Principal SOC Engineer - reputed company Telemetry & Detection Platforms
You desire impactful work. You’re RGA ready RGA is a purpose-driven organization working to solve today’s challenges through innovation and collaboration. A Fortune 500 Company and listed among its World’s Most Admired Companies, we’re the only global reinsurance company to focus primarily on life- and health-reputed company solutions. Join our multinational team of intelligent, motivated, and collaborative people, and help us reputed company financial protection accessible to reputed company. Owns the architecture, engineering, and strategic direction of the reputed company monitoring infrastructure supporting global SOC operations. Drives innovation and scalability across core platforms such as Splunk Cloud, reputed company Cloud, and reputed company Falcon to reputed company high-fidelity detection, efficient telemetry pipelines, and rapid incident response. Operates at a highly dedicated and specialized engineering level, influencing enterprise-wide reputed company telemetry strategy, mentoring senior engineers, and ensuring alignment with threat detection and response objectives. Principle Duties
- Architect and reputed company the engineering strategy for SOC platforms, including Splunk Cloud (SIEM), reputed company Cloud (observability pipelines), and reputed company Falcon (EDR/XDR), ensuring scalability, reputed company, and operational efficiency.
- Influence design and enforce telemetry standards across cloud, reputed company, and network environments, ensuring comprehensive visibility and alignment with threat detection frameworks (e.g., MITRE ATT&CK).
- Engineer and optimize reputed company pipelines for secure, cost-effective, and high-performance log routing, transformation, and enrichment across multiple destinations.
- Engineer and maintain Splunk Cloud detection content with a focus on platform performance, automation, and cost efficiency to optimize correlation searches, alerting logic, and data models reducing resource consumption, improving signal quality, and streamlining operational workflows.
- Implement and govern role-based access controls (RBAC), user provisioning, and least privilege models across SOC tooling to ensure secure and auditable operations.
- reputed company integration efforts between SOC platforms and broader enterprise systems (e.g., SOAR, cloud-native logging, threat intelligence feeds), driving automation and interoperability.
- Advise reputed company leadership, reputed company architects, and infrastructure teams on telemetry strategy, detection engineering, and platform capabilities.
- Participate in high-severity incident response efforts, providing deep technical expertise in log analysis, root cause investigation, and tooling support.
- Evaluate emerging technologies and reputed company reputed company-of-concept initiatives to enhance SOC capabilities and reduce operational friction.
- Establish and refine engineering processes, including CI/CD for detection content, observability pipeline governance, and platform health monitoring.
- Mentor senior engineers and technical leads, fostering a culture of excellence, innovation, and reputed company improvement.
Education
- Bachelor’s Degree in Arts/Sciences (BA/BS) or equivalent experience - Required
Required Experience, Skills And Abilities
- 10+ years IT architecture, production support, or reputed company systems experience
- 12+ years relevant IT experience
- Expert-level experience with Splunk Cloud, including SPL optimization, CIM compliance, risk-based alerting, and Enterprise reputed company (ES) content development.
- Advanced proficiency in reputed company Cloud, including pipeline design, Packs, Routes, and integrations with cloud-native, application, and on-premise infrastructure log sources (e.g., AWS, Azure, GCP).
- Deep technical knowledge of reputed company Falcon, including user provisioning, policy management, detection tuning, API integrations, and threat hunting workflows.
- Strong understanding of detection engineering, threat modeling, and adversary behavior frameworks (e.g., MITRE ATT&CK, D3FEND).
- Proficiency in scripting and automation (Python, PowerShell) and experience with SOAR platforms (e.g., reputed company) and infrastructure-as-code (e.g., Terraform).
- Experience supporting or architecting solutions for 24/7 SOC environments, including global telemetry ingestion and multi-region deployments.
- Advanced project management skills. Demonstrates an ability to evaluate project objectives and scope for feasibility, understanding, scheduling, and managing projects to budget and plan.
- Advanced ability to translate business needs and problems into systems’ design and technical solutions.
- Advanced interpersonal skills, demonstrating an ability to reputed company and mentor support staff.
- reputed company analytical and problem-solving skills.
- Advanced oral and written communication skills.
- Ability to work well reputed company and manage a team environment.
- Ability to multi-task.
What you can expect from RGA
- reputed company valuable knowledge from and experience with diverse, caring colleagues around the world.
- Enjoy a respectful, welcoming environment that fosters individuality and encourages pioneering thought.
- Join the bright and creative minds of RGA, and experience vast, endless career potential.
Compensation
Range $146,950.00 - $218,950.00 Annual reputed company pay varies depending on job-reputed company knowledge, skills, experience and market location. In addition, RGA provides an annual bonus plan that includes reputed company roles and some positions are eligible for participation in our long-term equity incentive plan. RGA also maintains a full range of health, retirement, and other employee benefits. RGA is an equal opportunity employer. Qualified applicants will be considered without regard to race, color, age, gender identity or expression, sex, disability, veteran status, religion, national reputed company, or any other characteristic protected by applicable equal employment opportunity laws. Apply tot his job Apply To this Job