SOC Engineer - Use Case Developer

SOC · Beachwood, Ohio
Department SOC
Employment Type Full-Time
Minimum Experience Mid-level

Job Opening: SOC Engineer - Use Case Developer

About Hurricane Labs

Hurricane Labs is a dynamic Managed Services Provider that unlocks the potential of Splunk and security for diverse enterprises across the United States. With a dedicated, Splunk-focused team and an emphasis on humanity and collaboration, we provide the skills, resources, and results to help make our customers’ lives easier. 

Our cooperative geek culture empowers the success of our team. We encourage an open environment where diverse, passionate people feel comfortable sharing ideas, learning through experience, and succeeding together. 

For more information, visit and follow us on Twitter @hurricanelabs.

SOC Engineer - Use Case Developer Responsibilities & Qualifications

We are currently seeking a SOC Engineer - Use Case Developer to join our team. The chosen candidate for this position must have a love of diverse technologies and IT-related infrastructure. This is a learning job and we offer many avenues for furthering your craft and sharpening your skills. Linux skills are a plus, but not required.

Desired Technical Skills

  • Familiarity with SIEM and SIEM related technologies
  • Familiarity with Intrusion Detection Systems and signatures is a huge plus
  • Ability to communicate well with clients and extract the intention of an alert
  • Ability to take a possibly large set of data and reduce it down to actionable alerts
  • Keep up on the latest security news and events, and effectively communicate them to team members
  • Linux skills are a plus, but not required
  • Generate ideas for new security detections
  • Transform those ideas into actionable security detections, with the help of our search development team
  • Work with customers to identify and filter expected or authorized activity
  • Meet with customers on a recurring basis to discuss new, active, and existing SIEM detections
  • Identify and correct issues with detections, tuning, and response procedures
  • Work closely with Tier I Lead to document and communicate expected response procedures to Tier I analysts
  • Keep up on the latest security news and events, and effectively communicate them to team members 

Necessary Soft Skills

  • Ability to read and understand written English
  • Ability to clearly communicate on the phone and through e-mail/ticket updates
  • Ability to manage multiple tasks simultaneously and prioritize tasks appropriately
  • Excellent verbal and written communication skills to serve as a liaison between customers and analysts
  • Good customer service skills. Note: This job requires you to speak to clients throughout the day, please remember when applying


Splunk Enterprise Security is our preferred SIEM tool and is used for event investigation. The other technologies we use include Splunk, Suricata, Git, and logs/events from various sources. 

Benefits & Perks

We believe in taking care of our team. Hurricane Labs provides our employees with a full benefits package, including 100% company paid medical, dental, and vision insurance, as well as long/short-term disability coverage. 

Being part of the Hurricane Labs team also means enjoying a bunch of perks like:

  • Open-source project support
  • On-the-job training/learning opportunities
  • No micromanagement
  • Flexible work schedule 
  • Paid holidays
  • PTO
  • 401K

Feel like you would be a good fit? Tell us why!

Please submit your cover letter and resume. We also encourage our applicants to include their blog, GitHub, and/or related projects to provide an example of your applicable skills–nice, but not required.

We appreciate you taking the time to apply with Hurricane Labs!

Thank You

Your application was submitted successfully.

  • Location
    Beachwood, Ohio
  • Department
  • Employment Type
  • Minimum Experience