Collaborating with security operations center analysts and threat detection engineers to prioritize ... Translating security operations processes into SOAR playbooks and custom integrations to support ...
Collaborating with security operations center analysts and threat detection engineers to prioritize ... Translating security operations processes into SOAR playbooks and custom integrations to support ...
Leading and mentoring junior team members in SOC engineering, including SIEM, SOAR, and process development A successful candidate would possess these skills: * Ability to work independently and ...
New
Leading and mentoring junior team members in SOC engineering, including SIEM, SOAR, and process development A successful candidate would possess these skills: * Ability to work independently and ...
New
Senior Cybersecurity Engineer
Columbus, OH · On-site
$110K - $151K/yr
We're looking for a hands-on Senior Cybersecurity Engineer with strong experience in web ... Manage EDR (CrowdStrike) and anti-ransomware (Halcyon) protections; operate SIEM/SOAR (Google ...
Senior Cybersecurity Engineer
Columbus, OH · On-site
$110K - $151K/yr
We're looking for a hands-on Senior Cybersecurity Engineer with strong experience in web ... Manage EDR (CrowdStrike) and anti-ransomware (Halcyon) protections; operate SIEM/SOAR (Google ...
Senior Cybersecurity Engineer
$110K - $151K/yr
We're looking for a hands-on Senior Cybersecurity Engineer with strong experience in web ... Manage EDR (CrowdStrike) and anti-ransomware (Halcyon) protections; operate SIEM/SOAR (Google ...
New
Senior Cybersecurity Engineer
$110K - $151K/yr
We're looking for a hands-on Senior Cybersecurity Engineer with strong experience in web ... Manage EDR (CrowdStrike) and anti-ransomware (Halcyon) protections; operate SIEM/SOAR (Google ...
New
Senior Lead AI Security Engineer
Columbus, OH · On-site
$107K - $147K/yr
Build secure LLM/RAG services and ML pipelines that integrate with SIEM/XDR, EDR, SOAR, IAM, ITSM, CMDB, code repos, and cloud telemetry. * Establish engineering standards for secure AI: prompt ...
Senior Lead AI Security Engineer
Columbus, OH · On-site
$107K - $147K/yr
Build secure LLM/RAG services and ML pipelines that integrate with SIEM/XDR, EDR, SOAR, IAM, ITSM, CMDB, code repos, and cloud telemetry. * Establish engineering standards for secure AI: prompt ...
Senior Lead AI Security Engineer
Columbus, OH · On-site
$107K - $147K/yr
Build secure LLM/RAG services and ML pipelines that integrate with SIEM/XDR, EDR, SOAR, IAM, ITSM, CMDB, code repos, and cloud telemetry. * Establish engineering standards for secure AI: prompt ...
Senior Lead AI Security Engineer
Columbus, OH · On-site
$107K - $147K/yr
Build secure LLM/RAG services and ML pipelines that integrate with SIEM/XDR, EDR, SOAR, IAM, ITSM, CMDB, code repos, and cloud telemetry. * Establish engineering standards for secure AI: prompt ...
Senior Lead AI Security Engineer
Columbus, OH · On-site
$107K - $147K/yr
Build secure LLM/RAG services and ML pipelines that integrate with SIEM/XDR, EDR, SOAR, IAM, ITSM, CMDB, code repos, and cloud telemetry. * Establish engineering standards for secure AI: prompt ...
Senior Lead AI Security Engineer
Columbus, OH · On-site
$107K - $147K/yr
Build secure LLM/RAG services and ML pipelines that integrate with SIEM/XDR, EDR, SOAR, IAM, ITSM, CMDB, code repos, and cloud telemetry. * Establish engineering standards for secure AI: prompt ...
IT Security
Columbus, OH · On-site
Proficient in using DevOps platforms (Azure DevOps, Copado) * Proficient in using Cloud platforms ... Working knowledge of SIEM/SOAR tools (Google Chronicle) * Working knowledge of integration ...
Quick apply
IT Security
Columbus, OH · On-site
Proficient in using DevOps platforms (Azure DevOps, Copado) * Proficient in using Cloud platforms ... Working knowledge of SIEM/SOAR tools (Google Chronicle) * Working knowledge of integration ...
Cybersecurity Engineer [JOB ID 20260707]
Blacklick, OH · On-site
$70K - $130K/yr
SOAR, SIEM, IDS/IPS, DLP, WAF, Endpoint Security * Linux administration experience * Cloud ... engineering services, operations services, sustainment services and managed security services to ...
Quick apply
Cybersecurity Engineer [JOB ID 20260707]
Blacklick, OH · On-site
$70K - $130K/yr
SOAR, SIEM, IDS/IPS, DLP, WAF, Endpoint Security * Linux administration experience * Cloud ... engineering services, operations services, sustainment services and managed security services to ...
AI Cybersecurity Engineer Principal
Columbus, OH · On-site +1
This role bridges AI engineering, cybersecurity, and cloud platforms to deliver intelligent ... Integrate AI applications with enterprise and cybersecurity tools (SIEM, SOAR, IAM, data platforms)
AI Cybersecurity Engineer Principal
Columbus, OH · On-site +1
This role bridges AI engineering, cybersecurity, and cloud platforms to deliver intelligent ... Integrate AI applications with enterprise and cybersecurity tools (SIEM, SOAR, IAM, data platforms)
... SOAR), Governance, Risk, and Compliance (GRC), and security telemetry platforms. * Establish ... Google Cloud certifications such as Professional Machine Learning Engineer or Professional Cloud ...
New
... SOAR), Governance, Risk, and Compliance (GRC), and security telemetry platforms. * Establish ... Google Cloud certifications such as Professional Machine Learning Engineer or Professional Cloud ...
New
... SOAR), and enterprise security telemetry sources. * Implement machine learning operations (MLOps ... Google Cloud certifications such as Professional Machine Learning Engineer or Professional Cloud ...
New
... SOAR), and enterprise security telemetry sources. * Implement machine learning operations (MLOps ... Google Cloud certifications such as Professional Machine Learning Engineer or Professional Cloud ...
New
Security Automation Engineer
Columbus, OH · On-site
This position will be responsible for designing, engineering, and governing automated vulnerability ... At least two (2) years of experience with API-based integrations, SOAR platforms, automation ...
Security Automation Engineer
Columbus, OH · On-site
This position will be responsible for designing, engineering, and governing automated vulnerability ... At least two (2) years of experience with API-based integrations, SOAR platforms, automation ...
Build and maintain SOAR workflows that automate enrichment, triage, containment, and routine ... Threat hunting, digital forensics, and/or detection engineering experience and writing automation ...
Build and maintain SOAR workflows that automate enrichment, triage, containment, and routine ... Threat hunting, digital forensics, and/or detection engineering experience and writing automation ...
Python Developer [Job ID 20260521]
Columbus, OH · On-site +1
$70K - $130K/yr
Phoenix Cyber is looking for security focused Python programmers to help develop custom plugins and ... Experience with SOAR tools, Swimlane, Cyber Triage, Phantom * Experience with the ELK ...
Python Developer [Job ID 20260521]
Columbus, OH · On-site +1
$70K - $130K/yr
Phoenix Cyber is looking for security focused Python programmers to help develop custom plugins and ... Experience with SOAR tools, Swimlane, Cyber Triage, Phantom * Experience with the ELK ...
Python Developer [Job ID 20260521]
Columbus, OH · Remote
$70K - $130K/yr
Phoenix Cyber is looking for security focused Python programmers to help develop custom plugins and ... Experience with SOAR tools, Swimlane, Cyber Triage, Phantom * Experience with the ELK ...
Quick apply
Python Developer [Job ID 20260521]
Columbus, OH · Remote
$70K - $130K/yr
Phoenix Cyber is looking for security focused Python programmers to help develop custom plugins and ... Experience with SOAR tools, Swimlane, Cyber Triage, Phantom * Experience with the ELK ...
... engineering, automation and playbook development, SOC maturity, log source management, data ... Experience with scripting and playbook development in a SIEM, SOAR, or security platform
New
... engineering, automation and playbook development, SOC maturity, log source management, data ... Experience with scripting and playbook development in a SIEM, SOAR, or security platform
New
Lead the strategic development, design, and continuous improvement of SOAR at Work program offerings, applying benefits and workplace wellness best practices and benchmarking to keep programming ...
Lead the strategic development, design, and continuous improvement of SOAR at Work program offerings, applying benefits and workplace wellness best practices and benchmarking to keep programming ...
Lead the strategic development, design, and continuous improvement of SOAR at Work program offerings, applying benefits and workplace wellness best practices and benchmarking to keep programming ...
Lead the strategic development, design, and continuous improvement of SOAR at Work program offerings, applying benefits and workplace wellness best practices and benchmarking to keep programming ...
Senior lead Digital Product Manager
Columbus, OH · On-site
$122K - $161K/yr
Collaborate with engineering and architecture teams to influence future-state designs and ... Experience with security platforms such as Splunk, SIEM, SOAR, EDR, DLP, email security, cloud ...
Senior lead Digital Product Manager
Columbus, OH · On-site
$122K - $161K/yr
Collaborate with engineering and architecture teams to influence future-state designs and ... Experience with security platforms such as Splunk, SIEM, SOAR, EDR, DLP, email security, cloud ...
Soar Engineer information
See salary details
$38K - $52K
5% of jobs
$52K - $65.9K
7% of jobs
$65.9K - $79.9K
9% of jobs
$82.8K is the 25th percentile. Wages below this are outliers.
$79.9K - $93.8K
14% of jobs
The median wage is $106.4K / yr.
$93.8K - $107.8K
16% of jobs
$107.8K - $121.7K
13% of jobs
$121.7K - $135.7K
6% of jobs
$143.1K is the 75th percentile. Wages above this are outliers.
$135.7K - $149.6K
8% of jobs
$149.6K - $163.6K
8% of jobs
$163.6K - $177.5K
7% of jobs
$177.5K - $191.5K
5% of jobs
$38K
$115.9K
$191.5K
How much do soar engineer jobs pay per year?

Deloitte rating
8.1
Based on 91 frontline employees who took The Breakroom Quiz
56th of 150 rated financial services
Job description
Join Deloitte's Cyber practice as a Cyber SecOps Senior Consultant and help clients navigate an evolving threat landscape through scalable, resilient security operations solutions. In this hands-on role, you will support high-visibility engagements focused on Google SecOps, threat detection engineering, and automation. You will work with cross-functional teams to develop, implement, and optimize solutions that strengthen monitoring, detection, response, and operational efficiency. Your contributions will help clients build more secure, reliable, and effective cyber operations capabilities.
Recruiting for this role ends on 12/31/2026.
Work you'll do
As a Cyber SecOps Senior Consultant on the Cyber Defense & Resilience team, you will be responsible for:
- Designing and implementing secure, scalable, and resilient Google SecOps architectures for security information and event management (SIEM) and security orchestration, automation, and response (SOAR) deployments aligned with enterprise security policies and regulatory requirements, including General Data Protection Regulation (GDPR) and Payment Card Industry Data Security Standard (PCI DSS)
- Leading deployment of log ingestion pipelines using data fabric technologies and application programming interface integrations, including Bindplane and cloud feeds
- Collaborating with security operations center analysts and threat detection engineers to prioritize, develop, and tune threat detection content within Google SecOps to detect malicious behavior and adversary activity in enterprise environments
- Translating security operations processes into SOAR playbooks and custom integrations to support automated data ingestion, alert enrichment, triage, and response
- Building case management solutions within Google SecOps SOAR, supporting operational metrics and analyst workflows, mentoring junior team members, and staying current on cybersecurity threats, vulnerabilities, and compliance trends
A successful candidate would possess these skills:
- Ability to work independently and collaborate as part of a team
- Effective written and verbal communication skills
- Meticulous attention to detail and quality of work product
- Ability to build and sustain professional relationships
- Ability to lead projects or workstreams
- Ability to manage and prioritize multiple tasks in a fast-paced and dynamic environment
- Strong interpersonal skills and professional demeanor
- Ability to meet deadlines
- Ability to provide clear guidance to others
The team
Deloitte's Cyber Defense & Resilience offering helps clients defend against advanced threats by transforming security operations, monitoring technology, data analytics, and threat intelligence capabilities. The team works with organizations to manage dynamic attack surfaces and strengthen readiness, response, and recovery across cyber incidents and broader business disruptions.
Qualifications
Required:
- Bachelor's degree in computer science, cybersecurity, information systems, or equivalent work experience
- 7+ years of experience in security operations, threat detection engineering, or enterprise information technology security
- Experience with Google Cloud's SecOps tool stack and architecture, specifically security information and event management (SIEM) and security orchestration, automation, and response (SOAR), formerly Google Chronicle and Siemplify
- Experience with security principles and frameworks such as MITRE ATT&CK and Cyber Kill Chain
- Experience with Python for automation and integration development
- Experience with Gostash or Logstash for log normalization and parsing, and with extract, transform, and load (ETL) pipelines and technologies such as Cribl, Bindplane, NXLog, or Kafka
- Ability to travel 50%, on average, based on the work you do and the clients and industries/sectors you serve.
- Limited immigration sponsorship may be available.
Preferred:
- Google Cloud Professional Cloud Architect, Google Cloud Professional Cloud Security Engineer, or Certified Cloud Security Professional certification
- Experience with threat hunting or cyber threat intelligence
- Experience with data fabric technologies such as Bindplane or Cribl
- Experience with infrastructure and networking concepts such as IP networking, virtual private networks (VPNs), domain name system (DNS), load balancing, or firewalls
- Experience with cloud infrastructure platforms such as Amazon Web Services (AWS) or Microsoft Azure
- Experience with SIEM or SOAR tools such as Splunk, Cortex XSOAR, VirusTotal, Mandiant, or Google Threat Intelligence
The wage range for this role takes into account the wide range of factors that are considered in making compensation decisions including but not limited to skill sets; experience and training; licensure and certifications; and other business and organizational needs. The disclosed range estimate has not been adjusted for the applicable geographic differential associated with the location at which the position may be filled. At Deloitte, it is not typical for an individual to be hired at or near the top of the range for their role and compensation decisions are dependent on the facts and circumstances of each case. A reasonable estimate of the current range is $105,400 to $207,800.
You may also be eligible to participate in a discretionary annual incentive program, subject to the rules governing the program, whereby an award, if any, depends on various factors, including, without limitation, individual and organizational performance.
Join Deloitte's Cyber practice as a Cyber SecOps Senior Consultant and help clients navigate an evolving threat landscape through scalable, resilient security operations solutions. In this hands-on role, you will support high-visibility engagements focused on Google SecOps, threat detection engineering, and automation. You will work with cross-functional teams to develop, implement, and optimize solutions that strengthen monitoring, detection, response, and operational efficiency. Your contributions will help clients build more secure, reliable, and effective cyber operations capabilities.
Recruiting for this role ends on 12/31/2026.
Work you'll do
As a Cyber SecOps Senior Consultant on the Cyber Defense & Resilience team, you will be responsible for:
- Designing and implementing secure, scalable, and resilient Google SecOps architectures for security information and event management (SIEM) and security orchestration, automation, and response (SOAR) deployments aligned with enterprise security policies and regulatory requirements, including General Data Protection Regulation (GDPR) and Payment Card Industry Data Security Standard (PCI DSS)
- Leading deployment of log ingestion pipelines using data fabric technologies and application programming interface integrations, including Bindplane and cloud feeds
- Collaborating with security operations center analysts and threat detection engineers to prioritize, develop, and tune threat detection content within Google SecOps to detect malicious behavior and adversary activity in enterprise environments
- Translating security operations processes into SOAR playbooks and custom integrations to support automated data ingestion, alert enrichment, triage, and response
- Building case management solutions within Google SecOps SOAR, supporting operational metrics and analyst workflows, mentoring junior team members, and staying current on cybersecurity threats, vulnerabilities, and compliance trends
A successful candidate would possess these skills:
- Ability to work independently and collaborate as part of a team
- Effective written and verbal communication skills
- Meticulous attention to detail and quality of work product
- Ability to build and sustain professional relationships
- Ability to lead projects or workstreams
- Ability to manage and prioritize multiple tasks in a fast-paced and dynamic environment
- Strong interpersonal skills and professional demeanor
- Ability to meet deadlines
- Ability to provide clear guidance to others
The team
Deloitte's Cyber Defense & Resilience offering helps clients defend against advanced threats by transforming security operations, monitoring technology, data analytics, and threat intelligence capabilities. The team works with organizations to manage dynamic attack surfaces and strengthen readiness, response, and recovery across cyber incidents and broader business disruptions.
Qualifications
Required:
- Bachelor's degree in computer science, cybersecurity, information systems, or equivalent work experience
- 7+ years of experience in security operations, threat detection engineering, or enterprise information technology security
- Experience with Google Cloud's SecOps tool stack and architecture, specifically security information and event management (SIEM) and security orchestration, automation, and response (SOAR), formerly Google Chronicle and Siemplify
- Experience with security principles and frameworks such as MITRE ATT&CK and Cyber Kill Chain
- Experience with Python for automation and integration development
- Experience with Gostash or Logstash for log normalization and parsing, and with extract, transform, and load (ETL) pipelines and technologies such as Cribl, Bindplane, NXLog, or Kafka
- Ability to travel 50%, on average, based on the work you do and the clients and industries/sectors you serve.
- Limited immigration sponsorship may be available.
Preferred:
- Google Cloud Professional Cloud Architect, Google Cloud Professional Cloud Security Engineer, or Certified Cloud Security Professional certification
- Experience with threat hunting or cyber threat intelligence
- Experience with data fabric technologies such as Bindplane or Cribl
- Experience with infrastructure and networking concepts such as IP networking, virtual private networks (VPNs), domain name system (DNS), load balancing, or firewalls
- Experience with cloud infrastructure platforms such as Amazon Web Services (AWS) or Microsoft Azure
- Experience with SIEM or SOAR tools such as Splunk, Cortex XSOAR, VirusTotal, Mandiant, or Google Threat Intelligence
The wage range for this role takes into account the wide range of factors that are considered in making compensation decisions including but not limited to skill sets; experience and training; licensure and certifications; and other business and organizational needs. The disclosed range estimate has not been adjusted for the applicable geographic differential associated with the location at which the position may be filled. At Deloitte, it is not typical for an individual to be hired at or near the top of the range for their role and compensation decisions are dependent on the facts and circumstances of each case. A reasonable estimate of the current range is $105,400 to $207,800.
You may also be eligible to participate in a discretionary annual incentive program, subject to the rules governing the program, whereby an award, if any, depends on various factors, including, without limitation, individual and organizational performance.