1

Soc Engineer Jobs in Florida (NOW HIRING)

The IS Cyber SOC Engineer III is a highly skilled senior role responsible for the design, deployment, and optimization of our security detection and response infrastructure in support of a 24/7 SOC ...

The IS Cyber SOC Engineer III is a highly skilled senior role responsible for the design, deployment, and optimization of our security detection and response infrastructure in support of a 24/7 SOC ...

SOC Director

Sarasota, FL · On-site

$180 - $240/hr

Manage, coach, and develop a team of SOC Managers responsible for analyst and engineering shifts. * Own SOC health and performance. Define and track the metrics that measure detection quality ...

Training progresses from SOC environment orientation and threat fundamentals through behavioral analytics, threat hunting, and detection engineering, culminating in a live analyst desk capstone where ...

Title- SOC Analyst Location- St. Petersburg, FL (hybrid) Required Qualifications * Experience ... Product Engineering, and IT Services. We provide comprehensive solutions and strategic advisory ...

Leading and mentoring junior team members in SOC engineering, including SIEM, SOAR, and process development A successful candidate would possess these skills: * Ability to work independently and ...

Leading and mentoring junior team members in SOC engineering, including SIEM, SOAR, and process development A successful candidate would possess these skills: * Ability to work independently and ...

Engineer, test, and deploy new detection logic, alerting mechanisms, behavioral analytics, and ATT ... SOC Operations Maturity & Operational Excellence (Efficiency, Coverage & Continuous Improvement)

Engineer, test, and deploy new detection logic, alerting mechanisms, behavioral analytics, and ATT ... SOC Operations Maturity & Operational Excellence (Efficiency, Coverage & Continuous Improvement)

Engineer, test, and deploy new detection logic, alerting mechanisms, behavioral analytics, and ATT ... SOC Operations Maturity & Operational Excellence (Efficiency, Coverage & Continuous Improvement)

Engineer, test, and deploy new detection logic, alerting mechanisms, behavioral analytics, and ATT ... SOC Operations Maturity & Operational Excellence (Efficiency, Coverage & Continuous Improvement)

Engineer, test, and deploy new detection logic, alerting mechanisms, behavioral analytics, and ATT ... SOC Operations Maturity & Operational Excellence (Efficiency, Coverage & Continuous Improvement)

next page

Showing results 1-20

Soc Engineer information

What is a SOC engineer?

A SOC (Security Operations Center) Engineer is responsible for monitoring, analyzing, and responding to cybersecurity incidents within an organization. They configure security tools, investigate threats, and implement measures to protect networks and data from cyberattacks. SOC Engineers also create security policies, generate reports, and collaborate with analysts to improve incident detection and response. Their role is crucial in maintaining a company's cybersecurity posture and minimizing risks.

What does a SOC engineer do?

A typical day for a SOC Engineer involves monitoring security alerts, investigating potential threats, and collaborating with team members to respond to incidents quickly and effectively. You’ll review logs and network traffic, conduct vulnerability assessments, and document findings to ensure the organization’s systems remain secure. The role often requires working in shifts to provide 24/7 coverage, and there is frequent interaction with IT, risk management, and other business units. Over time, SOC Engineers can advance to senior analyst roles, specialize in threat intelligence, or move into cybersecurity leadership positions. This dynamic environment offers continuous learning opportunities and exposure to the latest security technologies and attack tactics.

What skills and qualifications are needed to be a SOC engineer?

To thrive as a SOC (Security Operations Center) Engineer, you need expertise in cybersecurity concepts, incident response, threat analysis, and a relevant degree or certifications like CompTIA Security+, CISSP, or CEH. Familiarity with SIEM platforms (such as Splunk or QRadar), firewalls, intrusion detection/prevention systems, and vulnerability scanning tools is crucial. Strong analytical thinking, problem-solving skills, and effective communication are valuable soft skills for this position. These skills enable SOC Engineers to detect, analyze, and respond to security incidents efficiently, protecting organizational assets from cyber threats.

How much do SOC engineers make?

SOC engineers typically earn between $70,000 and $120,000 annually, depending on experience, certifications, and location. Entry-level positions may start lower, while experienced professionals with certifications like CISSP or CEH can earn higher salaries, especially in high-demand environments with advanced security tools.

What job categories do people searching Soc Engineer jobs in Florida look for?

The top searched job categories for Soc Engineer jobs in Florida are:

Infographic showing various Soc Engineer job openings in Florida as of August 2026, with employment types broken down into 91% Full Time, 5% Part Time, and 4% Contract. Highlights an 85% Physical, 6% Hybrid, and 9% Remote job distribution.

Cyber SOC Engineer III

BankUnited

Miami Lakes, FL • On-site

Full-time

Posted 11 days ago


BankUnited rating

8.0

Company rating: 8.0 out of 10

Based on 5 frontline employees who took The Breakroom Quiz

71st of 171 rated banks


Job description

JOB SUMMARY: The IS Cyber SOC Engineer III is a highly skilled senior role responsible for the design, deployment, and optimization of our security detection and response infrastructure in support of a 24/7 SOC to support its operational efficiency. This role will ensure the defensive stack, including SIEM, SOAR, EDR, NDR, and DLP, is functioning at peak performance across a hybrid environment consisting of cloud workloads and on-premises locations. This role focuses on ensuring the organization's detection stack is automated, scalable, and resilient against modern adversaries. This position will work closely with the Security Platform Operations Team, Cloud Security Engineering, Network Engineering, and Cloud and Enterprise Architecture Teams to maintain the efficiency and effectiveness of the SOC's tools and environment and serve as a liaison during product evaluations, implementations, and technology refresh projects. This position is responsible for representing the needs of the SOC to ensure effective operational continuity and serves as the escalation contact for product support. Additionally, the role provides direct assistance to the SOC during security incidents. This position plays a vital role in establishing and maintaining a corporate-wide information security engineering and architecture program to ensure information assets are adequately protected and that a framework is implemented which upholds current standard operating procedures for technology platforms and processes. Additionally, this position provides leadership in the definition, implementation, evaluation, and maintenance of controls to protect systems and applications in accordance with security requirements. The SOC Engineer III holds key responsibility for providing feedback to the Security Operations Center (SOC) Manager regarding the security architecture framework to ensure systems lifecycle activities remain secure through development, acquisition, certification, and accreditation processes for all information assets. The position requires staying current on security threats, trends, and technologies while managing and supporting existing security solutions, evaluating, designing, and implementing new security controls, and helping the organization meet security objectives.
ESSENTIAL DUTIES AND RESPONSIBILITIES
  • Subject matter expert in their field, driving resource allocations, accountability for deliverables, and exception management documentation.
  • Monitor and assist in maintaining a hybrid visibility architecture.
  • Support SOC monitoring personnel in building and optimizing detection logic for threat hunting and SOAR playbooks to automate repetitive tasks.
  • Oversee the health and tuning of SOC tools.
  • Serve as a technical leader and escalation point for SOC tool failures and provide product SME support during incident investigations.
  • Participate in writing and implementing security policies, standards, and procedures; continuously improve the effectiveness of the corporate security program.
  • Participate in on-call and shift work supporting SOC operations, including incident response.
  • Monitor regulatory and legislative changes impacting the protection of regulated data (SOX, GLBA, etc.).
  • Govern security metrics demonstrating security program effectiveness, reduced incidents, positive audit outcomes, and program cost reductions.
  • Support research and development of mitigation strategies against emerging threats.
  • Lead technical and non-technical projects, including tracking, issue management, and follow-up.
  • Provide short-, medium-, and long-term analysis of internal and external threat, protection, and response data.
  • Monitor and validate implementation of security practices required to comply with GLBA, PCI-DSS, HIPAA, SOX, and other regulations.
  • Provide leadership support in planning, designing, and evaluating privacy and security-related projects.
  • Adhere to all applicable federal and state laws and regulations, including anti-money laundering requirements (Bank Secrecy Act, USA PATRIOT Act, etc.).
  • Adhere to Bank policies and procedures and complete required training.
  • Identify and report suspicious activity.

QUALIFICATIONS
Education
  • Bachelor's degree in Cybersecurity, Computer Science, Computer Information Systems, Information Security Management, or related field preferred.
  • Equivalent experience: 4 additional years of professional engineering experience (10-12 years total) in lieu of a degree.

Experience
  • 8+ years of experience in information technology and information security (IT/IS).
  • 5+ years in Security Engineering, Network Engineering, SOC, TOC, and/or NOC Operations.
  • 3+ years managing security policies within cloud and on-premises environments preferred.
  • Experience with SOC automation workflows and AI tools.
  • Experience with Detection Engineering.
  • Experience with cloud platforms, IAM, and VPC security.
  • Experience with digital forensics and incident response.
  • Experience with Active Directory/Entra ID, Group Policy, and network security.
  • Experience with SIEM and EDR platforms.
  • Experience with Wiz, Netskope, or equivalent CSPM solutions.
  • Experience with firewalls, WAFs, and proxy/VPN technologies.
  • Experience creating technical diagrams.
  • Experience creating and maintaining runbooks and playbooks.
  • Experience with policy management.
  • Experience curating threat intelligence feeds.
  • Experience with log analysis.
  • Experience with threat hunting.
  • Proficiency in PowerShell, YAML, Python, and Infrastructure as Code tools preferred.
  • Experience using Snowflake or equivalent security data lake technologies preferred.
  • Experience with container security (e.g., Kubernetes) preferred.
  • Experience leading projects preferred.
  • Experience within a financial institution preferred.

Licenses and Certifications
Preferred certifications include:
  • CISSP
  • CCSP
  • CISA
  • CISM
  • GCDA
  • OSCP
  • Advanced security, cloud, network, or platform-related certifications

Knowledge, Skills, and Abilities
  • Ability to understand long-term organizational strategies and incorporate security vision into planning.
  • Ability to formulate recommendations, present solutions, and develop implementation plans.
  • Strategic thinking with the ability to translate strategy into action.
  • Ability to initiate, lead, and manage risk management, compliance, and security governance activities.
  • Strong technical troubleshooting skills.
  • Broad understanding of IAM, cybersecurity, governance, risk, compliance, security operations, and business processes.
  • Current knowledge of cybersecurity threats, trends, and technologies.
  • Ability to influence and manage expectations with senior leadership.
  • High degree of initiative and dependability.
  • Ability to effectively collaborate across business and technical teams.
  • Strong written, verbal, and presentation communication skills.
  • Strong teamwork and cross-functional collaboration skills.
  • Strong project management and leadership abilities.
  • Strong organizational, prioritization, and detail orientation skills.
  • Working knowledge of Microsoft Word, Excel, PowerPoint, and Visio.
  • Advanced knowledge of information security architecture, technologies, design and implementation, policy development, risk assessments, internet security, and networking.

Additional Information
  • Candidates residing within BankUnited's geographic footprint may be given preference.

What BankUnited employees say

Pay

Benefits

Hours and flexibility

Workplace

Get the full story on Breakroom