Liebherr USA Co. logo

Regional SOC (Security Operations Center) Incident Response Engineer

Job Overview

moneybag

Compensation

Salary
Range $96,000.00 - $124,000.00
diamond

Benefits

major medical insurance
Dental Insurance
Vision Insurance
401k plan with company match
Paid vacation
Paid Personal Days
competitive salary

Job Description

Liebherr is a distinguished international manufacturing company with a strong presence in the United States since 1970. Known for its excellence in engineering and production, Liebherr operates multiple subsidiaries across diverse industries including aerospace, mining equipment, automation systems, and gear technology. The company started its U.S. journey with hydraulic excavators manufacturing in Newport News, Virginia, and later transitioned to producing mining trucks, solidifying its position as a key player in heavy machinery and equipment manufacturing. Liebherr's U.S.-based operations include Liebherr Mining Equipment Newport News, Liebherr-Aerospace Saline, Inc., Liebherr Gear Technology, Inc., Liebherr Automation Systems, Co., and Liebherr USA, Co., which oversees twelve different product segments nationwide. The company prides itself on innovation, quality, and a commitment to safety and environmental responsibility, providing a secure and engaging work environment for its employees.

The Regional Security Operations Center (SOC)/Incident Response Engineer position at Liebherr is a critical role focused on safeguarding the company's informational and technological assets within the Americas region. This role is office-based, offered in either Newport News, VA, or Saline, MI, and comes with a competitive salary range of $96,000 to $124,000. The ideal candidate will be part of the global SOC team responsible for the continuous monitoring, detection, analysis, and response to security incidents. The primary mission is to implement and maintain security controls and systems, such as firewalls, intrusion detection/prevention systems (IDS/IPS), and Security Information and Event Management (SIEM) tools, ensuring the resilience and security of the organization's infrastructure. By diligently analyzing alerts and logs, the engineer identifies true positives, prioritizes incidents based on severity, and collaborates with various security teams to resolve issues promptly during security events.

This role also plays an essential part in supporting Information Security Governance by providing vital insights and expertise, contributing towards the establishment and maintenance of robust security policies and procedures. Documentation of incident details, findings, and remediation steps must be precise, reflecting the critical nature of incident response, while ensuring the availability and optimal performance of SOC tools regionally. Collaboration extends beyond local teams to the Corporate IT departments and divisions, as well as the global SOC team, enhancing a collective defense strategy against cyber threats. Reporting functionally to the Head of the Global SOC, the role demands strong communication, analytical, and decision-making skills. Occasional domestic and international travel may be required, and the candidate must possess a valid driver’s license and passport. This position offers a secure work environment with comprehensive benefits including major medical, dental, and vision insurance, a 401K plan with company match, paid vacation, and personal days, making it a rewarding and stable career opportunity for experienced cybersecurity professionals committed to excellence in security operations.

Job Requirements

  • Bachelor's degree in cybersecurity, computer science, information technology or related discipline or equivalent experience
  • Four years of IT experience focused on information security relevant technologies or eight years of equivalent combined education, training, and experience
  • Information security certifications such as CISSP, CEH, CISM, GIAC accepted in lieu of bachelor's degree
  • Security+ preferred
  • Strong technical skills in network, system, and application security
  • Understanding of SOC security concepts and technologies
  • Proficiency in security tools configuration and management
  • Knowledge of network security frameworks
  • Familiarity with incident response methodologies
  • Experience in scripting and automation
  • Strong communication and collaboration skills
  • Excellent analytical and troubleshooting skills
  • Strong problem-solving and decision-making skills
  • Attention to detail
  • Ability to remain calm and focused under pressure
  • Ability to travel domestically and internationally
  • Valid driver's license and passport

Job Qualifications

  • Bachelor's degree in Cybersecurity, Computer Science, Information Technology or related discipline, or equivalent education, training, certification, and experience
  • Relevant Information Security certifications such as CISSP, CEH, CISM, GIAC can be accepted in lieu of a degree
  • Security+ preferred
  • Strong technical skills in network, system, and application security relevant to incident detection and response
  • Understanding of security concepts and technologies used in SOC environments (e.g., SIEM, IDS/IPS, EDR, vulnerability scanners)
  • Proficiency in configuring and managing security tools and systems
  • Knowledge of network security frameworks (NIST, ISO)
  • Familiarity with incident response methodologies and frameworks
  • Experience with scripting and automation
  • Good communication and collaboration skills
  • Good analytical and troubleshooting skills
  • Good problem-solving and decision-making skills
  • Good attention to detail
  • Ability to remain calm and focused under pressure during security incidents
  • Ability to travel domestically and internationally occasionally
  • Ability to obtain and maintain a valid driver license and passport

Job Duties

  • Monitors and implements security tools and technologies (e.g., firewalls, IDS/IPS, SIEM) to detect security events and potential incidents within the region
  • Analyses security alerts and logs to identify true positives and prioritize incidents based on severity
  • Collaborates with other security teams to resolve security issues during an incident
  • Supports Information Security Governance by providing insights
  • Documents incident details, findings, and remediation steps accurately
  • Ensures availability and optimal performance of SOC tools within the region
  • Collaborates closely with Corporate IT, Divisions, and the Global SOC Team
  • Functionally reports to Head of Global SOC

Job Criteria

Experience

Mid Level (3-7 years)


Job Location

Your Profile Is Visible To Hiring Managers Across OysterLink.

We'll match you with best jobs

Get job offers faster

Business woman
Business man
Search For More Opportunities:

How Candidates Get Hired Faster

Apply to 2–3 similar roles

Complete profile & get best matches

Check new opportunities daily

Woman chef
Man chef