Sr Advanced Cyber Security Architect Engineer

Honeywell
United States
Workplace: HybridFull timeFunction: CybersecurityExperience: 7+ yearsEducation: bachelorsSkills: ["Analytical skills","Mentoring","Troubleshooting","Technical documentation"]

Own L2 and incident-response support within the Industrial Cyber-Security and SOC managed services team. Monitor SIEM and OT/ICS logs, triage alerts to identify true vs. false positives, and build/test SOAR automation and playbooks. Perform threat hunting, malware analysis, and support forensic investigations, including remediation recommendations and signature/rule tuning for improved control effectiveness. Work hybrid from Duluth, GA.

Loading

Loading job details...

Preparing the role view and application actions.

FursaFursa
Honeywell
Honeywell
2 days ago

Sr Advanced Cyber Security Architect Engineer

✓ Verified Job

Canonical indexed version, validated from employer's careers page.

Source: Company careers pageValidated by: Fursa AI
Last checked: 2 hours agoStatus: Live

Job Summary

Own L2 and incident-response support within the Industrial Cyber-Security and SOC managed services team. Monitor SIEM and OT/ICS logs, triage alerts to identify true vs. false positives, and build/test SOAR automation and playbooks. Perform threat hunting, malware analysis, and support forensic investigations, including remediation recommendations and signature/rule tuning for improved control effectiveness. Work hybrid from Duluth, GA.
Location: United States
Workplace: Hybrid
Employment Type: Full time
Job Function: Cybersecurity
Seniority: Mid level

Key Responsibilities

  • •Monitor SIEM and escalations, including logs from ICS infrastructure components and network/security devices.
  • •Design, implement, test, and troubleshoot SOAR automation processes, including playbook development.
  • •Analyze escalated tickets to determine true vs. false positives and provide context enrichment before escalation.
  • •Perform malware analysis, threat hunting, and threat modeling; assist forensic investigation and remediation.
  • •Act as an L2 SOC escalation layer, mentor Level 1 analysts, and create/security-knowledge documentation and notifications.

Pay and Benefits

Perks:Health InsuranceDentalVisionLife Insurance401kPaid LeaveParental LeavePaid HolidaysEapLong-term Disability

Key Requirements

  • •7+ years of experience in Information Technology, cybersecurity, or a related technical field.
  • •5+ years of experience working in a Security Operations Center (SOC), cybersecurity operations, incident response, or a related security function.
  • •5+ years of experience with SIEM or SOAR technologies.
  • •5+ years of experience developing or implementing security automation using Python, SOAR platforms, or similar technologies.
  • •Bachelor’s degree in a related field and/or ITIL Foundation or cybersecurity certifications (CompTIA Security+, GCIH, CCNA, GCFA, or CEH).
Experience:7+ yearsCybersecuritySOCIncident responseSecurity operationsSIEMSOARSecurity automation
Education:Bachelor's in Computer Science, Computer Information Systems, Electronics, or related field
Skills:Analytical skillsMentoringTroubleshootingTechnical documentation
Certifications:ITIL FoundationCompTIA Security+GIAC GCIHCCNAGCFACEH
Tech Stack:SIEMSOARPythonSwimlaneSentinelGOOGLE SECOPSICSSCADAHMIPLCRTUControl ServersSwitchesFirewallsIDS/IPSMalware analysisThreat huntingThreat modelingRoot cause analysisAutomation

Eligibility

Nationality:US National

Company Brief

Honeywell
Global diversified technology and manufacturing company providing aerospace systems, building technologies, performance materials, and safety & productivity solutions for industrial, commercial, and consumer markets.
Industry: Conglomerates & Holding Companies
Company Size: Enterprise (1,001+ employees)
Revenue: USD 25B to 50B
Growth: Public Company
Valuation: Public Company (Market Cap in USD)
Funding: IPO / Publicly Listed
Headquarters: Charlotte, United States
Founded: 1906
Glassdoor
Glassdoor: 3.8
WebsiteLinkedInGlassdoor