Haystack
← Back to Jobs
Engineering
TS

Google SecOps Engineer

TECHAGI SOLUTIONS LLCAustin, TX🇺🇸United StatesPosted Sep 29, 2026

Quick Overview

Salary
$45/hr
Seniority
Mid Senior
Work mode
Hybrid
Location
Austin, TX, United States
Posted
23 hours ago

Job Description

Google SecOps Engineer

Location: Austin, TX – Hybrid
Interview: Face-to-Face Required
Experience: 3+ Years
Employment Type: W2
Rate: $45/hr on W2
Client: Accenture / HHSC

Job Description

We are seeking an experienced Google SecOps Engineer with strong hands-on experience in Google Security Operations, Chronicle SIEM, detection engineering, threat hunting, incident response, and security automation.

The ideal candidate should have practical experience working with Google SecOps / Chronicle, UDM, YARA-L 2.0, SOAR / Siemplify, log ingestion, security investigations, and automation using Python and REST APIs.

Candidates must be comfortable working in a hybrid environment in Austin, TX and must be available for a face-to-face interview.

Key Responsibilities

  • Develop, test, optimize, and tune YARA-L 2.0 detection rules.

  • Perform security investigations using UDM Search, entity graphs, timelines, and security telemetry.

  • Conduct proactive threat hunting and incident response activities.

  • Configure and maintain log ingestion, parsing, Bindplane, and parser extensions.

  • Build and maintain Google SecOps SOAR / Siemplify playbooks and integrations.

  • Map detections, alerts, and incidents to the MITRE ATT&CK framework.

  • Perform IOC analysis, correlation, and threat intelligence matching.

  • Automate security operations tasks using Python, Regex, REST APIs, and scripting.

  • Integrate security tools and data sources with Google SecOps.

  • Monitor and investigate security events across cloud, endpoint, network, and enterprise environments.

  • Work with EDR platforms such as CrowdStrike, Microsoft Defender, or SentinelOne.

  • Support detection engineering, alert tuning, and security operations improvements.

Required Skills

  • Hands-on experience with Google SecOps / Google Chronicle

  • Strong understanding of UDM – Unified Data Model

  • Experience developing YARA-L / YARA-L 2.0 detection rules

  • Experience with Google SecOps SOAR / Siemplify

  • SIEM monitoring and security investigation experience

  • Detection engineering

  • Threat hunting

  • Incident response

  • MITRE ATT&CK framework

  • Log ingestion and parsing

  • Bindplane

  • Python scripting

  • Regex

  • REST APIs

  • Google Cloud Platform cloud security

  • Threat intelligence and IOC matching

  • Security automation

  • Understanding of TCP/IP, DNS, HTTP, and network security concepts

  • Experience with CrowdStrike, Microsoft Defender, SentinelOne, or similar EDR technologies

Preferred Qualifications

  • 3+ years of cybersecurity, SIEM, SOC, detection engineering, or security operations experience.

  • Strong hands-on experience in Google Chronicle / Google SecOps environments.

  • Experience integrating multiple security data sources into SIEM platforms.

  • Experience creating automated incident response workflows and SOAR playbooks.

  • Strong troubleshooting, analytical, and communication skills.

Key Skills

Google SecOps, Google Chronicle, Chronicle SIEM, UDM, Unified Data Model, YARA-L 2.0, YARA-L, Siemplify, Google SecOps SOAR, SIEM, SOAR, Detection Engineering, Threat Hunting, Incident Response, MITRE ATT&CK, Bindplane, Log Ingestion, Log Parsing, Python, Regex, REST APIs, Google Cloud Platform Security, CrowdStrike, Microsoft Defender, SentinelOne, Threat Intelligence, IOC Matching, Security Automation, TCP/IP, DNS, HTTP

Similar jobs