Sr Advanced Cyber Security Architect Engineer

Honeywell
United States
Workplace: HybridFull timeFunction: CybersecurityEducation: bachelorsSkills: ["Analytical skills","Mentoring","Troubleshooting"]

Serve as an L2 escalation layer in the SOC for industrial cyber-security services, monitoring SIEM and security events across OT/ICS environments. Design and implement SOAR processes and playbooks, troubleshoot automation capabilities, and triage escalated alerts as true/false positives. Support malware analysis, threat hunting, threat modeling, and forensic investigation, while mentoring Level 1 SOC analysts and improving control monitoring, signatures, rules, and remediation guidance.

Loading

Loading job details...

Preparing the role view and application actions.

FursaFursa
Honeywell
Honeywell
2 days ago

Sr Advanced Cyber Security Architect Engineer

✓ Verified Job

Canonical indexed version, validated from employer's careers page.

Source: Company careers pageValidated by: Fursa AI
Last checked: 10 hours agoStatus: Live

Job Summary

Serve as an L2 escalation layer in the SOC for industrial cyber-security services, monitoring SIEM and security events across OT/ICS environments. Design and implement SOAR processes and playbooks, troubleshoot automation capabilities, and triage escalated alerts as true/false positives. Support malware analysis, threat hunting, threat modeling, and forensic investigation, while mentoring Level 1 SOC analysts and improving control monitoring, signatures, rules, and remediation guidance.
Location: United States
Workplace: Hybrid
Employment Type: Full time
Job Function: Cybersecurity
Seniority: Mid level

Key Responsibilities

  • •Monitor SIEM events, trouble tickets/email notifications, escalations, and security logs from ICS/OT components (SCADA/HMI/PLC/RTU/control servers) and security devices (switches, firewalls, IDS/IPS).
  • •Design, implement, test, and troubleshoot SOAR automation processes and playbooks; develop and maintain detection and monitoring improvements such as signatures, rules, alerts, parsers, and custom scripts.
  • •Triage escalated tickets and determine true positives vs. false positives; provide context enrichment before escalation to Level 3 incident response as needed.
  • •Perform malware analysis, threat hunting, threat modeling, and assist forensic investigations with reporting and information sharing.
  • •Mentor Level 1 SOC analysts and create/update security manuals, guides, and knowledge base entries while participating in root cause analysis and remediation recommendations for business owners.

Pay and Benefits

Perks:Health InsuranceDentalVisionLife Insurance401kPaid LeaveParental LeavePaid Holidays

Key Requirements

  • •7+ years of experience in information technology, cybersecurity, or a related technical field.
  • •5+ years of experience in a Security Operations Center (SOC) or cybersecurity operations, including incident response.
  • •5+ years of experience working with SIEM and/or SOAR technologies.
  • •5+ years of experience developing or implementing security automation using Python, SOAR platforms, or similar technologies.
  • •Experience with SIEM/security logging platforms and solutions such as Swimlane, Sentinel, or Google SecOps.
Experience:SOCIncident responseOT security
Education:Bachelor's in Computer Science, Computer Information Systems, Electronics, or a related field
Skills:Analytical skillsMentoringTroubleshooting
Certifications:ITIL FoundationCompTIA Security+GCIHCCNAGCFACEH
Tech Stack:SIEMSOARPythonSwimlaneSentinelGoogle SecOpsICSSCADAHMIPLCRTUControl ServersSwitchesFirewallsIDS/IPSThreat huntingThreat modeling

Eligibility

Nationality:US National

Company Brief

Honeywell
Global diversified technology and manufacturing company providing aerospace systems, building technologies, performance materials, and safety & productivity solutions for industrial, commercial, and consumer markets.
Industry: Conglomerates & Holding Companies
Company Size: Enterprise (1,001+ employees)
Revenue: USD 25B to 50B
Growth: Public Company
Valuation: Public Company (Market Cap in USD)
Funding: IPO / Publicly Listed
Headquarters: Charlotte, United States
Founded: 1906
Glassdoor
Glassdoor: 3.8
WebsiteLinkedInGlassdoor