Quick Overview
Job Description
Google SecOps Engineer
Location: Austin, TX – Hybrid
Interview: Face-to-Face Required
Experience: 3+ Years
Employment Type: W2
Rate: $45/hr on W2
Client: Accenture / HHSC
Job Description
We are seeking an experienced Google SecOps Engineer with strong hands-on experience in Google Security Operations, Chronicle SIEM, detection engineering, threat hunting, incident response, and security automation.
The ideal candidate should have practical experience working with Google SecOps / Chronicle, UDM, YARA-L 2.0, SOAR / Siemplify, log ingestion, security investigations, and automation using Python and REST APIs.
Candidates must be comfortable working in a hybrid environment in Austin, TX and must be available for a face-to-face interview.
Key Responsibilities
Develop, test, optimize, and tune YARA-L 2.0 detection rules.
Perform security investigations using UDM Search, entity graphs, timelines, and security telemetry.
Conduct proactive threat hunting and incident response activities.
Configure and maintain log ingestion, parsing, Bindplane, and parser extensions.
Build and maintain Google SecOps SOAR / Siemplify playbooks and integrations.
Map detections, alerts, and incidents to the MITRE ATT&CK framework.
Perform IOC analysis, correlation, and threat intelligence matching.
Automate security operations tasks using Python, Regex, REST APIs, and scripting.
Integrate security tools and data sources with Google SecOps.
Monitor and investigate security events across cloud, endpoint, network, and enterprise environments.
Work with EDR platforms such as CrowdStrike, Microsoft Defender, or SentinelOne.
Support detection engineering, alert tuning, and security operations improvements.
Required Skills
Hands-on experience with Google SecOps / Google Chronicle
Strong understanding of UDM – Unified Data Model
Experience developing YARA-L / YARA-L 2.0 detection rules
Experience with Google SecOps SOAR / Siemplify
SIEM monitoring and security investigation experience
Detection engineering
Threat hunting
Incident response
MITRE ATT&CK framework
Log ingestion and parsing
Bindplane
Python scripting
Regex
REST APIs
Google Cloud Platform cloud security
Threat intelligence and IOC matching
Security automation
Understanding of TCP/IP, DNS, HTTP, and network security concepts
Experience with CrowdStrike, Microsoft Defender, SentinelOne, or similar EDR technologies
Preferred Qualifications
3+ years of cybersecurity, SIEM, SOC, detection engineering, or security operations experience.
Strong hands-on experience in Google Chronicle / Google SecOps environments.
Experience integrating multiple security data sources into SIEM platforms.
Experience creating automated incident response workflows and SOAR playbooks.
Strong troubleshooting, analytical, and communication skills.
Key Skills
Google SecOps, Google Chronicle, Chronicle SIEM, UDM, Unified Data Model, YARA-L 2.0, YARA-L, Siemplify, Google SecOps SOAR, SIEM, SOAR, Detection Engineering, Threat Hunting, Incident Response, MITRE ATT&CK, Bindplane, Log Ingestion, Log Parsing, Python, Regex, REST APIs, Google Cloud Platform Security, CrowdStrike, Microsoft Defender, SentinelOne, Threat Intelligence, IOC Matching, Security Automation, TCP/IP, DNS, HTTP
Similar jobs
- HP
Quality Engineer
NewHyspan Precision Products
Tucker, GA🇺🇸$65k - $75k/yrHybrid23 hours agoEngineering - AC
Sr. Release Train Engineer (cur_88_70@curatelyai.net)
NewASK Consulting
Atlanta, GA🇺🇸$69 - $70/hrHybrid23 hours agoSAFeScrumAgile+1Engineering - MO
QUALITY ENGINEER
NewMakita Corporation of America
Buford, GA🇺🇸Hybrid23 hours agoEngineering - EE
Quality Engineer
NewExpress Employment Professionals
Dalton, GA🇺🇸Hybrid23 hours agoGD&TEngineering - MC
Quality Engineer
NewManufacturing Company
Buford, GA🇺🇸Hybrid23 hours agoEngineering - NI
Engineer at Major Japanese Bank
NewNSD International, Inc.
Charlotte, NC🇺🇸Hybrid23 hours agoEngineering