Security Operations Engineer II optimizing security operations at Credit Acceptance. Collaborating on threat response and managing security tool configurations with a focus on automation.
Manage proxy filtering policies, exceptions, SSL inspection, and performance troubleshooting.
Build automation and playbooks (Python/PowerShell, SOAR, APIs) to streamline SecOps tasks.
Implement CI/CD pipelines and Infrastructure-as-Code workflows for consistent, auditable security configuration changes.
Author and tune detection rules; improve signal quality and reduce false positives.
Maintain and author health dashboards, uptime/coverage metrics, and change governance documentation.
Conduct knowledge transfers through runbooks, how-to guides, tabletop exercises, and lunch & learn training sessions.
Maintain upgrade schedules, license compliance, configuration baselines, and key/secret rotations.
Analyze block events for false positives; measure impact; retire exceptions on schedule and report residual risk.
Build and maintain an automation backlog in partnership with SecOps, prioritizing high-frequency, high-toil tasks.
Provide on-call support for tooling availability and ingestion/normalization issues.
Report on metrics (uptime, coverage, MTTR, lead time, change success rate, exception aging).
Requirements
Bachelor’s degree in computer science, Information Systems, Data Science or closely related field of study or equivalent experience
Minimum 2 years of experience in cyber security, anomaly detection, Security Operations Center (SOC) detection, threat analytics, security incident and event management (SIEM), information technology (IT), operations incident response, network security or security engineering
Basic experience administering, deploying and managing security tools.
Basic experience operating WAF/proxy and SIEM/SOAR.
Scripting in Python and/or PowerShell and building API integrations; JSON/YAML proficiency.
CI/CD and Git workflows; Infrastructure-as-Code for security configurations.
Basic understanding of TLS/SSL, HTTP, identity-aware policies, and egress/ingress routing.
Documentation discipline and change management (ITIL basics).
Ability to produce formal and informal reports, briefings, and analysis of security controls.
Experience with Endpoint Detection and Response (EDR) or Intrusion Detection System or Intrusion Prevention System (IDS/IPS) monitoring tools.
Understanding of MITRE ATT&CK Framework and Cyber Kill Chain flow
Understanding of incident response processes and risk management.
Benefits
Excellent benefits package that includes 401(K) match
Adoption assistance
Parental leave
Tuition reimbursement
Comprehensive medical/dental/vision
Many nonstandard benefits that make us a Great Place to Work
Cyber Security Operations Manager overseeing global security operations and incident response for LEAP. Improving security measures and compliance frameworks aligned with business growth.
Senior Engineer ensuring the protection of information systems and mitigating cybersecurity threats at Fiserv. Collaborating with teams to enhance security protocols and maintain system integrity.
Associate Manager overseeing daily physical security operations at Workday’s Dublin site. Leading the security team and collaborating with stakeholders for effective service delivery.
Cybersecurity Operations Senior Manager for Boeing, leading classified program teams in protecting sensitive data. Championing security compliance and collaborating with U.S. government officials on cybersecurity strategies.
Senior Manager overseeing Classified Cybersecurity operations for Space Intelligence and Weapon Systems division at Boeing. Leading compliance and strategic cybersecurity initiatives in a hybrid work environment.
Head of Technology Operations & Security leading IT and security for a deep - tech scale - up. Overseeing IT operations and governance while implementing security within quantum communication technologies.
Head of IT & Security Operations ensuring secure cloud - based IT for quantum communication technologies. Leading a small IT team and aligning security, compliance, and business priorities.
L3 SOC Analyst managing security escalation cases using threat intelligence at Hewlett Packard Enterprise. Focused on cybersecurity incidents and team mentorship in a hybrid environment.
Senior Security Analyst triaging and investigating security alerts for award - winning IT provider. Collaborating to improve detection capabilities and mentor junior analysts in SOC environment.
Junior Network Analyst in NetSecOps at Porto managing network security and infrastructure. Focus on connectivity and collaboration for seamless communication across the company.