Senior SOC Engineer – Cloud Security & AI Automation

Job Description

  • Contractor
  • Anywhere

Now Hiring: Senior SOC Engineer – Cloud Security & AI Automation
📍 Toronto preferred (Hybrid: 2 days/week onsite)
Are you a hands-on SOC engineer with deep technical chops and a passion for automation, cloud security, and next-gen detection?
If you’ve been in the trenches — not just coordinating efforts, but truly building, deploying, tuning, and defending systems — this role was built for you.

🔍 What You’ll Be Doing:
Act as Security Incident Commander during high-priority threats
Architect, tune, and operate SOC tooling including SIEMs, Microsoft Defender, and CrowdStrike
Build and automate incident response processes using Python and cloud-native tools
Integrate AI & GenAI tools to enhance detection and response (LLMs, prompt-driven automation, etc.)
Lead investigations end-to-end — from alert to root cause to resolution
Secure AWS-based environments including Docker, Kubernetes, ELK, and CloudFormation
Share knowledge across teams and contribute to building a next-gen global SOC
✅ Must-Have Technical Skills (This is hands-on – no exceptions):
Microsoft Defender: Proven, in-depth usage and tuning
CrowdStrike: Full deployment, monitoring, investigation experience
AWS Cloud Environments: Comfortable securing containerized services
Python Scripting: Regular automation of SOC tasks (bonus if you can show code)
Unix/Linux: Daily CLI usage, log parsing, scripting
🧠 Bonus: Experience with Detection Engineering, MITRE ATT&CK, or Kill Chain frameworks
📈 Previous experience at top-tier tech companies or fast-growing startups is highly valued
🧩 Ideal Candidate Profile:
10–15 years in cybersecurity, with at least 5+ years in hands-on SOC engineering roles
Comfortable leading investigations independently — not just escalating them
Strong communicator who can explain the “why” and “how” behind every alert
Pragmatic, low-ego, and results-driven; you know what good security looks like and how to build it
Previously worked at startups or security-focused tech firms (CrowdStrike, Arctic Wolf, etc.) a big plus

📬 Apply Now:
Ready to be part of a lean, technical, high-performance security team?
📩 DM me directly or send your resume to tinak@corgta.com

Let’s build the future of AI-driven cloud security — one smart engineer at a time.