia is $97,834.00, according to ZipRecruiter salary data. Most workers in this role earn between $70,100.00 and $127,900.00 per year, depending on experience, location, and employer.

What is a Soar engineer?

A SOAR (Security Orchestration, Automation, and Response) Engineer is responsible for designing, implementing, and managing security automation solutions within an organization's cybersecurity operations. They work with SOAR platforms to automate repetitive tasks, integrate security tools, and streamline incident response workflows. Their role involves scripting, playbook development, and optimizing security operations to improve efficiency and threat mitigation. SOAR Engineers typically collaborate with SOC teams, threat analysts, and other cybersecurity professionals to enhance an organization's defense mechanisms.

What are the key skills and qualifications needed to thrive as a Soar engineer?

To thrive as a SOAR Engineer, you need strong knowledge of cybersecurity, incident response processes, and experience with Security Orchestration, Automation, and Response (SOAR) platforms. Familiarity with tools like Splunk Phantom, Palo Alto Cortex XSOAR, and relevant certifications such as CISSP or CompTIA Security+ are highly valued. Analytical thinking, attention to detail, and effective communication are important soft skills for collaborating across IT and security teams. These skills are crucial for automating threat detection and response, improving security operations efficiency, and minimizing organizational risk.

What are some common challenges faced by Soar engineers in their daily work?

SOAR Engineers often face the challenge of integrating diverse security tools and processes to create seamless automated workflows. Ensuring that playbooks accurately address real-world threats while minimizing false positives requires careful tuning and ongoing collaboration with security analysts. Additionally, keeping up with evolving cyber threats and updating automation scripts to handle new scenarios is a regular part of the role. Working as a SOAR Engineer typically involves close teamwork with SOC members and IT staff to ensure incident response efforts are aligned and effective, making adaptability and strong problem-solving skills vital.

What are the most commonly searched types of Soar Engineer jobs in Georgia?

The most popular types of Soar Engineer jobs in Georgia are:

Infographic showing various Soar Engineer job openings in Georgia as of August 2026, with employment types broken down into 90% Full Time, 6% Part Time, and 4% Contract. Highlights an 88% Physical, 4% Hybrid, and 8% Remote job distribution, with an average salary of $97,834 per year, or $47 per hour.

Microsoft Sentinel Subject Matter Expert

2T Consulting

Marietta, GA • On-site

Full-time

This job post has expired today. Applications are no longer accepted.


Job description

We are seeking an experienced Microsoft Sentinel Subject Matter Expert (SME) to design, implement, optimize, and manage Microsoft Sentinel and Azure security solutions. The role will focus on SIEM/SOAR engineering, threat detection, incident response, security automation, cloud security, and compliance across enterprise Azure environments.

Roles and Responsibilities
  • Design, implement, configure, and manage Microsoft Sentinel SIEM/SOAR solutions.
  • Integrate security data sources into Azure Log Analytics, including Syslog, CEF, APIs, and threat intelligence feeds.
  • Develop, optimize, and maintain KQL queries, analytics rules, detection rules, alerts, workbooks, and dashboards.
  • Develop automated security response workflows using Azure Logic Apps and Microsoft Copilot for Security.
  • Perform threat hunting, incident investigation, detection engineering, and response activities in collaboration with SOC teams.
  • Implement and manage Azure security controls aligned with Zero Trust principles.
  • Configure and secure enterprise Azure environments, including identity, access, monitoring, and security services.
  • Assess vulnerabilities, analyze attacker TTPs, and support remediation and security improvement initiatives.
  • Integrate and manage Microsoft Defender XDR, including Defender for Endpoint, Office 365, Identity, and Cloud Apps.
  • Support cloud security governance, compliance, risk assessments, and audit activities.
  • Provide technical guidance on security architecture, SIEM/SOAR strategy, detection engineering, and cloud security initiatives.
  • Develop security standards, operational procedures, and best practices for Sentinel and Azure security services.
  • Collaborate with Security Operations, Cloud Engineering, Identity, Application Security, and Governance teams.
Required Qualifications
  • Bachelor’s degree in Cybersecurity, Computer Science, Information Technology, or a related field.
  • 5+ years of cybersecurity experience, including strong hands-on experience with Microsoft Sentinel engineering and administration.
  • Strong expertise in:
    • Microsoft Sentinel
    • Azure Log Analytics
    • Kusto Query Language (KQL)
    • Azure Logic Apps
    • Microsoft Defender XDR
    • Azure Security and Identity Services
    • Microsoft Entra ID
    • Privileged Identity Management (PIM)
    • Conditional Access
    • Security monitoring and incident response
    • CI/CD security and application security scanning
  • Strong understanding of SIEM/SOAR, threat detection, threat hunting, incident response, and security automation.
  • Experience implementing security controls in enterprise Azure environments.
  • Strong knowledge of Zero Trust architecture and cloud security best practices.
Preferred Qualifications
  • Experience with Azure Government / Government Cloud environments.
  • Experience with FISMA, FedRAMP, and NIST security and compliance frameworks.
  • Relevant certifications such as CISSP, CCSP, Microsoft Certified: Azure Security Engineer Associate, or Microsoft Certified: Cybersecurity Architect Expert.
  • Experience working with security auditors, compliance teams, and executive stakeholders.