Everpure
data storage
SecurityOperationsEngineer
Neural analysis suggests this role is
optimal for Mid+ candidates.
“Security Operations Engineer at Everpure. Skills: Splunk, Python, Security Operations, Incident Response. Develop and mature security use cases. Build and refine detections”
What You'll Achieve.
identify real attacks, misuse, intrusions, and data loss events with speed and confidence; Success measured by signal quality; attack reduction; faster containment; continuous operational improvement
Industry & Context.
analytical thinking; translate ambiguous threats or operational gaps into concrete detection logic
What They're Looking For.
Must Have
direct experience with Splunk, Solid understanding of the incident response lifecycle, understanding of foundational networking, systems, cloud, and security principles, Ability to write scripts and automate tasks using Python or a similar language, Ability to work with APIs, integrate data sources, and automate enrichment or response actions, analytical thinking and the ability to translate ambiguous threats or operational gaps into concrete detection logic, Excellent written and verbal communication skills, with the ability to collaborate effectively across technical and non-technical teams, Bachelor’s degree in Computer Science, Information Security, Engineering, or a related technical field
Nice to Have
Exposure to SIEMs (e. g. , Splunk) or SOAR platforms (e. g. , Tines, XSOAR), Experience with SOC technologies such as IDS/IPS, UTM firewalls, EDR, anti-virus, network-based threat detection, and netflow, Familiarity with software development practices and secure coding principles, Experience with cloud-native monitoring (e. g. , AWS Config, CloudTrail, Audit Logs), Security certifications: GCIH, AWS Security Specialty, or equivalent
What You'll Do.
Develop and mature security use cases
Build and refine detections
Build detections across multiple data domains
Correlate signals from diverse tooling
Map business processes to security use cases
Support incident triage
Develop enrichment and automation workflows
Improve detection quality
Collaborate on logging strategy
How You'll Work.
Team & Collaboration
Partner with the security operations lead; Partner with broader security team; Partner with business units; Partner with IT; Partner with engineering; Partner with internal security stakeholders; Collaborate effectively across technical and non-technical teams
Communication Scope
Excellent written and verbal communication skills; ability to collaborate effectively across technical and non-technical teams
Full Job Description
We’re in an unbelievably exciting area of tech and are fundamentally reshaping the data storage industry. Here, you lead with innovative thinking, grow along with us, and join the smartest team in the industry. This type of work—work that changes the world—is what the tech industry was founded on. So, if you're ready to seize the endless opportunities and leave your mark, come join us. THE ROLE You will partner with the security operations lead and broader security team to develop and mature security use cases that apply across the company’s environment and operations. Your mission is to build and refine the detections, policies, and response logic that enable the team to identify real attacks, misuse, intrusions, and data loss events with speed and confidence. This is not a passive monitoring role. You will be expected to understand how the business operates, how attackers move, where meaningful signals live, and how to translate that knowledge into durable security content and response workflows. Success in this role is measured not by alert volume, but by signal quality, attack reduction, faster containment, and continuous operational improvement. WHAT YOU’LL DO Design, implement, and maintain high-fidelity detections, correlation rules, alerts, dashboards, and use cases in Splunk and related security platforms. Build detections across multiple data domains, including identity, endpoint, network, cloud infrastructure, SaaS applications, DLP, vulnerability, and asset posture. Correlate signals from diverse tooling and data sources to identify attacker behavior, misuse, anomalous activity, and material security risk. Partner with business units, IT, engineering, and internal security stakeholders to map business processes and workloads to security use cases and required telemetry. Support and participate in incident triage, investigation, containment, and post-incident improvement activities. Develop enrichment and automation workflows using Python, APIs, and secur
Applying for this Security Operations Engineer role?
Most applicants get filtered before a human reads their resume. See if yours makes the cut.
How to Apply on Greenhouse
- Create a Greenhouse profile before applying — it saves time across multiple applications.
- Upload your resume as a PDF; the parser handles it better than Word.
- Answer all knockout questions carefully — wrong answers auto-reject before a human sees you.
- Enable email notifications to track application status in real time.
ANONYMOUS · UNFILTERED
What do employees actually say about Everpure?
Real rants from real employees. Read before you apply.