Rhodian Group Logo

Rhodian Group

Cybersecurity Engineer - Level 2

Posted 2 Days Ago
Remote
Hiring Remotely in United States
Junior
Remote
Hiring Remotely in United States
Junior
Monitor, triage, and investigate security alerts from SIEM/EDR; perform incident response, root-cause analysis, threat hunting, SIEM tuning, documentation, and escalate complex incidents to senior teams.
The summary above was generated by AI

About Rhodian Group

Rhodian Group helps businesses build and manage their network environments with predictably priced managed IT services so they can focus on their core strengths and growth initiatives. They also help businesses identify and reduce cybersecurity and non-compliance risks. Their combination of IT, cybersecurity, and compliance services helps businesses operate safely, while complying with industry mandates and regulatory requirements.

Role Overview 

The Cybersecurity Level 2 Engineer plays a critical role in the Security Operations Center (SOC), responsible for monitoring, investigating, and responding to security alerts and incidents across client or enterprise environments. This role requires hands-on experience with SIEM platforms, endpoint security tools, and incident response processes, with the ability to escalate and remediate threats effectively. 


Key Responsibilities 

  • Monitor and triage security alerts generated by SIEM, EDR, and security monitoring tools 
  • Investigate security incidents including phishing, malware, endpoint compromise, and unauthorized access 
  • Perform root-cause analysis and document incident findings and remediation actions 
  • Tune SIEM detection rules, alerts, and dashboards to reduce false positives and improve fidelity 
  • Conduct threat hunting activities using logs from endpoints, networks, cloud platforms, and identity providers 
  • Respond to security incidents in accordance with established incident response playbooks and SLAs 
  • Escalate complex or high-risk incidents to Level 3 or Incident Response teams with detailed context and evidence 
  • Assist with vulnerability management findings and validation of remediation 
  • Support log ingestion, parsing, normalization, and retention requirements for SIEM platforms 
  • Maintain accurate case notes, incident reports, and security documentation 
  • Collaborate with IT, engineering, and security teams to improve overall security posture 


Required Qualifications 

  • 2+ years of hands-on experience in a SOC, cybersecurity, or security operations role 
  • Practical experience working with SIEM platforms (Splunk, Microsoft Sentinel, LogRhythm, QRadar, Elastic) 
  • Experience analyzing logs from endpoints, firewalls, IDS/IPS, cloud, and identity systems 
  • Familiarity with EDR tools (CrowdStrike, SentinelOne, Microsoft Defender, Datto EDR) 
  • Understanding of the incident response lifecycle and security alert triage 
  • Working knowledge of common attack techniques and indicators of compromise (IOCs) 
  • Experience with the MITRE ATT&CK framework 
  • Strong documentation and communication skills 


Preferred Qualifications 

  • Experience in an MSP or multi-tenant SOC environment 
  • Familiarity with SOAR tools and automation workflows 
  • Exposure to cloud security logging (Azure, AWS, Microsoft 365) 
  • Experience with vulnerability scanning tools (Qualys, Nessus, Rapid7) 
  • Basic scripting or query experience (KQL, SPL, SQL, PowerShell, Python) 
  • Relevant certifications: Security+, CySA+, SC-200, Splunk Core Certified User 


What Success Looks Like 

  • Security alerts are investigated accurately and efficiently 
  • Incidents are escalated with high-quality analysis and evidence 
  • SIEM detections improve over time through tuning and feedback 
  • Threats are identified early, contained effectively, and documented clearly 
  • Strong collaboration with SOC peers and senior security engineers 

Top Skills

Crowdstrike
Datto Edr
Edr
Elastic
Endpoints
Firewalls
Identity Systems
Ids/Ips
Logrhythm
Microsoft Defender
Microsoft Sentinel
Mitre Att&Ck
Qradar
Sentinelone
SIEM
Splunk
HQ

Rhodian Group Rosemont, Illinois, USA Office

5600 N River Rd, Rosemont, Illinois, United States, 60018

Similar Jobs

20 Minutes Ago
Easy Apply
Remote
United States
Easy Apply
100K-170K Annually
Senior level
100K-170K Annually
Senior level
Cloud • Information Technology • Security • Software
The role involves developing territory plans, generating new business, managing the sales process, and advocating for customers in the GRC software market.
Top Skills: Sales Automation SoftwareSalesforce
20 Minutes Ago
Easy Apply
Remote
United States
Easy Apply
165K-200K Annually
Senior level
165K-200K Annually
Senior level
Cloud • Information Technology • Security • Software
Lead a team of engineers in the development of a SaaS application focused on governance, risk, and compliance management. Responsible for technical direction, quality, team growth, and execution of product initiatives in an agile environment.
Top Skills: AngularAnsibleAWSConfluenceCypressDockerGoogle SuiteGitlabGoJasmineJavaJIRAJunitKotlinKubernetesNeo4JPostgresRabbitMQRedisSassSlackSpectatorSpring BootTerraformTypescriptWebpack
21 Minutes Ago
Easy Apply
Remote or Hybrid
United States
Easy Apply
175K-205K Annually
Senior level
175K-205K Annually
Senior level
Legal Tech • Software • Generative AI
Lead the Account Based Marketing strategy to engage high-value accounts, focusing on developing playbooks, measurement frameworks, and cross-functional collaboration.
Top Skills: AbmAIBusiness Intelligence (Bi) DashboardsCustomer Relationship Management (Crm)Demand GenerationMarketing Automation Platforms (Map)

What you need to know about the Chicago Tech Scene

With vibrant neighborhoods, great food and more affordable housing than either coast, Chicago might be the most liveable major tech hub. It is the birthplace of modern commodities and futures trading, a national hub for logistics and commerce, and home to the American Medical Association and the American Bar Association. This diverse blend of industry influences has helped Chicago emerge as a major player in verticals like fintech, biotechnology, legal tech, e-commerce and logistics technology. It’s also a major hiring center for tech companies on both coasts.

Key Facts About Chicago Tech

  • Number of Tech Workers: 245,800; 5.2% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: McDonald’s, John Deere, Boeing, Morningstar
  • Key Industries: Artificial intelligence, biotechnology, fintech, software, logistics technology
  • Funding Landscape: $2.5 billion in venture capital funding in 2024 (Pitchbook)
  • Notable Investors: Pritzker Group Venture Capital, Arch Venture Partners, MATH Venture Partners, Jump Capital, Hyde Park Venture Partners
  • Research Centers and Universities: Northwestern University, University of Chicago, University of Illinois Urbana-Champaign, Illinois Institute of Technology, Argonne National Laboratory, Fermi National Accelerator Laboratory

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account