Remote
SecOps Engineer - North Central region (Remote in the U.S.)
About this role
GuidePoint Security provides trusted cybersecurity expertise, solutions and services that help organizations make better decisions and minimize risk. By taking a three-tiered, holistic approach for evaluating security posture and ecosystems, GuidePoint enables some of the nation’s top organizations, such as Fortune 500 companies and U.S. government agencies, to identify threats, optimize resources and integrate best-fit solutions that mitigate risk.
General Description We are looking for a skilled Security Operations Engineer to support the implementation, optimization, and operational support of security operations technologies and workflows. This role will engage in the development of security telemetry pipelines, SIEM detection content, and security automation while providing “Wow Them” service to clients, internal customers, and co-workers. The Security Operations Engineer must demonstrate strong technical troubleshooting, analytical, and client communication skills.
The engineer must lead through influence and apply sound business and financial awareness when making technical decisions involving project scope, level of effort, platform performance, data volume, and client value. About the North Central region SecOps Practice The Security Operations Practice is responsible for helping clients design, implement, optimize, and operate the technologies and processes used to detect, investigate, and respond to cybersecurity threats.
We deliver consulting and engineering services across SIEM, SOAR, security telemetry, detection engineering, observability, and SOC transformation. Our team of engineers, consultants, architects, and platform specialists focuses on security data onboarding, detection coverage, workflow automation, platform optimization, and operational maturity. We partner with clients, account executives, project managers, technology providers, and internal delivery teams to implement practical and supportable security capabilities.
Key areas of focus include: • Creating repeatable and measurable Security Operations services. • Improving telemetry quality, detection coverage, and investigation efficiency. • Evaluating and adopting emerging security technologies responsibly. Roles and Responsibilities : • Configure and support the ingestion of security telemetry into SIEM platforms using agents, APIs, syslog, and native integrations. • Implement parsing, field extraction, enrichment, and normalization logic using formats such as regex, JSON, key-value data, CEF, and Windows Event Logs.